Apply

Security Engineer

Posted 3 days agoViewed

View full description

πŸ’Ž Seniority level: Senior, 5 years

πŸ“ Location: United States of America

πŸ” Industry: Transportation management services

🏒 Company: Echo_Logistics

⏳ Experience: 5 years

πŸͺ„ Skills: PythonComplianceScripting

Requirements:
  • 5 years of work experience in a professional IT setting.
  • 3 years of system, network, and/or application security experience.
  • Experience as a Security Engineer or in a similar role.
  • Strong knowledge of information security principles, best practices, and technologies.
  • Excellent lateral thinking/problem-solving skills and attention to detail.
  • Self-directed learner with the ability to identify areas for growth.
  • Strong communication and teamwork skills.
Responsibilities:
  • Incident Analysis – Monitors, investigates, and responds to alerts generated by operations platforms.
  • Penetration Testing - Conducts testing and ethical hacking to identify and remediate security issues.
  • Security Awareness - Promotes security best practices through effective modeling and outreach.
  • Compliance - Ensures adherence to regulatory requirements related to information security.
  • Security Tools - Participates in evaluating and implementing security tools.
  • Documentation - Supports long-term stability and self-service through training aids and documentation.
  • Collaboration - Works with Security, TechOps teams, and the broader Echo community.
Apply

Related Jobs

Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 170000.0 - 230000.0 USD per year

πŸ” Cybersecurity

🏒 Company: Trail of BitsπŸ‘₯ 11-50SecurityNational SecurityCyber SecuritySoftware

  • Extensive experience in MacOS security with demonstrated ability to identify and mitigate system-level vulnerabilities.
  • Track record of conducting technical security assessments of MacOS applications.
  • Strong debugging and reverse engineering skills, experience with fuzzing and static analysis tools, and cloud-native technologies.
  • Strong knowledge of Objective-C and Swift, with proficiency in Python, C++, Rust, and Go.
  • Ability to effectively communicate complex security concepts to diverse stakeholders.

  • Conduct comprehensive security assessments across various platforms with expertise in MacOS applications, examining vulnerabilities in system components, kernel extensions, and application sandboxing while developing mitigation strategies.
  • Design and implement custom security tools for automated vulnerability detection.
  • Perform detailed architecture reviews and threat modeling of complex systems and applications.
  • Work directly with industry-leading teams to review their code and architecture.
  • Contribute to the advancement of application security by developing new methodologies and tools.

PythonMac OS XObjective-CSwiftC++GoRustDebugging

Posted 9 days ago
Apply
Apply

πŸ“ U.S.

🧭 Full-Time

πŸ” Restaurant industry

  • Experience in Blue or Purple Team roles.
  • Passion for identifying risks and analyzing data.
  • Collaborative approach to developing effective strategic mitigation measures.

  • Identify risks and transform them into opportunities for improvement.
  • Design and implement robust security measures ensuring resilience.
  • Protect sensitive data of clients and their customers.
  • Support innovation and solve complex problems.

AWSDockerPythonCybersecurityData AnalysisRisk Management

Posted 10 days ago
Apply
Apply

πŸ“ U.S.

🧭 Full-Time

πŸ’Έ 150000.0 - 200000.0 USD per year

πŸ” Pentesting

  • 3-5 years of experience in managing SIEM and Security Monitoring tools required.
  • Hands on knowledge of Google SecOps SIEM/SOAR Tool or equivalent SIEM Tool experience.
  • Experience with Jira / Confluence for Ticket automation and documentation or equivalent ticket system.
  • Cloud Security knowledge and experience, GCP and Kubernetes preferred.
  • MITRE Kill Chain framework and threat hunting experience.
  • Demonstrated leadership abilities in driving operational excellence and best practices.
  • Ability to adapt to a hyper-growth pace and manage priorities.
  • Experience delivering technical information to a less-technical audience in an impactful way.
  • Experience providing mentorship and support to teams outside of InfoSec.

  • Lead initiatives for security operations center (SOC), security monitoring and threat detection.
  • Manage incident response, threat hunting processes and workflows.
  • Use security tools and technology to detect and eradicate threats.
  • Drive continuous improvements for SOC and SOAR processes.
  • Evaluate complex business and technical requirements, communicating inherent risk and solutions to technical and non-technical business owners.

