See all roles

[Remote] Sr. Security Engineer II

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. iHerb is on a mission to make health and wellness accessible to all, and they are seeking a Sr. Security Engineer II to enhance their security operations. The role involves designing and maintaining automated security solutions in cloud environments, particularly focusing on AWS, while collaborating with cross-functional teams to integrate security into CI/CD pipelines.

Responsibilities

  • Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows
  • Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure
  • Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization
  • Maintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processes
  • Develop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policies
  • Architect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actions
  • Design and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilities
  • Serve as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processes
  • Leverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and response
  • Own the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboards
  • Collaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security left
  • Conduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and tooling
  • Monitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and compliance
  • Stay current with AWS best practices, security trends, and emerging technologies to drive continuous improvement

Skills

  • 10+ years of experience
  • Strong hands-on experience with: Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash
  • AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight
  • Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning
  • Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses
  • Splunk SOAR playbook development and automation
  • Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols
  • Proven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidance
  • Experience designing automation solutions that reduce MTTD and MTTR
  • Solid understanding of cloud security principles, compliance frameworks, and secure infrastructure design
  • Experience with Scalr, Harness, or similar IaC deployment platforms
  • Familiarity with GCP and/or Azure cloud environments
  • Prior experience integrating security tools with Jira and building data pipelines for visualization (QuickSight or similar)
  • Security certifications (AWS Security Specialty, CKS, Splunk-related certifications, or Okta certifications) are a plus

Benefits

  • Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan.
  • Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies.
  • Employees will enjoy paid holidays throughout the calendar year.
  • Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.

Company Overview

  • iHerb is on a mission to make health and wellness accessible to all. It was founded in 1996, and is headquartered in Irvine, California, USA, with a workforce of 1001-5000 employees. Its website is http://www.iherb.com.
  • Company H1B Sponsorship

  • iHerb has a track record of offering H1B sponsorships, with 1 in 2026, 4 in 2025, 2 in 2024, 2 in 2023, 6 in 2022, 2 in 2021, 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    You might like

    [Remote] Startup Mentor to Healthcare Venture Capital Fund

    Work from home Full-time role

    [Remote] Director, GCO Technology Data & Analytics

    Work from home Full-time role

    [Remote] Sales Professional

    Work from home Full-time role

    [Remote] Director of Client Sales

    Work from home Full-time role

    [Remote] Institutional Sales Associate - AI Trainer

    Work from home Full-time role

    [Remote] Sr. Embedded Software Engineer

    Work from home Full-time role

    [Remote] Account Manager

    Work from home Full-time role

    [Remote] Senior Director Business Development (Data)

    Work from home Full-time role

    [Remote] Healthcare Executive Advisor Opportunity in Brain Health Growth

    Work from home Full-time role

    [Remote] Healthcare Executive Board Member – Internal Medicine Advisor

    Work from home Full-time role

    SALES ASSOCIATE in SHIPPENSBURG, PA S17327

    Work from home Full-time role

    Experienced Big Data Analyst – Remote Data Science and Analytics Expert for Southwest Airlines

    Work from home Full-time role

    Children's Residential Waking Night Support Worker ID-1585 – Amazon Store

    Work from home Full-time role

    Account Associate - State Farm Agent Team Member

    Work from home Full-time role

    Part-Time Customer Service and IT Support Representative for Evening and Weekend Shifts - Remote Work Opportunity with blithequark

    Work from home Full-time role

    Social Content Creator | Remote, USA

    Work from home Full-time role

    Entry‑Level Remote Data Entry Specialist – Part‑Time Flexible Hours at arenaflex

    Work from home Full-time role

    Experienced Part-Time Live Chat Support Agent – Deliver Exceptional Customer Service from the Comfort of Your Own Home

    Work from home Full-time role

    Customer Success Manager (Remote in AZ, CA, CO, ID, LA, MI, MT, NM, NV, OK, OR, TX, UT, WA and WY)

    Work from home Full-time role

    SaaS Implementation Specialist, SaaS Experience Required

    Work from home Full-time role