Bachelor's degree in Computer Science, Information Security, or related field., At least six years of professional experience in security engineering, platform reliability, or cloud infrastructure., Experience designing and leading large-scale secure systems in cloud-native environments, preferably AWS., Advanced knowledge of cloud security best practices, infrastructure-as-code, and security frameworks..
Key responsibilities:
Design and operate core security infrastructure supporting detection, observability, and response.
Mentor engineers and promote secure development and operational practices.
Lead the implementation of security policies, SLOs, and capacity planning.
Collaborate with teams to embed security into developer workflows and influence security roadmaps.
Report this Job
Help us maintain the quality of our job listings. If you find any issues
with this job post, please let us know. Select the reason you're reporting
this job:
Lumin Digital is a fintech company specializing in digital banking solutions. Through a fundamentally different approach to technology, service, and people, we’re creating the next generation of financial solutions each and every day. Lumin helps credit unions and financial institutions build and deploy next-gen digital experiences that help to continually serve, engage and grow their membership base. While other platforms are partially adapted or retrofitted for the cloud, Lumin is 100% cloud-native. It was built specifically for the cloud environment, allowing us to realize its advantages. It’s a difference that financial institutions and their users will see and feel almost immediately. For more information, visit lumindigital.com.
The Senior Security Platform Engineer leads the design and operation of core infrastructure that supports security detection, observability, and response at Lumin Digital. In this role, you will architect secure and scalable systems, mentor peers, and partner across engineering teams to promote securebydefault development and operational patterns. This role blends deep technical expertise with strategic ownership of security systems, with a focus on reliability, automation, and influencing broader engineering practices through thought leadership and mentorship.
Essential Functions
Architect multiregion and multiaccount telemetry systems that support ingestion, storage, and analysis of securityrelevant data at scale.
Define and enforce the separation of duties and access controls in CICD and infrastructure provisioning workflows.
Lead the design and rollout of policyascode frameworks and pipeline guardrails to improve deployment security across teams.
Set servicelevel objectives (SLOs) for security services and lead capacity planning, monitoring strategy, and performance optimization.
Guide incident response for complex or highseverity issues, including technical leadership during resolution and facilitating postincident reviews.
Mentor engineers across the organization in secure platform practices and review contributions for architectural integrity and security posture.
Drive initiatives that embed security into developer workflows (e.g., secure ephemeral environments, secrets management, test isolation).
Collaborate with platform and product leadership to influence roadmaps and align engineering efforts with longterm security objectives.
Position Specifications
Education:
Bachelor’s degree in Computer Science, Information Security, or related field; or equivalent selfdirected study with demonstrated competency in security operations, cloud engineering, or platform reliability required.
Experience:
Six (6) or more years of professional experience in security engineering, platform reliability, or cloud infrastructure.
Experience designing and leading largescale secure systems in cloudnative environments (AWS preferred).
Proven track record of mentoring engineers, leading initiatives, and driving improvements to reliability and security posture across organizations.
Knowledge, Skills, and Abilities:
Advanced knowledge of cloud security best practices, including the requirements and guidance from security and compliance frameworks, such as SOC 2 Trust Services Criteria, PCI Data Security Standard, the CIS Benchmarks, and the AWS WellArchitected Framework.
Advanced knowledge of security best practices for Kubernetes, CICD, AWS, and cloudnative systems.
Expertise with infrastructureascode tools (e.g., Terraform) and pipeline automation for secure deployments.
Excellent troubleshooting, incident management, and monitoring skills across distributed systems.
Strong communication and collaboration abilities, with a focus on mentorship and crossteam influence.
Ability to influence engineering practices and advocate for security priorities in roadmap discussions.
Must be able to pass requisite background checks to access sensitive information.
Required profile
Experience
Level of experience:Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.