All jobs

[Remote] Sr. Security Engineer II

100% Remote Full-time Open now

Note: The job is a remote job and is open to candidates in USA. iHerb is on a mission to make health and wellness accessible to all, and they are seeking a Sr. Security Engineer II to enhance their security operations. The role involves designing and maintaining automated security solutions in cloud environments, particularly focusing on AWS, while collaborating with cross-functional teams to integrate security into CI/CD pipelines.

Responsibilities

  • Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows
  • Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure
  • Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization
  • Maintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processes
  • Develop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policies
  • Architect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actions
  • Design and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilities
  • Serve as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processes
  • Leverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and response
  • Own the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboards
  • Collaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security left
  • Conduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and tooling
  • Monitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and compliance
  • Stay current with AWS best practices, security trends, and emerging technologies to drive continuous improvement

Skills

  • 10+ years of experience
  • Strong hands-on experience with: Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash
  • AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight
  • Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning
  • Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses
  • Splunk SOAR playbook development and automation
  • Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols
  • Proven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidance
  • Experience designing automation solutions that reduce MTTD and MTTR
  • Solid understanding of cloud security principles, compliance frameworks, and secure infrastructure design
  • Experience with Scalr, Harness, or similar IaC deployment platforms
  • Familiarity with GCP and/or Azure cloud environments
  • Prior experience integrating security tools with Jira and building data pipelines for visualization (QuickSight or similar)
  • Security certifications (AWS Security Specialty, CKS, Splunk-related certifications, or Okta certifications) are a plus

Benefits

  • Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan.
  • Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies.
  • Employees will enjoy paid holidays throughout the calendar year.
  • Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.

Company Overview

  • iHerb is on a mission to make health and wellness accessible to all. It was founded in 1996, and is headquartered in Irvine, California, USA, with a workforce of 1001-5000 employees. Its website is http://www.iherb.com.
  • Company H1B Sponsorship

  • iHerb has a track record of offering H1B sponsorships, with 1 in 2026, 4 in 2025, 2 in 2024, 2 in 2023, 6 in 2022, 2 in 2021, 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    You might also like

    [Remote] Startup Mentor to Healthcare Venture Capital Fund

    100% Remote Full-time

    [Remote] Director, GCO Technology Data & Analytics

    100% Remote Full-time

    [Remote] Sales Professional

    100% Remote Full-time

    [Remote] Director of Client Sales

    100% Remote Full-time

    [Remote] Institutional Sales Associate - AI Trainer

    100% Remote Full-time

    [Remote] Sr. Embedded Software Engineer

    100% Remote Full-time

    [Remote] Account Manager

    100% Remote Full-time

    [Remote] Senior Director Business Development (Data)

    100% Remote Full-time

    [Remote] Healthcare Executive Advisor Opportunity in Brain Health Growth

    100% Remote Full-time

    [Remote] Healthcare Executive Board Member – Internal Medicine Advisor

    100% Remote Full-time

    Experienced Data Entry Specialist – Remote Work Opportunity with arenaflex for Career Growth and Development

    100% Remote Full-time

    Case Development Paralegal

    100% Remote Full-time

    Experienced Remote Sales Chat Representative – Unlock Endless Opportunities in the Thriving Secondhand Shipping Container Industry

    100% Remote Full-time

    Social Media Manager - Remote Marketing Job

    100% Remote Full-time

    Experienced Customer Chat Support Representative - Remote Work Opportunity with Flexible Hours and Competitive Pay Rate

    100% Remote Full-time

    Experienced Customer Support Professional – Live Chat Agent for Dynamic and Innovative blithequark Team

    100% Remote Full-time

    Event Manager Part-Time

    100% Remote Full-time

    [FULL TIME Remote] Entry Level Travel Agent (Remote)

    100% Remote Full-time

    Sales and Service Technician

    100% Remote Full-time

    Experienced Customer Service Representative – Insurance Industry – Work-from-Home Opportunity

    100% Remote Full-time