{"id":1812218,"url":"https://alion.io/job/suncore-digital-senior-security-operations-engineer","title":"Senior Security Operations Engineer","company":{"id":3882886,"name":"SunCore Digital","domain":"suncoredigital.com","url":"https://alion.io/company/suncore-digital","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":"full_time","work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"inferred_payroll_markers","remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":[],"countries":[],"hiring_countries":["US"],"hiring_countries_total":1,"salary":{"min":165000,"max":205000,"currency":"USD","period":"year","gross":null,"usd_annual":205000},"salary_estimate":null,"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"CI/CD","optional":false},{"name":"Least Privilege","optional":false},{"name":"Rest API","optional":false},{"name":"Threat Modeling","optional":false},{"name":"MVP","optional":true}],"status":"live","first_seen_at":"2026-10-03T16:46:10Z","employer_posted_date":null,"last_verified_at":"2026-10-03T16:46:10Z","board_verified":false,"closed_at":null,"days_open":5,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":5},"description":"Senior Security Operations EngineerAbout the RoleSunCore Digital is seeking a hands-on Senior Security Operations Engineer to assess and improve the security of our applications, cloud environments, development practices, identities, data, and operational tooling.\nThis role will establish practical security standards, build and harden shared security controls, investigate risk, and review security-impacting implementations produced by reliability, recovery, DevOps, and application teams. System-owning teams remain responsible for remediating their applications and services and for operating routine system-specific controls after enablement.\nThis is not a role that manually approves every normal software release. Security review will focus on defined risk areas, including changes involving privileged access, sensitive data, recovery systems, network exposure, secrets, infrastructure, authentication, authorization, and security controls.\nResponsibilitiesSecurity assessment\nAssess the current security posture across web applications, Flutter mobile applications, APIs, backend services, cloud infrastructure, repositories, CI/CD, databases, and integrations.\n\nInventory externally accessible services and endpoints.\n\nIdentify vulnerabilities, insecure defaults, excessive permissions, unmanaged credentials, and control gaps.\n\nDistinguish confirmed findings from suspected risks and unassessed areas.\n\nPrioritize findings based on exploitability, potential impact, exposure, and launch relevance.\n\nDefine remediation requirements and work with system owners, who implement and maintain application- and service-specific fixes. Implement shared security controls where the control belongs to the security function.\n\nVerify that critical findings are resolved effectively.\n\nIdentity and access management\nReview access to cloud accounts, repositories, databases, CI/CD systems, production environments, and third-party services.\n\nIdentify former employee, contractor, shared, excessive, or undocumented access.\n\nEstablish least-privilege and access-review practices.\n\nReview service accounts, machine identities, API credentials, and privileged roles.\n\nDefine and harden credential lifecycle requirements, and work with DevOps, platform staff, and system owners to implement appropriate issuance, storage, rotation, revocation, and emergency-access mechanisms.\n\nEnsure critical access activity is logged where appropriate.\n\nSupport role-based access and authorization reviews.\n\nApplication and API security\nReview authentication, authorization, session management, permissions, and data isolation.\n\nAssess exposed APIs, input handling, file processing, sensitive-data handling, and administrative functions.\n\nIndependently assess high-risk negative-access paths and direct access to restricted endpoints.\n\nWork with QA and developers to convert repeatable security scenarios into regression coverage owned by the applicable delivery team.\n\nReview changes involving sensitive workflows or new public exposure.\n\nHelp establish secure coding and review expectations.\n\nSupport threat modeling for critical workflows and material architectural changes.\n\nMobile security\nAssess mobile authentication, session handling, secure storage, API access, application permissions, logging, and sensitive-data exposure.\n\nReview risks related to device storage, screenshots, notifications, local caches, and mobile configuration.\n\nWork with the Mobile QA Engineer and mobile developers on security-related testing.\n\nReview mobile release practices where they affect application security.\n\nSecurity tooling and automation\nDefine, implement, and harden security-specific automation, including dependency scanning, secret scanning, static analysis, vulnerability scanning, and container or infrastructure scanning where appropriate; establish the long-term owner for each shared control before handoff.\n\nDefine security policies, rules, and acceptance thresholds; work with DevOps to integrate shared controls into CI/CD and with repository owners to maintain application-specific configuration.\n\nEstablish actionable security gates based on severity and context, while system owners remain responsible for remediation.\n\nAvoid creating low-value controls that block delivery without reducing material risk.\n\nImprove security finding visibility and reporting.\n\nDefine exception and escalation procedures.\n\nTrack critical remediation through verification.\n\nReview of reliability and recovery implementations\nReview security-impacting SRE and Disaster Recovery implementations before production adoption.\n\nEvaluate changes involving:\n\nPrivileged automation\n\nService accounts\n\nSecrets\n\nBackup data\n\nRecovery access\n\nNetwork or firewall configuration\n\nInfrastructure permissions\n\nFailover paths\n\nSensitive logging or monitoring\n\nReview DevOps, dashboard, and internal-tooling changes when they affect access, production data, infrastructure, or security controls.\n\nValidate that operational improvements do not introduce avoidable security exposure.\n\nSecurity operations and incident readiness\nEstablish security monitoring and escalation requirements.\n\nDevelop security incident-response procedures and runbooks.\n\nDefine initial security incident severity and notification paths.\n\nInvestigate security events and suspicious activity.\n\nSupport evidence preservation and technical incident analysis.\n\nConduct or coordinate security exercises.