Mondoo is creating a new way that helps companies keep their users and data safe from hackers around the world. We believe that a great user experience and visual design will help our users to love and enjoy our product and make it easier to take action against attackers.
Your impact
You will have a direct impact on the Mondoo Platform including our policy engine, resources, scale, and multi-region functionality. You will be helping teams to assess, scope, prioritize, triage and remediate security findings.
Key responsibilities
We're seeking a talented Platform Engineer who is eager to enhance their expertise in security. This position offers the opportunity to work with cutting-edge technologies and gain hands-on experience in "policy as code" frameworks while contributing to our dynamic team.
In this role, you will:
Build, manage, and optimize cloud infrastructure using Infrastructure as Code (IaC) tools like Terraform and CloudFormation.
Automate system configurations using tools like Ansible, Puppet, or Chef.
Collaborate with teams to ensure seamless integration of infrastructure with CI/CD pipelines.
Gain experience working with policy as code frameworks (e.g., Open Policy Agent, HashiCorp Sentinel).
Assist in translating high-level security requirements into practical policy as code implementation within cloud and on-premises environments.
Support the implementation and scaling of automated security controls in Kubernetes, cloud environments (AWS, Azure, GCP), and operating systems.x5
Stay updated on infrastructure management and automation trends, ensuring a robust and scalable system foundation
Required qualifications
Strong hands-on experience with IaC tools like Terraform or CloudFormation.
Proficiency in configuration management tools such as Ansible, Puppet, or Chef.
Solid understanding of at least one major cloud platform (AWS, Azure, or GCP) and its core services.
Experience working with container technologies like Docker and orchestration tools like Kubernetes.
Comfortable scripting in at least one language (e.g., Python, Bash, or similar).
Knowledge of networking basics (TCP/IP, DNS, etc.).
Experience with version control systems (e.g., Git).
Strong problem-solving and analytical skills.
Willingness to learn and grow into a role focused on security policies and automation.
Excellent communication skills with the ability to work effectively in a collaborative team environment.
Preferred qualifications
Familiarity with security tools and concepts such as policy as code frameworks (Open Policy Agent, Sentinel).
Knowledge of compliance standards (e.g., CIS, SOC 2, ISO 27001).
Previous exposure to cloud-native security tools and services.
Relevant certifications in cloud platforms (e.g., AWS, Azure, GCP).
A keen interest in learning about security best practices, frameworks, and tools.
Application Process
As part of your application, please share links to your GitHub/GitLab repositories or a portfolio of projects that demonstrate your experience with security policy implementation, policy as code, and relevant cloud security tools. We're particularly interested in seeing examples that showcase your ability to translate complex security requirements into executable code for cloud environments.
If you're passionate about enhancing cloud security through code, implementing scalable and automated security policies across cloud platforms, participating in collaborative security design processes, and staying at the forefront of cloud security best practices, we'd love to hear from you!
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
At Mondoo, we're on a mission to revolutionize how businesses protect their users and data from the ever-evolving landscape of cyber threats. We're excited to bring on a Platform Engineer with a Security Focus to join our innovative team. In this role, you'll not only work with cutting-edge technologies but also have a significant impact on the Mondoo Platform. You'll be diving deep into our policy engine, enhancing resources, and contributing to our multi-region capabilities. If you're ready to elevate your security expertise while optimizing cloud infrastructure with tools like Terraform and CloudFormation, this position offers just that! Balancing technical know-how with a great user experience, we value your ability to translate high-level security requirements into actionable implementations in both cloud and on-premise environments. Collaborating with diverse teams, your contributions will help ensure that our automated security controls work seamlessly across various platforms like AWS, Azure, and GCP. We're not just looking for someone to fix issues but a proactive problem solver willing to learn and grow with us in this dynamic field. If a role that thrives on collaboration and complexity excites you, we want to hear from you. Let's work together to make the digital world a safer place!
Development, security, and operations teams use different tools and operate from the different versions of reality when it comes to versions, states, and configurations. With Mondoo, you can improve your security posture, reduce friction between t...
4 jobsSubscribe to Rise newsletter