Security Engineer
Join our highly skilled team of developers — breaking new ground and shaping the future of retail.
We dare to dream big, we have the courage to keep raising the bar, and we’re committed to being a force for good in retail - helping both established and fast-growing brands meet the ever-changing expectations of their customers.
Sitoo is a fast-growing technology company exploring how far we can take innovation to deliver the world’s best Unified Commerce Platform and Point of Sale. Our technology is used in more than 20 countries - a number that keeps growing thanks to our incredible team of developers. And we have no intention of slowing down. Are you the Security Engineer we’re looking for?
Your mission at Sitoo
As a Security Engineer at Sitoo, you will work closely with our agile development teams to ensure we deliver the most secure Point of Sale and Unified Commerce Platform in the world. You will play a key role in designing cloud architectures and environments that are secure by default. By pairing hands-on implementation with practical security leadership, you will build automated guardrails into our SDLC, secure our containers and infrastructure, and empower our product teams to ship safely and independently.
What you will do
Architect, build, and evolve secure cloud environments, infrastructure, and backend services.
Drive vulnerability remediation across AWS Security Hub, Inspector, GuardDuty, and Vanta to eliminate overdue findings and hit strict SLA targets.
Partner with the CISO to automate continuous security evidence collection for SOC 2 and ISO 27001 compliance.
Lead on authentication and authorization patterns and guide teams on secure access.
Champion shared security ownership through clear guidelines, examples, and mentoring.
Own base OS image hardening, ECR container vulnerability scanning, and lifecycle management to prevent recurring container risks.
What you’ll bring to the table
Strong hands-on experience with security implementations in modern cloud environments, including securing infrastructure and containers (e.g., Docker, AWS Lambda, AWS ECS).
Demonstrated experience with Cloud Security Posture Management (CSPM) tools and driving vulnerability remediation across cloud infrastructure.
You confidently interact with individuals, teams and organizations to make sure they are informed, to be able to keep them accountable.
Proven experience on AWS and with IaC and least‑privilege design
Solid understanding of identity and access management, tokens, and federation
Experience integrating security controls into CI/CD
Professional English, both verbal and written.
Why Sitoo
We are forward thinkers. By turning curiosity into knowledge — and knowledge into continuous improvement — we break new ground and shape the future of retail.
We believe in an inclusive culture where everyone feels like they belong. We support each other, win together, celebrate success together, and overcome challenges together.
Today, we are close to 100 dedicated experts with a positive and solution-oriented mindset. Most importantly, we take care of each other, and we never forget to have fun.