Synthesia logo

SecOps Security Engineer (Staff-level, L6)

Synthesia

Remote · USFull-timePosted 1mo agoStill listed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Remote · US
Schedule
Full-time
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Job overview

Synthesia, the leading AI video platform, seeks a Staff-level Security Engineer to join its Security Operations team. The remote role focuses on building security improvements across cloud infrastructure, designing detection capabilities, investigating alerts, and automating tooling, while collaborating with the Head of Security and supporting a fast‑growing SaaS environment.

Skills & qualifications

RequiredNice to have

Skills

KubernetesIncident ResponseScriptingAutomationCloud SecurityAWSGCPCI/CD SecuritySecrets ManagementArtifact IntegrityTerraformPythonInfrastructure-as-CodeEndpoint Security (CrowdStrike)HuntersWizFalconTracebitToriiOktaGoogle WorkspaceStrongDMGitHubStepSecurityDope Security

Qualifications

5+ Years Security Engineering ExperienceInformation Security Certification (e.g., AWS Certified Security, GIAC GWEB, OSCP, CSSLP)

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
401(k) Match
Parental Leave
Paid Time Off

Full job description

Synthesia is the world’s leading AI video platform for business, used by over 90% of the Fortune 100. Founded in 2017, the company is headquartered in London, with offices and teams across Europe and the US. As AI continues to shape the way we live and work, Synthesia develops products to enhance visual communication and enterprise skill development, helping people work better and stay at the center of successful organizations. Following our recent Series E funding round, where we raised $200 million, our valuation stands at $4 billion. Our total funding exceeds $530 million from premier investors including Accel, NVentures (Nvidia's VC arm), Kleiner Perkins, GV, and Evantic Capital, alongside the founders and operators of Stripe, Datadog, Miro, and Webflow.

Location: Remote (US East Coast/Central)

As our team and customer base grow, we need to make sure our security efforts scale accordingly. For that, we are looking to expand the Synthesia Infosec team by onboarding an additional Security Engineer (L6)! You will report to the Head of Security and work within the Security Operations team.

Key Responsibilities:

  • Build and own deeply technical security improvements across our Cloud Infrastructure(s) and associated territory (AWS/GCP, Kubernetes, CI/CD), including shipping production changes yourself when needed.

  • Design, implement, and iterate on detection and response capabilities (SIEM, EDR/MDR, cloud-native detections, CNAPP) with an engineer’s bias for automation, reliability, and measurable outcomes.

  • Hunt, investigate, and respond to security alerts and suspicious activity end-to-end (triage → containment → eradication → recovery → learnings), including writing tooling and detection logic to prevent recurrence.

  • Build internal security tooling and automations (IaC, scripts, integrations) that reduce toil and raise the security bar by default.

Experience & Qualifications:

  • You’re a deeply technical security engineer with a builder/hacker mindset, able to go from idea → prototype → production and comfortable making changes directly in Cloud Infra / DevOps systems.

  • You have 5+ years of hands-on security engineering experience, ideally in a cloud-first SaaS environment.

  • Have worked in a fast-growing startup, scale-up and/or SaaS company

We would expect you to have experience in:

  • Cloud security engineering in AWS and/or GCP, with the ability to implement improvements hands-on (IAM, networking, compute, storage, logging).

  • Kubernetes security (cluster hardening, workload isolation, runtime security, policy controls) and container ecosystems.

  • DevOps fundamentals: CI/CD security, secrets management, artifact integrity, and secure-by-default platform patterns.

  • Incident response and investigation, including creating repeatable playbooks and automating response where appropriate.

  • Strong programming/scripting ability (Python or similar) plus comfort with infrastructure-as-code (e.g., Terraform) and automation.

  • Serious agent coding - ideally you’re on the bleeding edge in the space.

  • Endpoint security tooling, such as CrowdStrike

Bonus points for:

  • Hands on experience with any/all of: Hunters, Wiz, Falcon, Tracebit, Torii, Okta, Google Workspace, StrongDM, Github, StepSecurity, Dope Security

  • Any relevant Information Security certification, e.g AWS Certified Security, GIAC GWEB, OSCP, or CSSLP.

The good stuff.. In addition to being a part of a great team, working in a fun and innovative environment, we offer:

  • A competitive salary + stock options in our fast-growing Series E startup

  • Remote-friendly environment

  • 100% Medical, Dental & Vision

  • 401k Plan

  • Paid parental leave

  • 25 days of annual leave + Public holidays + paid sick leave

  • Fun culture with regular socials

  • A generous referral scheme

  • A brand new computer + monitor

  • Budget and support for conference travel, community events, and content production

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.