- Company Name
- Arizona Small Business Association - ASBA
- Job Title
- Senior Security Operations Engineer II
- Job Description
-
**Job Title**
Senior Security Operations Engineer II
**Role Summary**
Architects, implements, and maintains secure infrastructure for cloud‑based services, focusing on PKI, IAM, and automated security in CI/CD pipelines. Drives incident response, security observability, and continuous improvement of security tooling and processes.
**Expectations**
- Deliver reliable, compliant security infrastructure that scales with product growth.
- Own automation of security checks, incident response workflows, and infrastructure‑as‑code.
- Serve as a technical lead during high‑impact security incidents and post‑mortem analysis.
- Collaborate cross‑functionally with DevOps, SRE, and product teams to embed security into the software delivery lifecycle.
**Key Responsibilities**
- Design, build, and maintain PKI and IAM solutions that meet availability, compliance, and scalability requirements.
- Enhance CI/CD pipelines with automated vulnerability scanning, compliance checks, and deployment safeguards.
- Write and audit security‑focused infrastructure‑as‑code (IaC) templates for cloud and on‑prem deployments.
- Investigate and remediate security incidents; develop long‑term mitigation strategies and runbooks.
- Improve security observability: log collection, metrics, alerting, and dashboarding.
- Lead incident response rotations, serve as incident commander when necessary.
- Document system architectures, incident procedures, and best practices for audit and knowledge sharing.
- Evaluate emerging threats, tools, and techniques; recommend and integrate new security solutions.
- Collaborate with Site Reliability Engineering and other pillars to ensure infrastructure supports rapid development cycles.
**Required Skills**
- 7+ years in operations, site reliability, or infrastructure engineering with a security focus.
- Deep expertise in securing cloud environments (AWS, Azure, or equivalent) and containerized workloads.
- Proficient with Linux system administration and scripting (Bash, Python, Go).
- Experience with PKI, TLS, and certificate lifecycle management.
- Strong background in IAM design, least‑privileged access, and just‑in‑time access controls.
- Skilled in CI/CD tools (Jenkins, GitLab, GitHub Actions, ArgoCD) and automated security testing (Snyk, Trivy, OWASP ZAP).
- Knowledge of infrastructure‑as‑code tools (Terraform, CloudFormation, Pulumi).
- Familiarity with log aggregation, SIEM, and monitoring (ELK, Splunk, Datadog).
- Proven incident response and threat mitigation experience.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant security certifications preferred: AWS Certified Security – Specialty, CISSP, CISM, or equivalent.
---
Scottsdale, United states
Hybrid
Senior
08-02-2026