LeadershipGCPKubernetesJiraDocumentationComplianceConfluence

Posted 13 days ago
Apply
Apply

πŸ“ U.S

πŸ’Έ 150000.0 - 200000.0 USD per year

πŸ” Cybersecurity

🏒 Company: CobaltπŸ‘₯ 251-500πŸ’° $29,000,000 Series B over 4 years agoPenetration TestingSecuritySaaSEnterprise ApplicationsCloud Security

  • 3-5 years of experience in managing SIEM and Security Monitoring tools required.
  • Hands-on knowledge of Google SecOps SIEM/SOAR Tool or equivalent SIEM Tool experience.
  • Familiarity with Jira/Confluence for ticket automation and documentation or equivalent ticket system.
  • Cloud Security knowledge and experience, GCP and Kubernetes preferred.
  • Familiarity with MITRE Kill Chain framework and threat hunting experience.
  • Demonstrated leadership abilities in driving operational excellence and best practices.
  • Ability to adapt to a hyper-growth pace and manage priorities.
  • Experience delivering technical information to a less-technical audience in an impactful way.
  • Experience providing mentorship and support to teams outside of InfoSec to enable them to get their job done while operating securely.
  • Experience with Parameter 81 VPN.

  • Lead initiatives for security operations center (SOC), security monitoring and threat detection.
  • Manage incident response, threat hunting processes and workflows.
  • Use security tools and technology to detect and eradicate threats.
  • Drive continuous improvements for SOC and SOAR processes.
  • Evaluate complex business and technical requirements, communicating inherent risk and solutions to technical and non-technical business owners.

LeadershipGCPKubernetesJiraDocumentationComplianceConfluence

Posted 15 days ago
Apply
Apply

πŸ“ US, Europe

🧭 Full-Time

πŸ’Έ 175000.0 - 210000.0 USD per year

πŸ” Cloud computing, AI

🏒 Company: CoreWeaveπŸ’° $642,000,000 Secondary Market about 1 year agoCloud ComputingMachine LearningInformation TechnologyCloud Infrastructure

  • Bachelor’s degree in Computer Science or a related field or equivalent experience.
  • 5 years of experience in Application Security engineering and vulnerability testing.
  • Strong knowledge of authorization, authentication, and encryption protocols.
  • Experience with development teams delivering commercial software.
  • Familiarity with threat modeling and system security vulnerabilities.
  • Scripting skills in languages such as Perl or Python.
  • Proficiency in security engineering methodologies including static and dynamic code analysis.

  • Provide security consultations with engineering peers.
  • Conduct architecture reviews of new and existing code changes.
  • Perform full and complete threat models as part of the permit process.
  • Configure and manage automated and manual code reviews.
  • Lead ongoing security testing, audits, and risk analysis.
  • Engage in security incident response, risk documentation, and remediation verification.

PythonSQLCybersecurityKubernetesCommunication SkillsCollaborationCI/CDLinuxWritten communicationDocumentation

Posted 15 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 130000.0 - 170000.0 USD per year

πŸ” Data-Powered Marketing Cloud

🏒 Company: Zeta GlobalπŸ‘₯ 1001-5000πŸ’° $105,263,174 Post-IPO Equity 4 months agoInformation ServicesAdvertisingAnalyticsMarketing

  • 3+ years of experience in cloud security, information security, or DevSecOps.
  • Familiarity with CI/CD pipelines and Infrastructure-as-Code (IaC) platforms like Terraform, CloudFormation, or Ansible.
  • Experience administering CNAPPs or similar cloud security tools.
  • Basic scripting skills (e.g., Python, Bash) for security automation.
  • Strong communication skills to explain technical security issues.

  • Use the CNAPP tool to integrate security checks directly within CI/CD pipelines.
  • Review and secure Infrastructure-as-Code (IaC) templates and configurations.
  • Administer continuous security monitoring, vulnerability detection, and compliance checks via the CNAPP.
  • Collaborate closely with DevOps and Engineering teams to prioritize security findings.
  • Assist in coordinating responses to cloud security incidents and document best practices.
  • Develop and maintain security dashboards and reporting mechanisms through the CNAPP.
  • Act as a resource on CNAPP usage and cloud security best practices.

PythonBashCI/CDTerraformComplianceAnsible

Posted 17 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 140000.0 - 170000.0 USD per year

πŸ” FinTech

🏒 Company: FacetπŸ‘₯ 101-250πŸ’° $100,000,000 Series C almost 3 years agoFinancial ServicesWealth ManagementFinance

  • 5-8 years experience as a Senior Security Analyst, Penetration Tester, Senior Red Team Analyst, Risk Analyst, or Vulnerability Researcher.
  • 5-8 years designing, building, or operating security controls in cloud environments.
  • 3-5 years experience deploying security controls with Google Cloud Platform.
  • Experience scripting and building automations in complex environments.
  • Intermediate operating systems support with Windows, MacOS, and Linux.
  • Experience securing distributed systems and web applications.
  • 1-2 years experience with infrastructure as code frameworks.
  • Interest in security industry topics.
  • Preferred experience in financial services or fintech.

