Apply

Senior Security Engineer

Posted 2024-11-07

View full description

💎 Seniority level: Senior, 5+ years

🔍 Industry: Global employment

🏢 Company: Oyster

🗣️ Languages: English

⏳ Experience: 5+ years

Requirements:
  • 5+ years of experience in application security, specifically in SaaS environments.
  • Strong knowledge of security assessments, audits, and best practices for SaaS.
  • Experience configuring and managing security controls and access management.
  • Proficiency in security testing tools: SAST, DAST, SCA.
  • Experience integrating security tools into CI/CD pipelines.
  • Familiarity with GDPR, CCPA, and identity and access management.
  • Strong communication skills for technical and non-technical audiences.
Responsibilities:
  • Embed Security in the SDLC by collaborating with development teams on secure coding practices.
  • Conduct security assessments, code reviews, and threat modeling exercises.
  • Perform security audits for in-house and third-party SaaS applications.
  • Implement and manage security controls and tools such as SAST, DAST, and SCA.
  • Collaborate with teams to ensure compliance with data protection regulations.
  • Develop security training and promote awareness throughout the organization.
Apply

Related Jobs

Apply

📍 Brazil

🧭 Full-Time

🔍 Real estate technology (proptech)

🏢 Company: Grupo QuintoAndar

  • Expertise in managing and configuring SOC tools such as EDR, SIEM, IDS/IPS, DLP, firewalls.
  • Experience with SOAR implementations.
  • Extensive experience in incident response and threat investigation.
  • Proficiency in identifying, containing, and mitigating cybersecurity incidents.
  • Skills in vulnerability management and risk mitigation.
  • Certifications: GIAC Certified Incident Handler (GCIH), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or similar.
  • Effective communication, analytical and collaboration skills.
  • Fluency in Portuguese and proficiency in English.

  • Monitor security events and alerts, responding to incidents detected by the SOC and security systems.
  • Lead and coordinate cybersecurity incident response, including identification, containment, eradication, recovery, and post-incident analysis.
  • Investigate the origin of attacks and security events by analyzing logs, network traffic, and system records.
  • Create and maintain incident response playbooks, and collaborate on developing SIEM use cases.
  • Identify automation opportunities in SOC processes and assist in implementing SOAR tools.
  • Provide internal training on security best practices and conduct incident response simulations.
  • Collaborate with software engineering teams to resolve identified vulnerabilities.
  • Develop and present incident status reports and SOC performance metrics to management.

LeadershipCybersecurityData AnalysisProduct ManagementData analysisCommunication SkillsAnalytical SkillsCollaborationProblem SolvingLinuxAttention to detailOrganizational skillsPresentation skillsTime ManagementWritten communicationDocumentation

Posted 2024-11-23
Apply
Apply

📍 United States

🧭 Full-Time

💸 127350 - 203760 USD per year

🔍 Security technology

🏢 Company: Axon

  • A fundamental understanding of how modern, distributed cloud-based applications function.
  • Demonstrated experience in security best practices or an interest in building that knowledge.
  • Experience responding to and investigating information security events and incidents.
  • 1+ year(s) of experience using SOAR and SIEM solutions.
  • Fluency in development languages like Python or Go, and shell scripting (bash/powershell).
  • Experience interacting with cloud platforms like Azure and AWS via APIs.
  • Working competency with GitOps.
  • Strong problem-solving skills.
  • Strong written and verbal communication skills.
  • Bachelor’s degree or higher, or equivalent experience.

  • Design, develop, implement, and maintain tooling to improve Axon’s ability to detect and respond to security events.
  • Participate in an on-call rotation to investigate and remediate escalated security events.
  • Evaluate and integrate new security tools and technologies into the SOC.
  • Partner with teams throughout the company to build secure solutions.
  • Write run books and draft incident reports for leadership.
  • Engineer solutions for current security attack methods.
  • Contribute to enhancing the overall Information Security Program.
  • Stay current on security industry trends through educational opportunities.

