# Security Engineer - Vuln Management (Infra)

Hiring organization: [Replit](https://career.thegoodapps.co/organizations/replit)

Canonical page: https://career.thegoodapps.co/jobs/374b7383-bad7-47dd-8a0a-f2ea38baa73e

Listed on Replit's own careers site. Applications go to them directly.

- Employment type: full time
- Seniority: Mid
- Location: Foster City, CA
- Remote: yes
- Salary: 210000 – 270000 USD per year

## Summary

This mid-level role focuses on identifying and managing security flaws across cloud infrastructure, Kubernetes, and containers. It suits engineers who want to bridge security and DevOps by embedding automated compliance scanning into deployment pipelines and responding to production incidents.

_Our summary, not Replit's wording._

## Skills named

Amazon Web Services (AWS), Docker, Kubernetes, Microsoft Azure, Pulumi, Terraform

## Required

- 5 years cloud security, DevSecOps, or systems engineering experience
- Multi-cloud environment experience with deep GCP expertise
- Hands-on experience with posture management tools like Wiz, Orca, Prisma Cloud, or Lacework
- Strong proficiency with Terraform or Pulumi and GitOps workflows
- Docker and Kubernetes expertise including runtime security and network policies
- Understanding of SOC 2, ISO 27001, CIS Benchmarks, or NIST compliance frameworks

## Nice to have

- Experience with IaC scanners like Checkov, Tfsec, or KICS
- Working knowledge of AWS or Azure in addition to GCP
- Familiarity with cloud-native security tools like GCP Security Command Center

Apply on Replit's site: https://jobs.ashbyhq.com/replit/4b290489-9ce6-45f9-bbc8-e1baa4bd8b6f/application