  • Develop, test, and implement new ways to solve security issues.
  • Embed with product and engineering teams to identify, evaluate, and treat security risks during the product development lifecycle.
  • Collaborate with member services and investment operation teams to assess processes, identify risks, and create risk mitigation capabilities.
  • Develop automations for incident handling, vulnerability reporting, and remediation.
  • Assist with incident investigation and response.
  • Create security patterns for cloud systems and work with platform engineering teams.
  • Evaluate new technologies and processes to enhance security capabilities.
  • Guide vulnerability testing, risk analyses, and general security assessments.
  • Contribute to security policies, procedures, standards, or guidelines.
  • Review existing security technologies and recommend enhancements.

AWSDockerPythonAgileBashGCPProduct DevelopmentAmazon Web ServicesGoLinuxTerraformScripting

Posted 18 days ago
Apply
Apply

πŸ“ VA, MD, PA, NC, DE, NJ, DC

πŸ” Cybersecurity

🏒 Company: GuidePoint Security

  • At least 3 years of experience in Cloud Security with Amazon AWS.
  • Experience with Palo Alto Prisma Cloud.
  • Experience integrating tools into development pipelines such as Azure DevOps and Jenkins.
  • Knowledge of Cloud Security issues and their mitigation.
  • Proficiency in Terraform, Python, PowerShell, and Rego.
  • Strong written and verbal communication skills.

  • Perform implementation of Palo Alto Prisma Cloud in AWS and Azure environments.
  • Implement IaC scanning tools in CI/CD Pipelines.
  • Develop custom control checks within CNAPP Platforms using RQL.
  • Analyze threats and vulnerabilities in cloud environments.
  • Lead resolution of issues in public cloud environments.
  • Conduct container registry scanning and review cloud security posture.

AWSPythonCybersecurityJenkinsKubernetesAzureCommunication SkillsCI/CDDevOpsTerraformWritten communicationMicroservicesCompliance

Posted 19 days ago
Apply
Apply
πŸ”₯ Security Engineer
Posted 21 days ago

πŸ“ Arizona, California, Colorado, Indiana, Massachusetts, Minnesota, New York, Oregon, Pennsylvania, Texas, Utah, Washington

πŸ’Έ 125000 - 135000 USD per year

πŸ” Apparel and footwear

🏒 Company: deckers

  • 5 years experience in an Information Security role.
  • Strong experience in designing, implementing, and supporting Zscaler platform in enterprise environments.
  • Strong experience with Palo Alto’s Panorama for centralized management and reporting.
  • Experience in network segmentation and micro-segmentation techniques.
  • Experience with security incident response and risk management.
  • Knowledge of information security management frameworks like ISO 27001, COBIT, and NIST CyberSecurity Framework.
  • Familiarity with *nix operating systems and various security tools.
  • Familiarity with programming languages such as Python, Ruby, Java, or C++.

  • Monitor and administer global firewall appliances.
  • Monitor and administer global SASE deployment.
  • Monitor and administer global VPN infrastructure.
  • Monitor and administer global Intrusion Prevention / URL filtering infrastructure.
  • Address escalated information security issues.
  • Assist with assorted Deckers projects and maintenance requests.

AWSPythonSQLCybersecurityJava*NixOracleRubyC++AzureCommunication SkillsAnalytical SkillsWritten communicationComplianceRisk Management

Posted 21 days ago
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 150000.0 - 200000.0 USD per year

πŸ” IT and Security

🏒 Company: CriblπŸ‘₯ 251-500πŸ’° $150,000,000 Series D over 2 years agoReal TimeBig DataInformation TechnologySoftware

  • Experience in software development or product security engineering, with additional experience in information security.
  • Proven experience performing security design reviews for complex applications including distributed systems, APIs, and services.
  • Expert knowledge of information security disciplines, including web application, network, and operating systems security.
  • Fluency with OWASP Top 10 and common vulnerabilities, with the ability to define countermeasures.
  • Deep understanding of application and network protocols, cryptographic technologies, and authentication and authorization protocols.
  • Knowledge of compliance requirements for industry certifications like PCI DSS, SOC2, HIPAA, FedRAMP.
  • Direct experience supporting cloud operational models, including SaaS security architecture and microservices.

  • Evaluate results from Cribl’s Cloud Security Posture Management (CSPM) and educate engineering teams on secure AWS patterns.
  • Perform application security assessments including AWS architecture review, threat modeling, and secure code review.
  • Assist product teams to follow secure development practices, empowering them to own security within their area.
  • Consult with development and operations teams to recommend secure design patterns.
  • Perform security assessments on new and existing products to identify risks and establish baseline security requirements.
  • Establish and drive security standards to improve software and systems architecture.

AWSDockerPythonSoftware DevelopmentKubernetesOAuthMicroservicesCompliance

Posted 21 days ago
Apply