[Remote] Sr. Security Engineer II

Remote Full-time
Note: The job is a remote job and is open to candidates in USA. iHerb is on a mission to make health and wellness accessible to all, and they are seeking a Sr. Security Engineer II to enhance their security operations. The role involves designing and maintaining automated security solutions in cloud environments, particularly focusing on AWS, while collaborating with cross-functional teams to integrate security into CI/CD pipelines.ResponsibilitiesDesign, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflowsDeploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and AzureBuild, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS OrganizationMaintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processesDevelop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policiesArchitect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actionsDesign and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilitiesServe as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processesLeverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and responseOwn the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboardsCollaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security leftConduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and toolingMonitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and complianceStay current with AWS best practices, security trends, and emerging technologies to drive continuous improvementSkills10+ years of experienceStrong hands-on experience with: Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & BashAWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSightPolicy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanningSplunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responsesSplunk SOAR playbook development and automationOkta Identity Engine (OIE), SSO, SAML, and OIDC protocolsProven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidanceExperience designing automation solutions that reduce MTTD and MTTRSolid understanding of cloud security principles, compliance frameworks, and secure infrastructure designExperience with Scalr, Harness, or similar IaC deployment platformsFamiliarity with GCP and/or Azure cloud environmentsPrior experience integrating security tools with Jira and building data pipelines for visualization (QuickSight or similar)Security certifications (AWS Security Specialty, CKS, Splunk-related certifications, or Okta certifications) are a plusBenefitsEmployees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan.Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies.Employees will enjoy paid holidays throughout the calendar year.Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.Company OverviewiHerb is on a mission to make health and wellness accessible to all. It was founded in 1996, and is headquartered in Irvine, California, USA, with a workforce of 1001-5000 employees. Its website is http://www.iherb.com.Company H1B SponsorshipiHerb has a track record of offering H1B sponsorships, with 1 in 2026, 4 in 2025, 2 in 2024, 2 in 2023, 6 in 2022, 2 in 2021, 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.

Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Customer Support Rep

Remote

??Accountant/Tax Assistant(Fully Remote, Bilingual Mandarin English)

Remote

Aerie - Brand Ambassador (Sales Associate) in Washington, PA

Remote

Sr. VM Engineer

Remote

HR Generalist -Compliance (Remote)

Remote

**Experienced Data Entry Customer Care Specialist – Remote Opportunity at blithequark**

Remote

Bookkeeping Assistant, Data Entry

Remote

DevOps Engineer (Remote), Remote Job

Remote

**Experienced Live Chat Agent – Delivering Exceptional Real-Time Customer Support in a Fully Remote US Environment**

Remote

Sephora 1099 Independent Contractor

Remote
← Back