Apply

Security Engineer

Posted 2024-11-14

View full description

πŸ’Ž Seniority level: DevSecOps or related role

πŸ“ Location: United States

πŸ’Έ Salary: 86000 - 202000 USD per year

πŸ” Industry: Technology

🏒 Company: Orkes

⏳ Experience: DevSecOps or related role

πŸͺ„ Skills: AWSDockerNode.jsPostgreSQLSoftware DevelopmentBashEs6FlutterGCPGitJavaJavascriptJenkinsKubernetesMongoDBMySQLVue.JsC++AzureGoGolangHTML5AngularCSS3ReactVue.jsCommunication SkillsCI/CDJavaScriptRESTful APIsDevOpsTerraformAttention to detailMicroservicesCompliance

Requirements:
  • Experience in a DevSecOps or related role in a software development environment.
  • Strong understanding of integrating security within the software engineering lifecycle.
  • Hands-on experience with major cloud providers focusing on security best practices.
  • Experience with infrastructure-as-code tools like Terraform or CloudFormation.
  • Familiarity with programming languages such as Java, Golang, or C++.
  • Proficiency with security tools like OWASP ZAP or SonarQube.
  • Knowledge in securing containerized applications with Docker and Kubernetes.
  • Strong proficiency in scripting languages like Python or Bash.
  • Experience with version control (Git) and CI/CD tools.
  • Knowledge of compliance and risk management standards.
Responsibilities:
  • Monitor and improve security tools integrated into the CI/CD pipelines.
  • Automate security testing to ensure fast and secure releases.
  • Audit cloud security in major cloud providers to follow best configurations.
  • Regularly scan for vulnerabilities in code and infrastructure.
  • Develop scripts to automate security tasks.
  • Secure containerized applications and set up security policies.
  • Monitor security logs for breaches and respond to incidents.
  • Document plans for effective incident response.
  • Ensure ongoing compliance with security policies and standards.
  • Evaluate new security tools to improve security posture.
Apply

Related Jobs

Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 127350 - 203760 USD per year

πŸ” Security technology

🏒 Company: Axon

  • A fundamental understanding of how modern, distributed cloud-based applications function.
  • Demonstrated experience in security best practices or an interest in building that knowledge.
  • Experience responding to and investigating information security events and incidents.
  • 1+ year(s) of experience using SOAR and SIEM solutions.
  • Fluency in development languages like Python or Go, and shell scripting (bash/powershell).
  • Experience interacting with cloud platforms like Azure and AWS via APIs.
  • Working competency with GitOps.
  • Strong problem-solving skills.
  • Strong written and verbal communication skills.
  • Bachelor’s degree or higher, or equivalent experience.

  • Design, develop, implement, and maintain tooling to improve Axon’s ability to detect and respond to security events.
  • Participate in an on-call rotation to investigate and remediate escalated security events.
  • Evaluate and integrate new security tools and technologies into the SOC.
  • Partner with teams throughout the company to build secure solutions.
  • Write run books and draft incident reports for leadership.
  • Engineer solutions for current security attack methods.
  • Contribute to enhancing the overall Information Security Program.
  • Stay current on security industry trends through educational opportunities.

AWSPythonBashAzureGoCommunication SkillsProblem Solving

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 100000 - 120000 USD per year

πŸ” Technology-enabled healthcare services

🏒 Company: Urrly

  • 3-5 years of hands-on experience in security engineering.
  • Experience deploying and managing IAM, SIEM, firewalls, anti-malware, and vulnerability scanning systems.
  • Strong ability to manage security technologies in AWS and enterprise environments.
  • Familiarity with SOC 2, HITRUST, and HIPAA frameworks.
  • Strong documentation skills for developing policies, procedures, and security configurations.
  • Proven success in identifying, remediating, and preventing security threats.

  • Design, implement, and maintain security measures, tools, and frameworks to protect systems and sensitive data.
  • Install, configure, and manage security controls in AWS environments such as firewalls and intrusion detection systems.
  • Monitor infrastructure for potential threats and conduct incident response.
  • Lead compliance initiatives with frameworks like SOC 2, HITRUST, and HIPAA, including audit support and documentation.
  • Perform risk evaluations, vulnerability assessments, and enhance overall security posture.
  • Collaborate with cross-functional teams to align security policies with business goals.

