Senior Security Engineer

PrizePicks

$160K — $175K *
US-AnywhereRemote in Atlanta, GA
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in DevSecOps, Security Engineering, or similar roles.
  • Experience managing a security program from roadmap to execution, influencing cross-functional teams.
  • Expertise with cloud platforms like GCP, AWS, or Azure and container orchestration (Kubernetes, ECS).
  • Familiarity with cloud and container security tools.
  • Strong understanding of WAFs, bot mitigation, API gateways, and CDN security features.
  • Proven track record in secure design and architecture reviews.
  • Experience with IaC tools such as Terraform, OpenTofu, and Helm.

Responsibilities

  • Define and execute the technical roadmap for Cloud, Container, and Edge Protection programs.
  • Manage edge and bot protection, including WAF and DDoS mitigation.
  • Perform security infrastructure reviews for product releases and architectural changes.
  • Implement and maintain monitoring tools to detect vulnerabilities.
  • Own container image security, focusing on vulnerability scanning and compliance.
  • Collaborate with teams to integrate security into CI/CD pipelines with minimal delivery disruption.
  • Identify security control gaps in cloud and container infrastructure and lead remediation efforts.

Benefits

  • Company-subsidized medical, dental, & vision plans
  • 401(k) plan with company match
  • Annual bonus
  • Flexible PTO to encourage work/life balance
  • Generous paid leave programs including 16-week parental leave
  • Workplace flexibility with modern work hours
  • Company-wide events and team outings
  • Lifestyle enhancement program
  • Company equipment provided (Windows & Mac options)
  • Annual performance reviews with growth opportunities
Full Job Description
We are looking for a Senior Security Engineer to scale and mature our Cloud, Container, and Edge Security programs. In this role, you will move beyond passive scanning to actively engineer guardrails, automate threat detection, and build automated enforcement gates into our CI/CD pipelines and infrastructure. You will partner closely with Engineering, Infrastructure, and Application Security teams to ensure our cloud environments, containerized workloads, and edge boundaries remain resilient and secure by default.

What you'll do:
  • Define, drive, and execute the long-term technical roadmap for Cloud, Container, and Edge Protection programs.
  • Manage and maintain edge and bot protection (e.g., WAF, CDN, DDoS mitigation).
  • Perform security-focused infrastructure reviews for new product releases and architectural changes.
  • Implement and maintain monitoring and alerting tools to detect cloud and container-related vulnerabilities and misconfigurations.
  • Own container image security - vulnerability scanning and remediation at the base image layer, and building the gating needed to keep unpatched or non-compliant images out of production.
  • Collaborate with Infrastructure and Engineering teams to embed security into CI/CD pipelines and deployment processes without slowing down delivery.
  • Partner with Application Security and Engineering to implement security controls on opportunities identified during Threat Modeling.
  • Lead initiatives around infrastructure-as-code (IaC) security and runtime protection to automate security controls and hardening.
  • Identify security control gaps across cloud, container, and network infrastructure, and drive them to resolution - proposing the fix and staging the implementation (e.g., a Terraform PR) for Infrastructure to review and approve.
  • Assist with threat modeling, risk assessments, and provide security guidance during the development lifecycle.
  • Collaborate with incident response teams, offering expert advice on cloud-related security issues to help resolve incidents quickly.
  • Develop tooling or automation to support proactive remediation and continuous security validation.
  • Track and report DevSecOps KPIs, such as mean time to remediate, security control coverage, and vulnerability trends.
  • Mentor engineers across the security org and set technical standards for how the team approaches cloud and container security.

What you have:
  • 5+ years in DevSecOps, Security Engineering, or similar roles.
  • Experience owning a security program or initiative end-to-end, from roadmap to execution, including influencing engineering teams outside your reporting line.
  • Expertise with cloud platforms (GCP, AWS, Azure) and container orchestration (e.g., Kubernetes, ECS).
  • Experience with cloud and container security tooling.
  • Strong understanding of WAFs, bot mitigation, API gateways, and CDN security features.
  • Proven experience performing secure design and architecture reviews.
  • Proficiency with IaC tools (Terraform, OpenTofu, Helm, etc.) and integrating security scanners into pipelines.

What makes you stand out:
  • Extensive hands-on experience with Terraform, OpenTofu, and/or Crossplane.
  • Experience with CrowdStrike.
  • Solid understanding of networking principles (e.g., VPCs, load balancing, firewalls) in a cloud environment.
  • Knowledge of database management (SQL and NoSQL).
  • Relevant certifications (e.g., Kubernetes and Cloud Native Security Associate, Certified Kubernetes Security Specialist, Google Professional Cloud Security Engineer, AWS Certified DevOps Engineer, AWS Certified Security - Specialty, Certified Kubernetes Administrator).
Where you'll live:
  • While we prefer candidates based in Atlanta, we are open to qualified applicants from anywhere in the U.S. and are willing to consider remote candidates. #LI-Remote
Working at PrizePicks:

The typical salary range for this position is $160,000 to $175,000. At PrizePicks, we consider your role, level, and where you'll be working when determining our salary ranges. The compensation info you see on our job postings gives you an idea of the starting pay range for the position. Your actual pay within that range will depend on your specific work location, as well as your skills, experience, and education. Your recruiter will be happy to chat more about the specific pay range for your location and how we arrived at it during the hiring process.

This application period will remain open for 30 days. We're committed to finding the best candidate, so this date may be adjusted, and any changes will be reflected in this posting.

Date Posted: 9/14/26

Benefits you'll receive:

In addition to your great compensation package, full-time employees will be eligible for the following perks:
  • Company-subsidized medical, dental, & vision plans
  • 401(k) plan with company match
  • Annual bonus
  • Flexible PTO to encourage a healthy work/life balance (2 weeks STRONGLY encouraged!)
  • Generous paid leave programs, including 16-week paid parental leave and disability benefits
  • Workplace flexibility and modern work schedules focused on getting the job done, not hours clocked
  • Company-wide in-person events and team outings
  • Lifestyle enhancement program
  • Company equipment provided (Windows & Mac options)
  • Annual performance reviews with opportunities for growth and career development

Similar Jobs

More Jobs at PrizePicks

More Information Technology Jobs

Find similar Senior Security Engineer jobs: