Associate Security Engineer (Remote)
About this role
ezCater is the #1 food tech platform for workplaces in the US. The company makes it easy for any organization to manage its food needs and order from over 125,000 restaurants nationwide. For workplaces, ezCater provides flexible and scalable solutions for everything from employee meal programs to one-off meetings, all backed by 24/7 service and business-grade reliability. For restaurant partners, ezCater helps grow their business by bringing them new high-value customers and large orders.
The Associate Security Engineer will help improve ezCater’s security posture across products, systems, data, and business operations. This is a hands-on role for someone who wants to learn how security requirements become practical engineering solutions, technical controls, automation, monitoring, documentation, and measurable risk reduction.
You’ll work closely with Security Engineering teammates and partner with Engineering, IT, Data, Legal, and other business teams. You’ll contribute across product security, vulnerability management, data protection, AI security, security operations, and governance, risk, and compliance. The primary focus will develop based on team and business needs, with opportunities to build depth in areas that match your interests and strengths.
What You'll Do:
-
Partner with Engineering and IT
- Support security reviews, architecture discussions, threat modeling, and risk assessments for products, services, integrations, and technology partners.
- Help identify and remediate application, infrastructure, identity, configuration, and data security risks.
- Partner with Engineering and IT teams to integrate security into the software and systems lifecycle.
- Translate security requirements into practical controls, secure configurations, workflows, monitoring, or policy-as-code where appropriate.
- Provide clear, actionable guidance to technical and non-technical stakeholders.
Build security automation and tooling
- Identify manual, repetitive, or error-prone security processes and recommend practical improvements.
- Build or improve lightweight automation, scripts, dashboards, workflows, and integrations that make security work more reliable and scalable.
- Use APIs, cloud platforms, security tools, and data analysis to investigate issues and improve visibility.
- Contribute to monitoring and alerting that helps the team detect, prioritize, and respond to security risks.
- Document technical decisions, procedures, runbooks, and implementation guidance.
Support vulnerability management and security operations
- Help triage, investigate, prioritize, and track vulnerabilities through remediation.
- Support incident response activities, including investigation, containment, remediation, documentation, and follow-up improvements.
- Assist with security configuration reviews, access reviews, and other recurring activities that reduce operational risk.
- Help improve the quality of security findings by connecting technical severity, exploitability, business impact, and practical remediation paths.
- Contribute to team metrics, operating cadences, and continuous-improvement activities.
Contribute to data security, AI security, and GRC
- Help maintain and improve technical and operational controls for data protection, access, sharing, retention, classification, and handling.
- Assist with evaluating and securing AI-enabled tools and workflows, including access, data protection, monitoring, usage controls, and safe adoption practices.
- Support control documentation, evidence collection, testing, remediation tracking, and audit readiness for SOC 2, PCI-DSS, SOX, ITGC, and internal security requirements.
- Help identify gaps between documented requirements and how systems or teams operate in practice.
- Work with GRC and partner teams to make security and compliance requirements clearer, more observable, and easier to implement.
What You Have:
- 1–3 years of experience in security engineering, application security, cloud security, IT, GRC, security operations, software engineering, or a related field; equivalent practical experience is welcome.
- Foundational understanding of security concepts such as access control, secure software development, vulnerability management, identity, network or cloud security, data protection, incident response, or risk management.
- Basic experience or strong interest in scripting, APIs, automation, data analysis, cloud platforms, AI tooling, or security engineering workflows.
- Ability to investigate questions, identify missing information, troubleshoot issues, and follow problems through to resolution.
- Strong attention to detail and the ability to organize technical findings, tasks, documentation, and follow-up across multiple workstreams.
- Comfort working with developer workflows, ticketing systems, documentation platforms, cloud services, security tools, or GRC tools.
- Ability to explain security risks and recommendations clearly to technical and non-technical partners.
- A collaborative, service-oriented approach and a proactive, curious, and pragmatic mindset.
- A continuous-learning mindset and interest in developing depth across multiple security domains.
- Ability to travel up to 5 days per quarter for Together Weeks, team gatherings and other events, when applicable.
The national total target cash compensation range for this position, including base salary and bonus target, is $84,000–$104,000 annually.*
*Please note: Final offer amounts are determined by multiple factors, including prior experience, expertise and region & may vary from the amount above. This range does not represent additional compensation benefits (such as equity, 401K or medical, dental or vision insurance).
ezCater does not sponsor applicants for work visas or legal permanent residence.
What You’ll Get from Us:
You’ll get a terrifically compelling experience in an innovative, high performing environment. You’ll get to work with engaged and passionate colleagues on challenging and impactful projects. You will have opportunities to grow in your career, and work in a place that values work/life harmony.
Oh, and you’ll get all this: Market competitive salary, stock options that you’ll help make worth a lot, 12 paid holidays, flexible PTO, 401K with ezCater match, health/dental/FSA, long-term disability insurance, mental health and family planning resources, remote-hybrid work from our awesome Boston office OR your home OR a mixture of both home and office, a tremendous amount of responsibility and autonomy, wicked awesome co-workers, employee meal program (and many more goodies) when you’re in our office, and knowing that you helped transform the food for work space.
ezCater is an equal opportunity employer. We embrace humans of every background, appearance, race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, and disability status. At the same time, we do not employ jerks, even brilliant ones. Following a conditional offer of employment, ezCater may require a background check.
For information on how ezCater collects and uses job applicants' personal information, please visit our Job Applicant Privacy Policy.
Frequently Asked Questions
What is the salary for the Associate Security Engineer (Remote) role at ezcaterinc?
Where is the Associate Security Engineer (Remote) position at ezcaterinc located?
Which team or department does the Associate Security Engineer (Remote) at ezcaterinc belong to?
How do I apply for the Associate Security Engineer (Remote) position at ezcaterinc?
When was the Associate Security Engineer (Remote) job at ezcaterinc posted?
You'll be redirected to ezcaterinc's official application page on Greenhouse.