AWSPythonBashAzureGoCommunication SkillsProblem Solving

Posted 2024-11-21
Apply
Apply

🧭 Full-Time

💸 200000 - 230000 USD per year

🔍 Blockchain and crypto

🏢 Company: Phantom

  • 7+ years of experience in offensive security techniques, focusing on blockchain technology and cryptography.
  • Strong understanding of security risks and vulnerabilities in web and mobile applications.
  • Proficient in code review for JavaScript & Typescript with knowledge of application security threats.
  • Ability to write proofs of concept for vulnerabilities and ensure code patches meet standards.
  • Strong analytical and problem-solving skills.
  • Good verbal and written communication skills.

  • Perform regular security assessments on new projects, infrastructure and code.
  • Identify and mitigate security vulnerabilities in code, systems and networks using manual testing and automated tools.
  • Stay updated with offensive security techniques and application security threats, recommending improvements.
  • Write detailed reports of findings and present to technical teams to prevent attacks.
  • Collaborate with development teams to implement secure coding practices.
  • Participate in incident response activities.
  • Lead large cross-team projects.
Posted 2024-11-16
Apply
Apply

📍 France, Germany, the Netherlands, Poland, United Kingdom

🧭 Full-Time

🔍 Internet of Things (IoT)

  • 5+ years of experience managing a distributed fleet of macOS devices.
  • In-depth understanding of the macOS operating system, mobile device management tools, and Munki.
  • Proven experience independently leading requirements assessments and project implementation.
  • Familiarity with Linux and Windows management tools and techniques.
  • Proficiency with Python, bash, and Powershell scripting.
  • Ability to work with diverse and distributed teams.

  • Design, build, and maintain endpoint management tools and automations.
  • Collaborate as a subject matter expert on macOS behaviors and configurations within the Security team.
  • Contribute to improving Samsara’s Enterprise Security posture and manage security-related SaaS platforms.
  • Work with the Business Technology team on escalations and trending problems.
  • Embed Samsara’s cultural principles as the company scales.

PythonBashCollaborationLinuxDevOpsTerraform

Posted 2024-11-15
Apply
Apply

📍 France, Germany, the Netherlands, Poland, United Kingdom

🧭 Full-Time

🔍 Internet of Things (IoT)

  • 5+ years of experience managing a distributed fleet of macOS devices.
  • In-depth understanding of the macOS operating system.
  • Experience with mobile device management tools and Munki.
  • Familiarity with Linux and Windows management tools.
  • Proficiency with Python, bash, and Powershell scripting.
  • Ability to work with diverse and distributed teams.

  • Design, build, and maintain endpoint management tools.
  • Create automations to connect tools to other systems.
  • Develop reporting to describe endpoint state.
  • Collaborate with the wider Security team as a subject matter expert on macOS behaviors and configurations.
  • Contribute to improving Samsara’s Enterprise Security posture.
  • Manage various security-related SaaS platforms.
  • Work with the Business Technology team on escalations and trending problems.
  • Champion and embed Samsara’s cultural principles.

PythonBashCollaborationLinuxDevOpsTerraform

Posted 2024-11-15
Apply
Apply

📍 US

💸 166000 - 207500 USD per year

🔍 People success platform

🏢 Company: Lattice

  • 5+ years of experience in security operations, auditing, or IT focused on IAM systems and compliance.
  • Strong expertise in managing IAM tools and controls within platforms like Okta, Zscaler, and CrowdStrike.
  • Demonstrated ability to assess IAM configurations and recommend security improvements.
  • Knowledge of compliance frameworks (SOC2 preferred) and authentication protocols.

  • Conduct in-depth audits of systems for IAM configurations, ensuring compliance with security standards.
  • Review and enhance IAM security controls across systems like Okta, Zscaler, and CrowdStrike.
  • Collaborate with IT and engineering teams to optimize IAM configurations for secure access.
  • Lead compliance initiatives, including SOC2 audits, preparing documentation and ensuring evidence is accessible.
  • Manage IAM-related security alerts and optimize alert rules and thresholds.
  • Develop and maintain detailed documentation for IAM processes and controls.