AWSBashCybersecurityAmazon Web ServicesLinuxDocumentationCompliance

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 188000 - 230000 USD per year

πŸ” Mental health care technology

  • 5+ years of experience in security and/or software engineering roles.
  • Demonstrated history of working on security-related projects.
  • Strong cross-functional experience with team collaboration.
  • Technical depth in building secure platforms and products.
  • Ability to tackle ambiguous problems in a fast-paced environment.
  • Focus on innovation in security and privacy technologies.
  • Results-driven and motivated by the mission to increase access to quality mental health care.

  • Partner with Product and Engineering for secure new product launches.
  • Engage in implementation efforts, security reviews, product design decisions, and auditing vulnerabilities.
  • Develop automated tooling for product security capabilities.
  • Define application guardrails for secure development practices.
  • Assist in ongoing security operations, including incident response and vulnerability management.

AWSPythonKafkaTypeScriptFastAPIPostgresProduct designRedisReactSpark

Posted 2024-11-21
Apply
Apply

πŸ“ United States

πŸ” Data and technology

  • 5+ years experience in security engineering or site reliability engineering.
  • Excellent Terraform skills required.
  • Experience working with and developing CI/CD pipelines for Infrastructure as Code required.
  • Knowledge of programming/scripting fundamentals (python/golang) required.
  • Expertise in performing ETL onboarding for diverse log feed technologies required.
  • Experience supporting a Splunk platform administration, new content dashboards, applications, and use cases.
  • Hands-on experience developing Rest API's to capture data from external sources.
  • Experience with Agile methodologies.
  • Understanding of multiple log formats and source data for SIEM Analysis.
  • Solid background with Windows and Linux platforms (security or system administration).
  • Experience with technical concepts including networking and several cyber attacks.

  • Understand data feeds of multiple security tools and logs that feed the SIEM & UEBA technologies.
  • Identify capabilities and quality of these feeds and recommend improvements.
  • Create new content use cases based on threat intelligence, analyst feedback, available log data, and previous incidents.
  • Perform daily activities of the content life cycle including creating, testing, tuning, and maintaining associated documentation.
  • Improve vulnerabilities across different application environments.
  • Work with other security teams and product SMEs to identify capability gaps.
  • Develop parsers and field extractions to support content development.
  • Develop custom scripts to enhance default SIEM functionality.
  • Participate in root cause analysis on security incidents and provide recommendations for new data sources and enrichment.

PythonAgileETLGolangREST APICI/CDLinuxTerraformDocumentation

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 157250 - 185000 USD per year

πŸ” Healthcare technology

🏒 Company: Cedar

  • You’re an application security engineer who prioritizes addressing security challenges with technology, not process.
  • You have a demonstrated history of enabling software developers with actionable security guidance.
  • You’re comfortable communicating security risks and controls to technical and non-technical partners.
  • You have experience with security code review, threat modeling or security architecture reviews.
  • You can identify vulnerability paths, explain how they could be exploited, and are familiar with options for mitigation.
  • You have a working proficiency with a general-purpose programming language (ideally Python).

  • Support services and tools that help product and platform engineers build, deploy, and maintain Cedar products safely and efficiently.
  • Serve as a Security Partner for multiple engineering teams across the SSDLC, evangelizing security and helping threat model features, bake security into designs, and review code and implementations.
  • Contribute to security automation projects, such as static analysis, vulnerability management, and asset inventory.

Software Development

Posted 2024-11-19
Apply
Apply

πŸ“ U.S.

🧭 Full-Time

πŸ” Cybersecurity

🏒 Company: GuidePoint Security

  • 6 or more years of IT experience or related field.
  • At least 4 years of experience administering and supporting Azure/Office/M365 technologies.
  • Minimum 2 years of experience with M365 security suite such as Defender for Cloud apps and Conditional Access.
  • Minimum 2 years of experience with Azure capabilities like Defender for Cloud and Sentinel.
  • Microsoft certification such as Microsoft 365 Security Administrator or Azure Security Engineer Associate required within 3 months of hire.

