Application Guide
How to Apply for Senior Security Engineer
at Kaluza
๐ข About Kaluza
Kaluza stands out as a technology company uniquely positioned at the intersection of energy and decarbonization, using intelligent software to help energy suppliers transition to sustainable models. Working here means contributing directly to climate solutions through scalable technology, within a company that values both technical innovation and real-world environmental impact.
About This Role
This Senior Security Engineer role involves integrating security tooling to proactively address threats, embedding Zero Trust architecture with Platform Engineering and IAM teams, and empowering product teams to build secure systems rapidly. It's impactful because you'll be securing platforms that enable energy suppliers to drive decarbonization, making security a direct enabler of Kaluza's mission.
๐ก A Day in the Life
A typical day might involve collaborating with Platform Engineering on Terraform scripts to enforce security controls, reviewing Kubernetes configurations for vulnerabilities, and meeting with product teams to provide actionable guidance on mitigating risksโall within the context of securing software that helps energy suppliers reduce carbon emissions.
๐ Application Tools
๐ฏ Who Kaluza Is Looking For
- Has hands-on scripting experience in Python or Go, with demonstrable projects automating security tasks or integrating security tooling.
- Possesses deep, practical knowledge of AWS/GCP security, Kubernetes security, and infrastructure-as-code (especially Terraform), ideally in energy or SaaS contexts.
- Has experience managing web application firewalls like Cloudflare and can articulate how they've used them to protect dynamic, cloud-native applications.
- Is not just aware of OWASP Top 10 and DevOps security principles, but can discuss how they've applied them in CI/CD pipelines to shift security left.
๐ Tips for Applying to Kaluza
Highlight specific examples where you've integrated security platforms to prevent, detect, or respond to threats, especially in AWS/GCP environments.
Tailor your resume to show how you've partnered with engineering teams (like Platform or IAM) to implement security controls, not just worked in isolation.
Mention any experience in energy, utilities, or decarbonization tech, as this shows alignment with Kaluza's mission.
Include a link to a GitHub repo or portfolio with Terraform scripts, Python/Go security tools, or Kubernetes security configurations.
Explain in your application how you've cultivated a collaborative security culture in past roles, as this is explicitly called out in the job description.
โ๏ธ What to Emphasize in Your Cover Letter
['Your experience embedding security into DevOps/CI/CD pipelines and how it enabled rapid, secure delivery of systems.', 'Specific projects where you implemented Zero Trust architecture or privileged access management (PAM) controls in cloud environments.', 'How your work has empowered product or engineering teams to prioritize and mitigate risks, with metrics or examples if possible.', "Why you're passionate about applying security skills to decarbonization and energy technology, referencing Kaluza's mission."]
Generate Cover Letter โ๐ Research Before Applying
To stand out, make sure you've researched:
- โ Kaluza's product offerings (e.g., their platform for energy suppliers) and how they enable decarbonization, to understand the systems you'll secure.
- โ The company's tech blog or engineering posts to gauge their stack (likely cloud-native, Kubernetes-based) and security challenges.
- โ Recent news on Kaluza's partnerships or projects in the energy sector, to discuss their impact in interviews.
- โ Their culture and values, as the role emphasizes collaboration and empowering teamsโbe ready to align with this.
๐ฌ Prepare for These Interview Topics
Based on this role, you may be asked about:
โ ๏ธ Common Mistakes to Avoid
- Submitting a generic security resume without tailoring it to cloud security, scripting, or infrastructure-as-code as required.
- Focusing only on defensive security without showing experience in proactive threat prevention or collaboration with engineering teams.
- Failing to demonstrate knowledge of how security integrates into DevOps/CI/CD, as this is core to the role's responsibilities.
๐ Application Timeline
This position is open until filled. However, we recommend applying as soon as possible as roles at mission-driven organizations tend to fill quickly.
Typical hiring timeline:
Application Review
1-2 weeks
Initial Screening
Phone call or written assessment
Interviews
1-2 rounds, usually virtual
Offer
Congratulations!