What are the responsibilities and job description for the Linux Security Lead position at Anveta Inc?
Linux Security Lead
Introduction:
As a Linux Security Lead, you will be responsible for owning and driving a consistent and enforceable security program. This includes defining hardening standards, automated drift detection, and verified remediation patterns for a hybrid on-premises and cloud environment. You will work closely with the Linux Infrastructure team and serve as the technical authority for Linux security.
Responsibilities:
- Own the Linux security baseline program end-to-end, defining hardening standards per distribution and workload class.
- Build and operate automated drift detection workflows to reduce MTTR for high-risk deviations.
- Integrate Linux posture signals into broader access policy and detection pipelines.
- Collaborate with security automation teams to build scalable delivery patterns.
- Maintain exception governance discipline for time-bounded exceptions and compensating controls.
- Drive verified vulnerability closure for Linux-specific exposure classes.
- Establish and embed secure engineering principles into engineering standards and peer review processes.
- Contribute to the firm''s broader CIS Benchmark compliance posture.
Requirements:
- 6 years of experience in Linux system administration or security engineering, with at least 3 years focused on Linux security hardening in an enterprise environment.
- Expertise with configuration management tooling, specifically Ansible, and infrastructure-as-code practices.
- Hands-on experience with CIS Benchmarks for Linux and familiarity with NIST Cybersecurity Framework and STIG compliance frameworks.
- Proven ability to build and operate drift detection tooling, experience with endpoint monitoring platforms.
- Working knowledge of Linux kernel security features, auditd, system hardening, privilege separation, and secure boot patterns.
- Experience in an engineering delivery model with sprint cadence and peer review processes.
- Strong collaboration skills and ability to communicate posture risk clearly to stakeholders.
- Commitment to the highest ethical standards.