  • Use knowledge of Microsoft Azure, M365, and EM+S products to design and make recommendations on Microsoft Cloud Security.
  • Communicate compliance management for M365 or Azure products and implement best practices for security.
  • Contribute to technical design sessions and prepare documentation for architectural reviews.
  • Manage Microsoft Entra ID and identity life-cycle management.
  • Conduct security assessments using established cloud security standards.
  • Document findings and recommendations for clients and demonstrate strong communication skills.

Cloud ComputingCybersecurityMicrosoft AzureSharePointAzureCommunication SkillsCollaborationDevOpsTerraformDocumentationCompliance

Posted 2024-11-19
Apply
Apply

πŸ“ Brazil, US

πŸ” Open Banking Payments

  • Relevant expertise in information security
  • Knowledge of compliance practices in information security
  • Ability to work effectively in a diverse and collaborative team environment

  • Ensuring information security across the organization
  • Enhancing security measures for payment processing
  • Supporting compliance with established security policies and regulations

CybersecurityCommunication SkillsAnalytical SkillsCollaborationProblem SolvingAttention to detailOrganizational skillsPresentation skillsTime ManagementWritten communicationMultitasking

Posted 2024-11-15
Apply
Apply

πŸ“ Brazil, US, Sweden

πŸ” Open Banking Payments

  • Demonstrated experience in information security practices and technologies.
  • In-depth knowledge of compliance frameworks and their implementation.
  • Strong analytical skills and problem-solving abilities.

  • Develop and implement information security strategies to protect key assets.
  • Conduct risk assessments to identify vulnerabilities and recommend mitigation solutions.
  • Monitor security systems and respond to incidents effectively.
  • Ensure compliance with industry standards and regulations related to information security.

CybersecurityCommunication SkillsAnalytical SkillsCollaborationProblem SolvingMentoringAttention to detailOrganizational skillsWritten communicationDocumentation

Posted 2024-11-15
Apply
Apply

πŸ“ U.S.

πŸ” Blockchain-enabled investment products and services

  • Based in PT, MT, CT, or ET time zones.
  • Excellent technical and non-technical communication skills, verbal and written.
  • Proven experience in risk assessments, vulnerability assessments, and penetration testing.
  • 5+ years of securing modern software systems with a focus on blockchain technology.
  • Deep expertise in securing blockchain-based applications and infrastructure.

  • Product Security: Partner with product and engineering teams to integrate security reviews, develop tooling, monitor for threats, and manage bug bounty programs.
  • Organization Level Security: Ensure compliance with regulations, safeguard data, and enhance fraud detection.
  • Product Risk Management: Lead the product risk program, implementing and testing incident response protocols.
  • Security Monitoring And Reporting: Oversee monitoring for risks and report security incidents.

BlockchainCybersecurityGoRustCommunication SkillsCI/CDCompliance

Posted 2024-11-14
Apply
Apply

πŸ“ US

πŸ’Έ 166000 - 207500 USD per year

πŸ” People success platform

🏒 Company: Lattice

  • 5+ years of experience in security operations, auditing, or IT focused on IAM systems and compliance.
  • Strong expertise in managing IAM tools and controls within platforms like Okta, Zscaler, and CrowdStrike.
  • Demonstrated ability to assess IAM configurations and recommend security improvements.
  • Knowledge of compliance frameworks (SOC2 preferred) and authentication protocols.

  • Conduct in-depth audits of systems for IAM configurations, ensuring compliance with security standards.
  • Review and enhance IAM security controls across systems like Okta, Zscaler, and CrowdStrike.
  • Collaborate with IT and engineering teams to optimize IAM configurations for secure access.
  • Lead compliance initiatives, including SOC2 audits, preparing documentation and ensuring evidence is accessible.
  • Manage IAM-related security alerts and optimize alert rules and thresholds.
  • Develop and maintain detailed documentation for IAM processes and controls.

CybersecurityLDAPOAuthCommunication SkillsAnalytical SkillsCollaborationProblem SolvingLinuxAttention to detailOrganizational skillsTime ManagementWritten communicationDocumentationCompliance

Posted 2024-11-14
Apply