Back to Jobs

[Remote] Sr. Security Engineer II

Remote, USA Full-time Posted 2026-06-20

Note: The job is a remote job and is open to candidates in USA. iHerb is on a mission to make health and wellness accessible to all, and they are seeking a Sr. Security Engineer II to enhance their security operations. The role involves designing and maintaining automated security solutions in cloud environments, particularly focusing on AWS, while collaborating with cross-functional teams to integrate security into CI/CD pipelines.

Responsibilities

  • Design, develop, and maintain automation frameworks and scripts (Python, Bash, Terraform) to streamline security processes and workflows
  • Deploy and manage secure, scalable infrastructure on AWS using Terraform via Scalr and Harness, with additional presence in GCP and Azure
  • Build, support, and optimize AWS Step Functions, Lambda, and EventBridge workflows from a centralized tooling account that operates across multiple spoke accounts in the AWS Organization
  • Maintain Kubernetes clusters using Helm charts, including in-house security automations on pods that integrate with CSPM tools and Jira ticketing processes
  • Develop and enforce cloud security guardrails using OPA, Guardrails, Service Control Policies (SCPs), IaC security gates, and tag policies
  • Architect, build, and maintain Splunk Enterprise Security (ES) integrations, including onboarding log sources, managing indexes, tuning correlation searches, and configuring automated response actions
  • Design and implement Splunk SOAR playbooks to automate security tasks, reduce Mean Time to Respond (MTTR), and scale SOC capabilities
  • Serve as the subject matter expert for Okta Identity Engine (OIE) — building and managing scalable SSO policies, modern authentication (SAML/OIDC), and identity lifecycle processes
  • Leverage AWS security services (GuardDuty, Macie, IAM, Control Tower, KMS, CloudTrail, EventBridge) to build event-driven automations for threat detection and response
  • Own the in-house Jira management process for CSPM findings and the supporting data pipeline that feeds AWS QuickSight dashboards
  • Collaborate with cross-functional teams (Dev, Platform, Security, and SOC) to integrate security automation into CI/CD pipelines and shift security left
  • Conduct risk assessments, enforce security best practices, and continuously improve our defensive posture through automation and tooling
  • Monitor, troubleshoot, and optimize cloud infrastructure and security systems to ensure high availability, performance, and compliance
  • Stay current with AWS best practices, security trends, and emerging technologies to drive continuous improvement

Skills

  • 10+ years of experience
  • Strong hands-on experience with: Terraform, Kubernetes (EKS + Helm), Docker, and scripting in Python & Bash
  • AWS services including Step Functions, Lambda, EventBridge, GuardDuty, Macie, IAM, Organizations, and QuickSight
  • Policy-as-code tools (OPA, Guardrails, SCPs) and IaC security scanning
  • Splunk Enterprise Security (ES) administration, log onboarding, correlation search tuning, and automated responses
  • Splunk SOAR playbook development and automation
  • Okta Identity Engine (OIE), SSO, SAML, and OIDC protocols
  • Proven ability to work independently with minimal supervision while collaborating effectively with cross-functional teams and providing technical guidance
  • Experience designing automation solutions that reduce MTTD and MTTR
  • Solid understanding of cloud security principles, compliance frameworks, and secure infrastructure design
  • Experience with Scalr, Harness, or similar IaC deployment platforms
  • Familiarity with GCP and/or Azure cloud environments
  • Prior experience integrating security tools with Jira and building data pipelines for visualization (QuickSight or similar)
  • Security certifications (AWS Security Specialty, CKS, Splunk-related certifications, or Okta certifications) are a plus

Benefits

  • Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan.
  • Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies.
  • Employees will enjoy paid holidays throughout the calendar year.
  • Hired applicant may be awarded Restrict Stock Units and receive annual bonuses pursuant to eligibility and performance criteria defined in the respective plan documents and policies.

Company Overview

  • iHerb is on a mission to make health and wellness accessible to all. It was founded in 1996, and is headquartered in Irvine, California, USA, with a workforce of 1001-5000 employees. Its website is http://www.iherb.com.
  • Company H1B Sponsorship

  • iHerb has a track record of offering H1B sponsorships, with 1 in 2026, 4 in 2025, 2 in 2024, 2 in 2023, 6 in 2022, 2 in 2021, 1 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    Similar Jobs

    [Remote] Startup Mentor to Healthcare Venture Capital Fund

    Remote, USA Full-time

    [Remote] Director, GCO Technology Data & Analytics

    Remote, USA Full-time

    [Remote] Sales Professional

    Remote, USA Full-time

    [Remote] Director of Client Sales

    Remote, USA Full-time

    [Remote] Institutional Sales Associate - AI Trainer

    Remote, USA Full-time

    [Remote] Sr. Embedded Software Engineer

    Remote, USA Full-time

    [Remote] Account Manager

    Remote, USA Full-time

    [Remote] Senior Director Business Development (Data)

    Remote, USA Full-time

    [Remote] Healthcare Executive Advisor Opportunity in Brain Health Growth

    Remote, USA Full-time

    [Remote] Healthcare Executive Board Member – Internal Medicine Advisor

    Remote, USA Full-time

    Employee Relations Partner

    Remote, USA Full-time

    Medicare Sales Agent - Enrollment Counselor

    Remote, USA Full-time

    Medical Assistant – Los Angeles County (Long-Term Temp w/ Med Benefits and Mileage Reimbursement) in Los Angeles, CA

    Remote, USA Full-time

    Experienced Customer Service Representative – Remote Opportunity at arenaflex

    Remote, USA Full-time

    Experienced Data Entry Specialist – Work From Home Opportunity at arenaflex

    Remote, USA Full-time

    Communications Content Specialist, PARTNERS- Public Sector

    Remote, USA Full-time

    Exciting Remote Data Entry Opportunities for Teens at arenaflex - Launch Your Career with No Experience Required and Endless Growth Possibilities

    Remote, USA Full-time

    Experienced Remote Sales Chat Representative – High Earning Potential up to $10,000 per Month – Flexible Hours and Global Work Opportunities at blithequark

    Remote, USA Full-time

    Experienced Remote Web Chat Assistant – Customer Support & Service Delivery

    Remote, USA Full-time

    Experienced Remote Data Entry Specialist – Healthcare Services

    Remote, USA Full-time