In a world where acquisition costs are skyrocketing, funding is scarce, and ecommerce merchants are forced to do more with less, the most innovative DTC brands understand that subscription strategy is business strategy.
Recharge is simplifying retention and growth for innovative ecommerce brands. As the #1 subscription platform, Recharge is dedicated to empowering brands to easily set up and manage subscriptions, create dynamic experiences at every customer touchpoint, and continuously evaluate business performance. Powering everything from no-code customer portals, personalized offers, and dynamic bundles, Recharge helps merchants seamlessly manage, grow, and delight their subscribers while reducing operating costs and churn. Today, Recharge powers more than 20,000 merchants serving 100 million subscribers, including brands such as Blueland, Hello Bello, LOLA, Chamberlain Coffee, and Bobbie—Recharge doesn’t just help you sell products, we help build buyer routines that last.
Recharge is recognized on the Technology Fast 500, awarded by Deloitte, (3rd consecutive year) and is Great Place to Work Certified.
As a Senior Information Security Engineer, you will play a pivotal role in designing, implementing, and maintaining robust security measures to safeguard our cloud network infrastructure. You will be responsible for ensuring the confidentiality, integrity, and availability of our critical systems, as well as proactively identifying and mitigating potential security threats.
In this role, you will be a core contributor in ensuring the security of Recharge’s cloud platform. You will collaborate, both within and outside of your team to clarify, theorize, figure out, and decide solutions to complex problems.
Network Security Architecture:
Design, implement, and maintain secure cloud / network architectures, ensuring the confidentiality, integrity, and availability of data.
Review IAM and access controls to ensure adherence to the principles of least privilege.
Create and maintain network and security documentation.
Collaborate with cross-functional teams to integrate security measures into network designs and implementations.
Security Event Detection:
SIEM / Log Management
Manage Endpoint / EDR / XDR / Anti-malware tools and policies
Cloud-native network traffic and event monitoring (GuardDuty, Security Command Center)
Monitor network traffic for unusual activity and respond to security incidents in a timely manner.
Audit and review user and merchant network activity to ensure system and data safety
Security Event Prevention:
IDS/IPS management and response
Firewall rule review and management
WAF configuration and rule tuning
Vulnerability Assessment:
Conduct regular vulnerability assessments on network infrastructure to identify and remediate potential security risks.
Stay abreast of emerging threats and vulnerabilities, applying proactive measures to protect against them.
Incident Response:
Maintain and continuously improve incident response plans, participate in tabletop exercises, and lead incident response efforts when necessary.
Collaborate with internal teams and external stakeholders to investigate and mitigate security incidents.
Mentor other engineers on security configurations and best practices
Investigate, analyze and evangelize good security posture throughout the organization
Automate security tools and processes where possible
Live by and champion our values: Accountability, Collaboration, Iteration and Details
Network security design experience and an an in-depth knowledge of network protocols, firewall configurations, and intrusion detection/prevention systems
Cloud infrastructure security knowledge including hardening standards, CSPM tools, VPN/remote access management and authentication technologies such as SAML, OAuth
Robust understanding of WAF technologies such as Akamai, Cloudflare, Google Cloud Armor, Imperva, etc
Experience configuring SIEM tools such as Splunk, LogRhythm, FileVault, etc
Extensive knowledge of Vulnerability Management practices
Understanding of virus and malware defense systems such as Crowdstrike, Sentinel One, Trend Micro, etc
Understanding of backup systems and disaster recovery planning
Experience with security assessment tools and techniques
Ability to manage multiple projects, activities, and tasks simultaneously
Ability to learn and support new systems and applications
Strong analytical and problem-solving skills
Excellent communication and collaboration skills
Willingness to participate in a first line of support on-call rotation
Desire to work remotely and to make an impact
5+ years of experience in network and/or security roles, with a focus on edge security tools
2+ years experience with k8s, Helm, IaC, Terraform, Docker, Linux, Kubernetes, etc
2+ years experience with Monitoring, Metrics and Logging (Splunk) solutions
2+ years experience in cloud-native environments such as GCP, AWS, or Azure
Bachelor’s degree in Computer Science, Information Technology, or related field
Relevant certifications such as CISSP, CCSP, GSEC, or equivalent
GCP, Kubernetes, GitLab, Helmfile, Terraform, Docker, Ansible, Nginx, Redis, CloudSQL/MySQL, Python, Flask, React, Vue.js, Snowflake, Looker
Recharge’s compensation offerings are grounded in a pay-for-performance philosophy that recognizes exceptional individual and team performance. Salary ranges are designed to be competitive and aligned with country specific practices, while individual compensation is determined by skills, qualifications, and experience. The compensation listed is not inclusive of any equity and benefits that might exist in your total compensation package.
Hiring range in the US
$124,000 USD - $155,000 USD
Hiring range in Canada
$96,000 CAD - $120,000 CAD
Application window anticipated to close: [04/07/2025]. If you’re interested in this opportunity, please submit an application as soon as possible.
Medical, dental and vision plans
Retirement plan with employer contribution
Flexible Time Off
Paid Parental Leave
Monthly Remote Life and Merchant stipends
Recharge | Instagram | Twitter | Facebook
Recharge Payments is an equal opportunity employer. In addition to EEO being the law, it is a policy that is fully consistent with our principles. All qualified applicants will receive consideration for employment without regard to status as a protected veteran or a qualified individual with a disability, or other protected status such as race, religion, color, national origin, sex, sexual orientation, gender identity, genetic information, pregnancy or age. Recharge Payments prohibits any form of workplace harassment.
Thislink leads to the Anthem Blue Cross machine-readable files that are made available in response to the federal Transparency in Coverage Rule and includes network negotiated rates for all items and services; allowed amounts for OON items, services and prescription drugs; and negotiated rates and historical prices for network prescription drugs (delayed). EIN 80-6245138. This link leads to the Kaiser machine-readable files.
#LI-Remote
Your email won't be used for commercial purposes. Read our Privacy Policy.