All roles

Open role

[Remote] Sr. Security Engineer II

Remote · Singapore Full-time

Note: The job is a remote job and is open to candidates in USA. iHerb is on a mission to make health and wellness accessible to all, and they are seeking a Sr. Security Engineer II to enhance their security operations. The role involves designing and maintaining automated security solutions in cloud environments, particularly focusing on AWS, while collaborating with cross-functional teams to integrate security into CI/CD pipelines.

Responsibilities

  • Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows
  • Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure
  • Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization
  • Maintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processes
  • Develop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policies
  • Architect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actions
  • Design and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilities
  • Serve as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processes
  • Leverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and response
  • Own the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboards
  • Collaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security left
  • Conduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and tooling
  • Monitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and compliance
  • Stay current with AWS best practices, security trends, and emerging technologies to drive continuous improvement

Skills

  • 10+ years of experience
  • Strong hands-on experience with: Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash
  • AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight
  • Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning
  • Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses
  • Splunk SOAR playbook development and automation
  • Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols
  • Proven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidance
  • Experience designing automation solutions that reduce MTTD and MTTR
  • Solid understanding of cloud security principles, compliance frameworks, and secure infrastructure design
  • Experience with Scalr, Harness, or similar IaC deployment platforms
  • Familiarity with GCP and/or Azure cloud environments
  • Prior experience integrating security tools with Jira and building data pipelines for visualization (QuickSight or similar)
  • Security certifications (AWS Security Specialty, CKS, Splunk-related certifications, or Okta certifications) are a plus

Benefits

  • Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan.
  • Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies.
  • Employees will enjoy paid holidays throughout the calendar year.
  • Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.

Company Overview

  • iHerb is on a mission to make health and wellness accessible to all. It was founded in 1996, and is headquartered in Irvine, California, USA, with a workforce of 1001-5000 employees. Its website is http://www.iherb.com.
  • Company H1B Sponsorship

  • iHerb has a track record of offering H1B sponsorships, with 1 in 2026, 4 in 2025, 2 in 2024, 2 in 2023, 6 in 2022, 2 in 2021, 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • More open positions

    [Remote] Startup Mentor to Healthcare Venture Capital Fund

    Work from home Full-time role

    [Remote] Director, GCO Technology Data & Analytics

    Work from home Full-time role

    [Remote] Sales Professional

    Work from home Full-time role

    [Remote] Director of Client Sales

    Work from home Full-time role

    [Remote] Institutional Sales Associate - AI Trainer

    Work from home Full-time role

    AIML Research Associate

    Work from home Full-time role

    Tech Lead, Android Core Product - Silver Spring, MD, USA

    Work from home Full-time role

    Experienced Data Entry Specialist – Remote Work Opportunity with careerzynith

    Work from home Full-time role

    [Remote] Senior Instructional Designer

    Work from home Full-time role

    Project Civil Engineer - Data Center

    Work from home Full-time role

    Clinical Specialist I, CPT

    Work from home Full-time role

    Middle School Electives Teacher

    Work from home Full-time role

    [Remote] Senior Director, Product Strategy & Operations

    Work from home Full-time role

    [Remote] Lead AI/ML Engineer

    Work from home Full-time role

    Experienced Remote Insurance Sales Agent – Build a Business and Achieve Financial Freedom with Symmetry Financial Group

    Work from home Full-time role

    Social Media Sales Specialist – Remote Chat Engagement for Coaching Programs (Entry‑Level to Leadership)

    Work from home Full-time role

    [Remote] Executive Director, Clinical Pharmacology Services Quality Assurance (United States or United Kingdom)

    Work from home Full-time role

    [Remote] Director, Program Management (Commercial)

    Work from home Full-time role

    Director of Accessibility / Section 504 Coordinator for Students

    Work from home Full-time role

    Experienced Full Stack Data Entry Specialist – Remote Database Management and Data Analysis

    Work from home Full-time role

    Oral Surgery Billing Specialist

    Work from home Full-time role