Join Synthesia as a Staff SecOps Security Engineer to enhance security across cloud infrastructures in a fully remote environment.
Posted by employer 2 weeks ago
First seen on Joblaze 1 week ago
Last verified on the company career page 1 day ago
Skills & Technologies
Requirements
Not disclosed in this posting: compensation, visa sponsorship.
Benefits
Joblaze summary
In this staff-level SecOps Security Engineer role at Synthesia, the individual will focus on enhancing security across cloud infrastructures, including AWS and GCP, while also developing detection and response capabilities. Key skills include hands-on experience with cloud security, Kubernetes, and incident response, along with strong programming abilities in Python or similar languages. This position is ideal for seasoned security engineers with a background in fast-paced SaaS environments, looking to contribute to a rapidly growing company at the forefront of AI technology.
Joblaze insights
Quick facts
From the original posting
Synthesia is the world’s leading AI video platform for business, used by over 90% of the Fortune 100. Founded in 2017, the company is headquartered in London, with offices and teams across Europe and the US.
As AI continues to shape the way we live and work, Synthesia develops products to enhance visual communication and enterprise skill development, helping people work better and stay at the center of successful organizations.
Following our recent Series E funding round, where we raised $200 million, our valuation stands at $4 billion. Our total funding exceeds $530 million from premier investors including Accel, NVentures (Nvidia's VC arm), Kleiner Perkins, GV, and Evantic Capital, alongside the founders and operators of Stripe, Datadog, Miro, and Webflow.
Location: Remote (US East Coast/Central)
As our team and customer base grow, we need to make sure our security efforts scale accordingly. For that, we are looking to expand the Synthesia Infosec team by onboarding an additional Security Engineer (L6)! You will report to the Head of Security and work within the Security Operations team.
Build and own deeply technical security improvements across our Cloud Infrastructure(s) and associated territory (AWS/GCP, Kubernetes, CI/CD), including shipping production changes yourself when needed.
Design, implement, and iterate on detection and response capabilities (SIEM, EDR/MDR, cloud-native detections, CNAPP) with an engineer’s bias for automation, reliability, and measurable outcomes.
Hunt, investigate, and respond to security alerts and suspicious activity end-to-end (triage → containment → eradication → recovery → learnings), including writing tooling and detection logic to prevent recurrence.
Build internal security tooling and automations (IaC, scripts, integrations) that reduce toil and raise the security bar by default.
You’re a deeply technical security engineer with a builder/hacker mindset, able to go from idea → prototype → production and comfortable making changes directly in Cloud Infra / DevOps systems.
You have 5+ years of hands-on security engineering experience, ideally in a cloud-first SaaS environment.
Have worked in a fast-growing startup, scale-up and/or SaaS company
Cloud security engineering in AWS and/or GCP, with the ability to implement improvements hands-on (IAM, networking, compute, storage, logging).
Kubernetes security (cluster hardening, workload isolation, runtime security, policy controls) and container ecosystems.
DevOps fundamentals: CI/CD security, secrets management, artifact integrity, and secure-by-default platform patterns.
Incident response and investigation, including creating repeatable playbooks and automating response where appropriate.
Strong programming/scripting ability (Python or similar) plus comfort with infrastructure-as-code (e.g., Terraform) and automation.
Serious agent coding - ideally you’re on the bleeding edge in the space.
Endpoint security tooling, such as CrowdStrike
Bonus points for:
Hands on experience with any/all of: Hunters, Wiz, Falcon, Tracebit, Torii, Okta, Google Workspace, StrongDM, Github, StepSecurity, Dope Security
Any relevant Information Security certification, e.g AWS Certified Security, GIAC GWEB, OSCP, or CSSLP.
In addition to being a part of a great team, working in a fun and innovative environment, we offer:
A competitive salary + stock options in our fast-growing Series E startup
Remote-friendly environment
100% Medical, Dental & Vision
401k Plan
Paid parental leave
25 days of annual leave + Public holidays + paid sick leave
Fun culture with regular socials
A generous referral scheme
A brand new computer + monitor
Budget and support for conference travel, community events, and content production