\n\nTrack post-incident corrective actions.\n\nEnsure security runbooks are tested by qualified staff.\n\nData and vendor security\nIdentify where sensitive, personal, financial, or operational data is stored and transmitted.\n\nReview encryption in transit and at rest.\n\nAssess retention, deletion, export, logging, and access behavior.\n\nReview third-party services that receive code, credentials, operational data, or sensitive information.\n\nSupport vendor security review based on business risk.\n\nHelp identify security and privacy obligations that require legal or compliance input.\n\nCollaboration\nWork with developers to remediate application findings.\n\nWork with SRE on logging, monitoring, incident readiness, and security-relevant reliability controls.\n\nWork with the Disaster Recovery and Resilience Engineer on backup, restoration, emergency access, and recovery security.\n\nDefine security requirements for CI/CD and shared infrastructure; work with DevOps and platform staff to implement them, and with system owners to maintain application-specific configuration.\n\nWork with QA on permissions, authorization, data isolation, and regression scenarios.\n\nProvide clear technical findings and risk information to leadership.\n\nInitial Priorities\nInventory production access, service accounts, secrets, and publicly accessible endpoints.\n\nReview former employee, contractor, and shared access.\n\nEstablish and harden shared dependency- and secret-scanning capabilities, coordinate CI/CD integration with DevOps, and assign remediation ownership to the applicable repository teams.\n\nAssess authentication, authorization, and customer-data isolation.\n\nReview critical cloud and infrastructure permissions.\n\nIdentify launch-critical security findings.\n\nEstablish security review triggers for high-risk changes.\n\nImplement initial security monitoring and incident procedures.\n\nReview SRE and recovery mitigations that affect production security.\n\nCreate a factual security-readiness assessment.\n\nRequired Qualifications\nFive or more years of experience in security engineering, DevSecOps, cloud security, application security, security operations, or a comparable role.\n\nHands-on experience remediating security issues.\n\nExperience securing cloud-hosted applications and infrastructure.\n\nExperience reviewing authentication, authorization, permissions, and data isolation.\n\nExperience with CI/CD security integration.\n\nExperience with vulnerability, dependency, secret, and static-analysis tooling.\n\nStrong understanding of identity, access, service accounts, secrets, and least privilege.\n\nExperience reviewing web applications and APIs.\n\nFamiliarity with mobile application security.\n\nExperience with security monitoring and incident response.\n\nAbility to assess third-party and operational security risks.\n\nStrong technical documentation and communication skills.\n\nAbility to distinguish confirmed vulnerabilities, suspected risks, and unassessed areas.\n\nComfort working in a small organization where security practices are still being established.\n\nBonus Points\nExperience preparing a platform for its first external users.\n\nExperience establishing security practices in a startup or small engineering organization.\n\nFamiliarity with crypto, fintech, digital assets, KYC, AML, or payment-related systems.\n\nExperience with Flutter or mobile application security.\n\nExperience securing disaster-recovery, backup, or privileged automation systems.\n\nExperience with infrastructure as code or containerized platforms.\n\nExperience in a remote, asynchronous environment.\n\nWhat Success Looks Like\nProduction access, privileged identities, service accounts, and secrets are inventoried.\n\nFormer and excessive access is removed.\n\nCritical repositories and systems have appropriate automated security scanning.\n\nAuthentication, authorization, and data-isolation risks are understood.\n\nLaunch-critical security findings are visible and remediated or explicitly accepted.\n\nSecurity-impacting SRE and recovery implementations are reviewed before adoption.\n\nSecurity controls are practical, documented, and integrated into engineering workflows.\n\nThe organization has a tested security incident process.\n\nSecurity does not depend on undocumented knowledge or manual review of every routine release.\n\nCompensation & Benefits● Base Compensation: Competitive, based on experience, portfolio strength, and geographic location.\n● Milestone Bonuses:10% milestone bonus awarded to every team member assisting with the MVP build-out.\n● Annual Performance Bonus: Represents a significant percentage of total compensation.\n● Benefits for Domestic Hires: Health, dental, and vision plans.\n● Annual Paid Offsite: Team retreats in Caribbean, Hawaii, ski destinations, and other exciting locations.\nWhy Join SunCore Digital?● High-impact role in a rapidly scaling digital company.\n● Fully remote team with async flexibility.\n● Direct collaboration with executive leadership and best-in-class marketing/design partners.\n● Opportunity to shape Security processes and mentor junior team members.\n● Competitive compensation with performance upside.\nOriginally posted on Himalayas","description_format":"text","description_chars":10568,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":[],"lifecycle":[{"event":"open","at":"2026-10-03T21:04:09Z"}],"visa":[],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":4,"expected_fill_days":28,"reasons":["seen:4","win:early"],"computed_at":"2026-10-08T05:49:30Z"},"pay":{"stated_usd_annual":205000,"is_top_pay":true},"html_url":"https://alion.io/job/suncore-digital-senior-security-operations-engineer","json_url":"https://alion.io/job/suncore-digital-senior-security-operations-engineer.json","meta":{"generated_at":"2026-10-09T03:32:58Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":2388,"day_limit":5000,"remaining_today":2612,"minute_limit":60,"resets_at":"2026-10-10T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":3882886},"rest":"https://alion.io/mcp/rest/get_company?id=3882886"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fsuncore-digital-senior-security-operations-engineer"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fsuncore-digital-senior-security-operations-engineer"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fsuncore-digital-senior-security-operations-engineer"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/suncore-digital-senior-security-operations-engineer\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fsuncore-digital-senior-security-operations-engineer"}]}