CybersecurityLDAPOAuthCommunication SkillsAnalytical SkillsCollaborationProblem SolvingLinuxAttention to detailOrganizational skillsTime ManagementWritten communicationDocumentationCompliance

Posted 2024-11-14
Apply
Apply

📍 USA

🧭 Full-Time

🔍 Transportation supply chain logistics

🏢 Company: DAT

  • Minimum of a Bachelor's Degree in Computer Science or related fields.
  • Applicable industry certifications (CISSP, Sec+, CISM, SANS GIAC).
  • Minimum of 6 years of experience in Information Security, with at least 2 years in a senior role.
  • Experience with threat modeling and evaluating security tools.
  • Strong verbal and written communication skills.
  • Familiarity with cloud security and DevSecOps principles.
  • Knowledge of security frameworks and standards.

  • Design, implement, and manage security systems across the organization.
  • Conduct regular security assessments including vulnerability scans and penetration testing.
  • Monitor and respond to security incidents, ensuring quick resolution.
  • Establish and maintain security tools such as firewalls and intrusion detection systems.
  • Ensure compliance with industry standards and regulations.
  • Lead incident response efforts and perform root cause analysis.
  • Collaborate with various teams to integrate security into systems.

AWSLeadershipPythonAgileCybersecurityGCPJavaProduct ManagementC++AzureCommunication SkillsCollaborationDevOpsWritten communicationCompliance

Posted 2024-11-11
Apply
Apply

🧭 Full-Time

🔍 Artificial Intelligence

  • Passionate about security.
  • Experience delving into security tooling.
  • Ability to take ownership of the security stack.
  • Focus on driving risk reduction at scale.

  • Build our security stack as we scale the platform and user base.
  • Enable users to harness Generative AI safely.
  • Develop features for enterprise customers focused on security.
  • Collaborate with the engineering team to enhance security practices.
Posted 2024-11-09
Apply
Apply

📍 U.S.

  • Seeking a dedicated professional with in-depth knowledge of IAM principles, standards, and best practices.
  • Experience in safeguarding systems and supporting security compliance initiatives.
  • Ability to partner cross-functionally to drive impactful outcomes.

  • Play a central role in enhancing security posture of enterprise and cloud-native environments.
  • Design, implement, and maintain robust IAM solutions.
  • Manage authentication, authorization, and provisioning across diverse platforms.
  • Collaborate closely with various teams to ensure alignment between IAM solutions and organizational security requirements.

LeadershipCloud ComputingCybersecurityLDAPMicrosoft Active DirectoryOAuthCommunication SkillsAnalytical SkillsCollaboration

Posted 2024-11-07
Apply
Apply

📍 Australia, New Zealand

🔍 Design technology

  • Demonstrable experience in Incident Response (5 years +) or comparable technical roles.
  • Exposure to operating systems and cloud services outside the Microsoft ecosystem (e.g., AWS, GCP, macOS, Linux, etc.).
  • Curious detective mindset with a drive to solve complex problems.
  • Confident verbal and written communication skills for diverse conversations.
  • Experience leading and mentoring team members.
  • Proactive and forward-thinking, able to anticipate challenges and opportunities.

  • Respond to and coordinate security incidents that vary in scale, impact, and complexity.
  • Conduct root cause analyses, drive post-incident reviews, and identify improvement opportunities.
  • Coach and mentor team members to uplift their skills and achieve growth goals.
  • Engage with broader security and engineering teams to proactively mitigate security risks.
  • Participate in on-call roster for incident response.
  • Maintain documentation and promote knowledge sharing within the team.
  • Act as an escalation point for security incidents.
  • Foster a positive team environment through collaboration and continuous learning.

AWSLeadershipCybersecurityGCPMac OS XAmazon Web ServicesCommunication SkillsAnalytical SkillsCollaborationProblem SolvingMentoring

Posted 2024-11-07
Apply

Related Articles

Remote Job Certifications and Courses to Boost Your Career

August 22, 2024

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

How to Balance Work and Life While Working Remotely

August 19, 2024

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Weekly Digest: Remote Jobs News and Trends (August 11 - August 18, 2024)

August 18, 2024

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

How to Onboard Remote Employees Successfully

August 16, 2024

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.

Remote Work Statistics and Insights for 2024

August 13, 2024

The article explores the current statistics for remote work in 2024, covering the percentage of the global workforce working remotely, growth trends, popular industries and job roles, geographic distribution of remote workers, demographic trends, work models comparison, job satisfaction, and productivity insights.