About the role
What will you do at Hex Technologies?
ABOUT THE ROLE
We are looking for an experienced Cloud Security Engineer to join Hex’s security
team. You will be responsible for ensuring the security and resilience of our
cloud infrastructure, providing leadership in cloud security practices, and
collaborating closely with our infrastructure and engineering teams to secure
our cloud-native applications.
--------------------------------------------------------------------------------
ABOUT THE ROLE:
* Design, implement, and manage security solutions and controls for AWS
environments and Kubernetes clusters, including appropriate
isolation/sandboxing methods for Hex’s RCE-as-a-Service platform
* Build, deploy, and maintain infrastructure-as-code using Terraform, ensuring
robust security standards are enforced.
* Conduct security assessments, threat modeling, and audits on AWS cloud
infrastructure and Kubernetes deployments.
* Collaborate with development and operations teams to embed security best
practices into CI/CD pipelines.
* Monitor and respond to cloud security incidents, identifying root causes and
recommending remediation actions.
* Provide expertise in compliance requirements related to cloud security (e.g.,
SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS).
* Mentor engineers and advocate for cloud security across the organization.
ABOUT YOU:
* 5+ years of experience in cloud security engineering, with extensive
expertise in AWS.
* Demonstrated proficiency with Kubernetes security including cluster
hardening, role-based access control (RBAC), network policies, and container
vulnerability management.
* Expert-level knowledge and hands-on experience with Terraform.
* Familiarity with AWS security services (e.g., IAM, GuardDuty, Security Hub,
CloudTrail, WAF).
* Familiarity with CNAPP solutions such as Wiz
* Familiarity with SIEM solutions such as Panther
* Solid understanding of secure software development lifecycle practices, CI/CD
security, and DevSecOps methodologies.
* Relevant certifications such as AWS Certified Security – Specialty, Certified
Kubernetes Security Specialist (CKS), and Terraform Associate certification
are highly desirable.
* Bonus points for security certifications from SANS or OffSec.
* Excellent problem-solving, communication, and leadership skills.
--------------------------------------------------------------------------------
OUR ENGINEERING TEAM
We’re a group of engineers who are forging new ground together and love
partnering with Security on our journey to pull ahead of our competition. You
can read about how we think through problems as well as how we learn from
mistakes on our blog here:
* How we took down production… [https://hex.tech/blog/we-took-down-production/]
* Beyond Linear Notebooks [https://hex.tech/blog/beyond-linear-notebooks/]
* A pragmatic approach to live collaboration
[https://hex.tech/blog/a-pragmatic-approach-to-live-collaboration/]
--------------------------------------------------------------------------------
OUR STACK
Our product is a web-based notebook and app authoring platform. Our frontend is
built with Typescript and React, using a combination of Apollo GraphQL and Redux
for managing application state and data. On the backend, we also use Typescript
to power an Express/Apollo GraphQL server that interacts with Postgres, Redis,
and Kubernetes to manage our database and Python kernels. Our backend is tightly
integrated with our infrastructure and CI/CD, where we use a combination of
Terraform, Helm, and AWS to deploy and maintain our stack.
--------------------------------------------------------------------------------
In addition to our unique culture, Hex proudly offers a competitive total
rewards package, including but not limited to, market-benched salary & equity,
comprehensive health benefits, and flexible paid time off.
The salary range for this role is: $200,000 - $265,000
The salary range shown may be a reflection of additional factors such as
geographical location and skill ranges/levels we’re open to. Placement in the
salary range will be decided upon completion of the interview process, taking
into account factors like leaving room for growth, internal fairness & parity,
your demonstrated skills, and the depth of your experience. Our Recruiting team
will be able to provide more details during the interview process.
By submitting an application the candidate consents to the use of their personal
information in accordance with the Hex Privacy
policy: https://learn.hex.tech/docs/trust/privacy-policy
[https://learn.hex.tech/docs/trust/privacy-policy].
Hex Technologies uses AI-assisted tools as part of our application review
process, including for resume screening and fraud detection. These tools help
our team evaluate applications and verify applicant information. All
AI-generated recommendations are reviewed by a member of our recruiting team
before any hiring decision is made. No application is automatically rejected
based solely on an AI tool's output.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Senior Security Engineer
Credit Sesame · Mountain View, California, United States
ML Security Engineer
Bright Vision Technologies · Kirkland, Washington, United States
Senior Network Security Engineer
GovCIO · United States
Cloud Security Engineer
Morgan & Morgan, P.A. · Tampa, Florida, United States
Lead Engineer, Information Security (Application Security)
RXO, Inc. · United States
Security Engineer - Directory Services
Truist · Atlanta, Georgia, United States
Role information can change. Confirm current details on the original application page.