iherb
Sr. Security Engineer II
At a Glance
- Location
- United States of America - Remote / Home Office
- Work Regime
- remote
- Experience
- 10+ years
- Posted
- 2026-05-04T18:21:37-04:00
Key Requirements
Required Skills
Domain Knowledge
- Automation
- E-commerce
- Education
- Finance
- Insurance
- Medical
- Regulatory
Requirements
Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash
AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight
Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning
Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses
Splunk SOAR playbook development and automation
Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols
Responsibilities
We are looking for a hands-on Security Automation Engineer and builder who thrives on creating automated, secure cloud environments and scaling security operations.
You will design and maintain infrastructure-as-code, cloud security automations, and modern security tooling — with a strong focus on AWS, Splunk Enterprise Security, Splunk SOAR, and Okta Identity.
This role combines deep cloud infrastructure expertise with security orchestration and identity management to strengthen our overall defensive posture.
Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows.
Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure.
Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization.