368,634open jobs
9,437companies
50,578added this week
Browse all
Location
In office
Employment
Full-Time
Overview
Company
Impact
Profile match
Semaphore is a continuous integration company founded in 2009 with engineering roots in Novi Sad. Its platform builds, tests and deploys software for development teams worldwide. The company was previously known as Rendered Text.

Location: Serbia, remote with optional office work in Novi Sad

About Semaphore

Semaphore is a remote-first software company helping engineering teams build, test, and deliver software with confidence. Our customers rely on Semaphore Cloud and our self-hosted enterprise products to run critical development workflows securely and reliably.

We maintain SOC 2 Type 2 and ISO 27001:2022 compliance and are hiring a Security Engineer to own the technical side of our security program.

About the role

You will be the technical owner of information security across our infrastructure and internal systems. You will work closely with Engineering, Infrastructure, and our Compliance Manager to turn security and compliance requirements into practical, reliable controls.

This is a hands-on role. You will investigate vulnerabilities, operate security monitoring, improve infrastructure and access controls, automate recurring work, and lead technical remediation. Our Compliance Manager owns the ISMS, policies, audit coordination, and legal or regulatory interpretation; you will own the implementation, operation, and testing of the technical controls behind them.

We care more about demonstrated ownership and sound judgment than a specific number of years or a previous job title.

What you will own

  • Run the vulnerability-management lifecycle: scanning, triage, prioritization, remediation, exceptions, and verification.
  • Operate and improve security monitoring and SIEM tooling, including alert quality, dashboards, detection rules, and integrations.
  • Investigate security alerts and lead the technical response to security incidents.
  • Improve the security of Linux hosts, cloud infrastructure, networks, firewalls, containers, and internal services.
  • Own technical controls for identity and access management, least privilege, just-in-time access, secrets, and certificates.
  • Automate patching, evidence collection, recurring control checks, and other security operations.
  • Coordinate penetration tests and drive technical findings through remediation and verification.
  • Translate SOC 2 and ISO 27001 control requirements into effective technical implementations.
  • Produce clear technical evidence for internal and external audits in partnership with the Compliance Manager.
  • Maintain security runbooks, system documentation, risk-based priorities, and operational metrics.
  • Help engineering teams make practical security decisions without adding unnecessary process.

What we are looking for

  • Proven ownership of technical security in a production SaaS, cloud, hosting, or infrastructure environment.
  • Strong Linux systems, networking, and cloud-security fundamentals.
  • Hands-on experience with vulnerability management, patching, hardening, and remediation at scale.
  • Experience operating SIEM or security-monitoring systems and investigating security events.
  • Practical understanding of IAM, privileged access, secrets management, certificates, and network controls.
  • Ability to automate operational work using Python, Bash, infrastructure-as-code, or similar tools.
  • Experience participating in incident response and communicating clearly during high-pressure situations.
  • Working knowledge of ISO 27001, SOC 2, or similar security-control frameworks.
  • Strong written and spoken English and comfort working independently in a remote, asynchronous team.
  • Good risk judgment: the ability to distinguish urgent security problems, acceptable exceptions, and low-value processes.

Nice to have

  • Experience with Wazuh or a comparable SIEM/security-monitoring platform.
  • Experience with Teleport, PAM, or just-in-time access systems.
  • Experience securing large Linux server fleets or hybrid cloud/on-premise environments.
  • Familiarity with CI/CD systems, build infrastructure, containers, and software supply-chain security.
  • Experience supporting SOC 2 or ISO 27001 audits from the technical-control side.
  • Relevant certifications such as Security+, CISSP, CISM, GIAC, or ISO 27001, although certification is not required.

What success looks like

Within your first six months:

  • Technical security operations have a clear owner, documented priorities, and reliable response expectations.
  • Vulnerability findings are consistently triaged, remediated, or explicitly accepted based on risk.
  • Security monitoring is stable, actionable, and connected to an effective incident-response process.
  • Recurring patching, access-control, and evidence-collection work is increasingly automated.
  • Engineering and Infrastructure teams receive clear, practical guidance and security issues reach closure.
  • Technical controls and audit evidence are reliable enough that compliance work does not depend on senior engineers doing manual follow-up.

How you will work

You will work closely with the Engineering and Infrastructure teams and partner with the Compliance Manager. The Compliance Manager owns governance, policies, the ISMS, audit coordination, and regulatory interpretation. You own the design, implementation, operation, testing, and remediation of technical security controls.

This role is an individual-contributor position with broad ownership and direct influence on how Semaphore protects its systems, customers, and company data.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$68k – $85k per year • In office • Full-Time • Master's Degree • San Jose
Python
AI/ML
AI Agents
DevOps
Amazon EC2
AWS
AWS Lambda
Bitbucket
CI/CD
CloudFormation
Docker
Git
Kubernetes
Terraform
Amazon S3
IAM
HPC
Cybersecurity
Least Privilege
Apply
$21k per year • In office • Contractor • Yekaterinburg
Python
SQL
Python
FastAPI
Flask
AI/ML
Claude
Claude Code
Embeddings
Function Calling
LLM
RAG
OpenAI
OpenAI Codex
Structured Outputs
DevOps
Docker
Git
Apply
$140k – $225k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree • Seattle
Python
TypeScript
Node JS
JavaScript
Python
FastAPI
Node JS
Fastify
Databases
PostgreSQL
Redis
Frontend
React.js
Vite
DevOps
Kubernetes
WebSockets
QA
Playwright
Vitest
Apply
$140k – $225k per year • Remote • Full-Time • 5+ years exp • Seattle
Python
Lua
Python
FastAPI
Celery
Pydantic
SQLAlchemy
Databases
pgvector
PostgreSQL
Redis
AI/ML
LLM
RAG
Hybrid Search
Reranking
Anthropic
LLM Evaluation
LLM Guardrails
OpenAI
Model Context Protocol
DevOps
OpenTelemetry
Apply
$98k – $132k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
R
SQL
Databases
Databricks
Snowflake
AI/ML
Embeddings
LangChain
LangGraph
LLM
NumPy
Pandas
Scikit-learn
Spark
TensorFlow
Transformers
Hugging Face
RAG
Analytics
Matplotlib
Seaborn
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.