Back to All Openings

We are looking for

Security & Compliance Engineer

DevOps
Share

About AltexSoft

We are looking for humble leaders who lead by example through teamwork and collaboration. The ideal candidate must possess excellent listening and communication skills, as well as the ability to diagram and document solutions and process/data flows.

About Project

Our customer is a fast-growing company building technology for airlines and corporate travel. Their services run on AWS and leverage modern cloud architecture to provide highly available, scalable, secure, and compliant services for some of the world's largest travel providers.

You Have

  • 10+ years of experience in security engineering, compliance, or cloud security roles.
  • Deep understanding of PCI DSS, SOC 2, GDPR, and cloud security best practices.
  • Expertise in AWS security tools such as GuardDuty, WAF/Shield, Security Hub, Inspector, as well as TrendMicro CloudOne, Pen Testing, and Application Security Assessment tools.
  • Strong background in identity and access management (IAM), network security, and data protection.
  • Experience with security automation and infrastructure-as-code security controls.
  • Skilled in vulnerability assessment tools, SIEM solutions, and incident response.
  • Strong analytical, problem-solving, and communication skills.

Would be a plus

  • Experience working in a distributed team
  • Experience in building monitoring services for the infrastructure

You Are Going To

  • Manage PCI DSS 4.0.1 and SOC 2 Type 2 compliance programs, ensuring continuous adherence to regulatory standards.
  • Manage Privacy by Design and NIST 800-53 security programs and risk analysis, Data Protection Impact Assessments, Vendor Risk Management, and Hardware/Software Inventory.
  • Own AWS security best practices, including AWS Config, Security Hub, and IAM; establish and monitor encryption practices and secure cloud configurations.
  • Conduct risk assessments, vulnerability management, and security audits. Implement and enforce security policies across development and production environments, as well as Endpoint and Mobile Device Management (EDM and MDM).
  • Respond to security incidents, leading investigation recovery, and mitigation efforts.
  • Automate security processes, access management, and compliance reporting.
  • Collaborate with development and DevOps teams to embed security into the development lifecycle and CI/CD pipelines.
  • Train and educate teams on secure software development practices, policy, and compliance requirements.
  • Leadership and Collaboration: Act as a subject matter expert on cloud security, compliance, and risk management.
  • Work closely with engineering, DevOps, and leadership teams to align security initiatives with business goals.
  • Define security architecture and governance frameworks for cloud environments.
  • Document security policies, incident response procedures, and compliance workflows.

We offer

Cup

Work-life Balance

  • Possibility to work remotely
Health

Health Care

  • Reimbursement of medical expenses
  • Online morning exercise
book

Education

  • Compensation for trainings, seminars, conferences
  • Free access to the Pluralsight and ACloudGuru knowledge base
  • Access to the AltexSoft library with  top-notch materials
  • A mentor for a probation period
  • Engagement in our Mentorship Hub program as a mentor or a mentee to foster professional growth and development 
gora

Development

  • Horizontally — master new technologies at internal courses
  • Vertically — choose your own career path through Competency trees
medal

Recognition Program

  • All your activities are marked by points that can be exchanged for gifts to fit any taste.
Contact our Talent Acquisition Specialist
Judith Kennethjudith.kenneth@altexsoft.com

To many people, the world is chaos. To us, it's something a few effective formulas can organize and even change.

Come along if you share our vision

  • We were founded in 2007. Employer of the Year (2014, 2017, 2019).
  • The AI Ukraine conference and the Know Your Onions meetups organizer.
  • R&D centers in Ukraine (Kharkiv, Kremenchuk, Lviv) and Georgia (Tbilisi). We employ more than 300 people.