Senior Security Engineer - Remote Opportunity
About the Role
We're looking for a Senior Security Engineer to help strengthen and scale Runware's security posture as we grow our AI inference platform and expand our enterprise customer base. This Senior Security Engineer remote role has clear ownership over security controls, compliance execution, and day-to-day security engineering, including driving SOC 2 and ISO 27001 compliance from end to end. You will work closely with engineering, infrastructure, and leadership to ensure security is built into how we design, build, and operate the platform.
What You'll Do
- Own and drive SOC 2 and ISO 27001 compliance, including control design, implementation, evidence collection, audits, and continuous improvement.
- Translate compliance requirements into practical, scalable engineering and operational controls.
- Partner with infrastructure and engineering teams to embed security into system design and delivery.
- Maintain and evolve Runware's security policies, standards, and risk register.
- Lead security reviews of systems, architectures, and changes with a focus on real-world risk.
- Support incident response, including investigation, containment, and post-incident learning.
- Improve security visibility across the platform (logging, monitoring, alerting, audit trails).
- Own vendor and third-party security assessments and questionnaires.
- Help establish and mature secure development practices (access control, secrets management, least privilege, change management).
- Act as a security mentor and point of reference for engineers across the organization.
Requirements
- Strong experience in security engineering, infrastructure security, or a closely related role.
- Proven, hands-on experience delivering SOC 2 and/or ISO 27001 in a production environment.
- Strong understanding of cloud security fundamentals (IAM, networking, encryption, key management).
- Experience working with modern cloud platforms, CI/CD pipelines, and containerized workloads.
- Ability to assess risk pragmatically and prioritize controls that actually reduce it.
- Experience responding to and managing security incidents in real systems.
- Comfortable working across engineering, product, and leadership stakeholders.
- Clear communicator, especially when explaining security trade-offs and decisions.
- Ability to operate independently and take ownership in a remote-first environment.
Nice to Have
- Experience securing high-performance or distributed systems.
- Familiarity with compliance tooling and evidence automation.
- Knowledge of infrastructure as code (Terraform, Pulumi, etc.).
- Experience with vulnerability management, penetration testing, or bug bounty programs.
- Background in startups or scaling companies.
What We Offer
- We're a remote-first collective, meeting in person twice a year to plan, brainstorm, celebrate wins, and enjoy some face-to-face time.
- Generous paid time off - vacation, sick days, public holidays.
- Flexible hours - own your schedule outside core collaboration blocks.
- Family leave - paid maternity, paternity, and caregiver time.
- Company retreats - twice-yearly gatherings in inspiring locations.
This Senior Security Engineer role at Runware offers a unique opportunity to work remotely while contributing to the security of an innovative AI platform.
About Runware
Explore Runware careers in 2026 and discover exciting job opportunities across remote, hybrid, and office roles. Utilize our advanced filters to tailor your resume, track applications, and gain valuable insights into the company. Stay updated with the latest industry news while finding the perfect fit for your skills. Start your journey with Runware today and unlock your potential in an innovative environment.
Who Will Succeed Here
Proficient in Security Engineering practices with hands-on experience in SOC 2 and ISO 27001 compliance frameworks, ensuring adherence to industry standards and regulations.
Strong understanding of Cloud Security and CI/CD pipelines, with the ability to implement security measures within containerized environments (e.g., Docker, Kubernetes) to protect applications during development and deployment.
Analytical mindset focused on Risk Management, capable of identifying vulnerabilities and developing mitigation strategies to enhance security posture in a fast-paced remote work environment.
Learning Resources
Career Path
Market Overview
Skills & Requirements
Domain Trends
Industry News
Loading latest industry news...
Finding relevant articles from the last 6 months