Bachelor’s degree in Computer Science, Engineering, or Cybersecurity., 5+ years of experience in security engineering, DevSecOps, or software engineering roles., Strong knowledge of secure software development and cloud infrastructure security, including Kubernetes and cloud providers like AWS, GCP, or Azure., Proficiency in scripting languages such as Python, Go, or JavaScript..
Key responsibilities:
Design and implement security controls throughout the software development lifecycle.
Collaborate with engineering teams to identify and mitigate security risks.
Conduct threat modeling, code reviews, and architectural assessments for security.
Monitor cloud systems for suspicious activity and lead incident response efforts.
Report this Job
Help us maintain the quality of our job listings. If you find any issues
with this job post, please let us know. Select the reason you're reporting
this job:
Lucidworks believes that the core to a great digital experience starts with search and browse. Lucidworks captures user behavior and utilizes machine learning to connect people with the products, content, and information they need. The world’s largest brands, including Crate & Barrel, Lenovo, Red Hat, and Cisco Systems rely on Lucidworks’ suite of products to power commerce, customer service, and workplace applications that delight customers and empower employees. Learn more at Lucidworks.com.
As a Security Engineer on our Engineering team, you will play a key role in building and scaling secure systems across our product and infrastructure. You’ll collaborate closely with software engineers, cloud operations, and product teams to embed security into everything we build—from design and development to deployment and operations. You’ll help identify risks early, propose pragmatic mitigations, and champion secure practices across the engineering organization.
This is a hands-on, engineering-focused role where your work will directly impact the safety and resilience of the systems our customers rely on every day. This is a fully remote role open to candidates based in Latin America, South America, or the Caribbean.
Responsibilities
Design and implement security controls and best practices across the software development lifecycle, infrastructure, and deployment pipelines
Collaborate with engineering teams to identify, assess, and mitigate security risks in applications, services, and infrastructure
Conduct threat modeling, code reviews, and architectural reviews to ensure secure design and implementation of systems
Monitor logs and telemetry from cloud systems to detect suspicious activity and support incident response
Lead or contribute to security incident investigations, root cause analysis, and postmortems
Build and maintain automated tools to detect vulnerabilities in code, dependencies, and cloud infrastructure
Champion security improvements in CI/CD pipelines and deployment practices, ensuring secure-by-default environments
Partner with DevOps/Cloud Operations to improve secrets management, access controls, and infrastructure hardening
Maintain and evolve incident response and disaster recovery plans, ensuring preparedness and resilience
Provide mentorship, training, and guidance to engineers on secure coding and architectural patterns
Stay current with evolving security threats, tools, and industry trends, and proactively propose improvements to protect systems and data
Communicate security risks and trade-offs to technical and non-technical stakeholders
All other duties as assigned
Skills & Qualifications
Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or a related field preferred
5+ years of experience in a Security Engineer, DevSecOps, or Software Engineering role with security responsibilities
Strong understanding of secure software development practices and infrastructure security in cloud-native environments including Kubernetes (e.g., AWS, GCP, or Azure)
Familiarity with modern web and API security concepts (e.g., OWASP Top 10, authentication, authorization, input validation)
Experience with application scanning tools, static/dynamic analysis, and/or container security
Proficiency with scripting or programming languages (e.g., Python, Go, JavaScript)
Preferred certifications include CISSP, OSCP, or relevant cloud security credentials (e.g., Certified Kubernetes Security Specialist (CKS) )
Familiarity with SaaS environments and tools such as Okta, Google Workspace, Slack, and GitHub
Acceptable background check
Required profile
Experience
Level of experience:Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.