Nue.io Logo

Nue.io

Staff Security Engineer, DevSecOps

Posted 7 Days Ago
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Hands-on Staff Security Engineer to build and operate DevSecOps capabilities: automate security controls, harden AWS/cloud and CI/CD, improve supply-chain security, build detection/response tooling, partner with engineering for secure design, and lead incident response and compliance automation.
The summary above was generated by AI
About Nue.io
Nue is the AI-powered revenue architecture platform that unifies CPQ, billing, and revenue lifecycle management into a single system. It enables companies to simplify complex pricing, automate monetization, and gain full control over how they generate and scale revenue. Working with customers such as OpenAI, Chilipiper, Glean, HootSuite, and Mews. Nue helps sales, operations, and finance teams gain revenue acceleration, operational efficiency and revenue controls at speed and scale.
What You’ll Do:
We're looking for a highly motivated Staff Security Engineer to join our DevSecOps team and help build and operate the security foundation of Nue's platform and engineering systems.
This is not a policy or analyst role. We want someone who is hands-on, writes code, automates security controls, improves infrastructure, hardens systems, and helps engineers ship safely at speed.
You'll work at the intersection of software engineering, cloud infrastructure, security operations, and developer enablement. You'll partner closely with Product Engineering, Platform, and DevSecOps teams to reduce real risk through practical engineering.

If you're passionate about securing cloud-native systems, building internal tooling, improving detection and response, and making security a force multiplier for engineering, this is the role for you.

Responsibilities:
  • Drive secure-by-default patterns across the organization through reusable libraries, templates, guardrails, and paved-road workflows, improving security posture across cloud infrastructure, the application stack, and developer workflows.
  • Lead practical threat modeling for new product capabilities, platform changes, and high-risk workflows, translating findings into clear engineering actions.
  • Help define the security tooling strategy across application security, cloud security, detection, and developer workflows, evaluating and integrating tools that meaningfully reduce risk without slowing delivery.
  • Improve software supply chain security across build systems, dependencies, container images, secrets, and deployment processes.
  • Design, build, and operate security automation and production-quality tooling for identity and access management, secrets management, vulnerability management, and policy enforcement.
  • Harden AWS environments, containerized workloads, and CI/CD pipelines, using AI-assisted tooling to accelerate work where it genuinely helps.
  • Build and maintain detection and alerting for meaningful security events across endpoints, cloud infrastructure, application logs, audit trails, and identity systems.
  • Partner with engineering teams to review architecture, application design, infrastructure changes, and operational patterns with a focus on reducing exploitable risk.
  • Support compliance and audit needs through engineering-driven controls, evidence automation, logging, and repeatable operational practices.
  • Own hands-on incident response, including triage, containment, root cause analysis, remediation, and post-incident follow-through.
  • Participate in on-call rotations for high-severity security and platform incidents and build and test response procedures for scenarios such as credential compromise, privilege escalation, and exposed secrets.

What You’ll Bring:
  • Bachelor's degree in Computer Science, Engineering, or equivalent practical experience.
  • 8+ years of experience across software engineering, infrastructure engineering, platform engineering, SRE, DevOps, security engineering, or related roles in production SaaS environments.
  • 3+ years of hands-on experience in security engineering, platform security, cloud security, or related security-focused roles.
  • Strong hands-on experience securing cloud-native environments on AWS.
  • Proven ability to write code for automation, integrations, internal tooling, and operational workflows using languages such as Python, Go, JavaScript, or Bash.
  • Experience operating in a DevSecOps or platform-adjacent model where security is embedded into delivery pipelines and engineering workflows.
  • Strong experience with identity and access management, secrets handling, key management, logging, auditability, and least-privilege design.
  • Experience building or operating security controls for CI/CD, infrastructure as code, containerized systems, and developer platforms.
  • Practical experience with security monitoring, detection engineering, alert tuning, and incident response.
  • Ability to assess real-world risk and prioritize pragmatic fixes over theoretical perfection.
  • Experience partnering with engineering teams to improve security architecture, code patterns, infrastructure posture, and operational readiness.
  • Demonstrated ability to use AI-assisted development tools to accelerate investigations, automate repetitive work, and improve engineering effectiveness while maintaining strong judgment.
  • Comfortable working in a fast-paced startup environment with a small, high-impact team.
  • Excellent communication and collaboration skills, able to explain trade-offs clearly and drive consensus without becoming a bottleneck.


What We Offer:
  • Competitive compensation and benefits that reward your talent and impact.
  • Comprehensive health, vision, dental, and life insurance 
  • A front-row seat in the Silicon Valley tech ecosystem, where you’ll work on cutting-edge challenges shaping the future of SaaS, finance, and payments.
  • The opportunity to build truly groundbreaking products — your work won’t just support the business; it will influence how companies around the world monetize and grow.
  • A high-energy, collaborative culture where smart, supportive teammates push each other to learn fast, think boldly, and do the best work of their careers.
  • Room to grow, lead, and make your mark in a fast-scaling company that values creativity, ownership, and ambition.


Nue.IO is an equal opportunity employer and welcome people of diverse backgrounds, perspectives, and skills.

We will work with applicants to provide accommodations at any stage of the hiring process.

If you require accommodations during the interview process, please email your Talent Partner, and we will work with you to meet your needs.


Similar Jobs

Senior level
Financial Services
Advise payments business on regulatory and policy requirements, design and assess compliance controls, support risk assessments, manage incidents and remediation, prepare for regulatory examinations, produce governance materials, and deliver training to ensure payments operations meet Canadian regulatory expectations.
An Hour Ago
Easy Apply
Remote
Easy Apply
Senior level
Senior level
Artificial Intelligence • Cloud • Edtech • HR Tech • Sales • Software • Generative AI
Manage the full SaaS implementation lifecycle for new customers: define platform architecture, lead project execution, configure integrations (SSO, APIs), onboard and train clients, and develop repeatable processes to ensure successful deployment and adoption of the 360Learning platform.
Top Skills: 360LearningAPIsSsoTrello
2 Hours Ago
Remote or Hybrid
USA
124K-207K Annually
Senior level
124K-207K Annually
Senior level
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Lead optimization and experimentation for Pfizer's HCP web properties (primarily PfizerPro). Develop experimentation roadmaps, run A/B and multivariate tests, analyze web and business metrics, partner with UX, analytics, and strategy to translate insights into product and design improvements, and adopt AI-enabled tools to scale personalization and accelerate test velocity while maintaining rigorous measurement.
Top Skills: A/B TestingAdobe AnalyticsAdobe TargetAi-Enabled Optimization And Personalization ToolsClaude DesignContent Management SystemsFigma MakeMultivariate TestingOptimizelyVwoWeb Analytics

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account