Apply

Staff Security Engineer

Posted 29 days agoViewed

View full description

💎 Seniority level: Staff, 12+ years

📍 Location: USA

🔍 Industry: Cybersecurity

🏢 Company: Tines👥 101-250💰 $50,000,000 Series B 9 months agoInformation ServicesIndustrial AutomationSecurityData IntegrationCyber SecurityEnterprise SoftwareSoftware

🗣️ Languages: English

⏳ Experience: 12+ years

🪄 Skills: DockerPythonCloud ComputingCybersecurityKubernetesLinuxTerraformAnsible

Requirements:
  • 12+ years experience in a security role on a high demand security team.
  • Excellent written and verbal English skills.
  • Deep familiarity with cloud security fundamentals, including deploying and managing services with infrastructure as code using tools like Terraform, Packer, Cloudformation, Ansible, SaltStack, Chef.
  • Familiarity with securing container technologies like Docker or Kubernetes.
  • Experience automating security tasks with SOAR tools and/or languages like Python or Go.
  • Knowledge of command-line usage, log analysis, common attack vectors, and OS hardening for Linux and macOS.
  • Experience participating in an on-call rotation in a fast-paced environment.
  • Excellent analytical and time management skills.
Responsibilities:
  • Drive security projects that facilitate the business function and protect customers, brand, and employees.
  • Stay informed of security trends and incidents, implementing controls based on lessons learned.
  • Perform security reviews of infrastructure and product features.
  • Scale detection and response capabilities across environment and systems.
  • Review bug bounty and external security reports, recommending mitigating controls.
  • Assist with security questionnaires for prospective customers.
  • Support vendor security reviews.
  • Track vulnerability remediation across environments.
  • Assist with security training for employees.
  • Act as an escalation point for automated detection reviews.
  • Hunt for threats proactively.
  • Perform on-call duties as incident commander during security incidents.
  • Ensure security controls are deployed and tested across cloud environments.
  • Mentor and support junior engineers.
  • Automate processes where possible.
Apply

Related Jobs

Apply

📍 United States

🧭 Full-Time

💸 180000.0 - 230000.0 USD per year

🔍 Cybersecurity

🏢 Company: Trail of Bits👥 11-50SecurityNational SecurityCyber SecuritySoftware

  • Extensive experience in application security, focusing on identifying and mitigating cloud infrastructure vulnerabilities.
  • Track record of conducting technical security assessments across different platforms.
  • Strong programming and code auditing skills with experience in fuzzing and static analysis tools.
  • Proficiency in programming languages such as Go, Python, Rust, and JavaScript.
  • Ability to communicate complex security concepts effectively and mentor junior engineers.

  • Lead comprehensive security reviews of cloud-native applications and architectures, including cloud platform configurations.
  • Design and implement custom security tools for automated vulnerability detection.
  • Perform detailed architecture reviews and threat modeling, providing remediation guidance.
  • Work directly with industry-leading teams to analyze and recommend security improvements.
  • Contribute to application security advancement through research and development efforts.

AWSDockerPythonCloud ComputingCybersecurityGCPJavascriptKubernetesAPI testingAzureGoRustMicroservices

Posted 4 days ago
Apply
Apply
🔥 Senior Staff Security Engineer
Posted about 1 month ago

📍 USA

🧭 Full-Time

🔍 Digital Banking

🏢 Company: Nubank👥 5001-10000💰 $265,100,000 Post-IPO Debt about 2 years agoCredit CardsFinancial ServicesBankingFinTech

  • 5+ years of experience in security engineering or related field.
  • Strong understanding of security principles, best practices, and technologies.
  • Proven track record of designing, implementing, and maintaining secure systems.
  • Strong communication skills to convey complex security concepts.
  • Excellent problem-solving and analytical skills.
  • Collaborative mindset and enjoys teamwork.
  • Genuine passion for security.

  • Collaborate with the CISO to refine and document security architecture.
  • Elevate technical expertise within the security team.
  • Foster partnerships between security and engineering teams.
  • Conduct comprehensive security reviews of systems.
  • Participate in incident response activities.
  • Perform threat modeling exercises.
  • Stay current with security trends, threats, and technologies.

AWSCybersecurity

Posted about 1 month ago
Apply
Apply
🔥 Staff Security Engineer
Posted about 1 month ago

📍 U.S.

🧭 Full-Time

🔍 Restaurant industry

  • Experience in Blue or Purple Team roles.
  • Passion for identifying risks and analyzing data.
  • Collaborative approach to developing effective strategic mitigation measures.

  • Identify risks and transform them into opportunities for improvement.
  • Design and implement robust security measures ensuring resilience.
  • Protect sensitive data of clients and their customers.
  • Support innovation and solve complex problems.

AWSDockerPythonCybersecurityData AnalysisRisk Management

Posted about 1 month ago
Apply
Apply
🔥 Senior Staff Security Engineer
Posted about 1 month ago

📍 U.S.

🧭 Full-Time

💸 150000.0 - 200000.0 USD per year

🔍 Pentesting

  • 3-5 years of experience in managing SIEM and Security Monitoring tools required.
  • Hands on knowledge of Google SecOps SIEM/SOAR Tool or equivalent SIEM Tool experience.
  • Experience with Jira / Confluence for Ticket automation and documentation or equivalent ticket system.
  • Cloud Security knowledge and experience, GCP and Kubernetes preferred.
  • MITRE Kill Chain framework and threat hunting experience.
  • Demonstrated leadership abilities in driving operational excellence and best practices.
  • Ability to adapt to a hyper-growth pace and manage priorities.
  • Experience delivering technical information to a less-technical audience in an impactful way.
  • Experience providing mentorship and support to teams outside of InfoSec.

  • Lead initiatives for security operations center (SOC), security monitoring and threat detection.
  • Manage incident response, threat hunting processes and workflows.
  • Use security tools and technology to detect and eradicate threats.
  • Drive continuous improvements for SOC and SOAR processes.
  • Evaluate complex business and technical requirements, communicating inherent risk and solutions to technical and non-technical business owners.

LeadershipGCPKubernetesJiraDocumentationComplianceConfluence

Posted about 1 month ago
Apply
Apply
🔥 Senior Staff Security Engineer
Posted about 1 month ago

📍 U.S

💸 150000.0 - 200000.0 USD per year

🔍 Cybersecurity

🏢 Company: Cobalt👥 251-500💰 $29,000,000 Series B over 4 years agoPenetration TestingSecuritySaaSEnterprise ApplicationsCloud Security

  • 3-5 years of experience in managing SIEM and Security Monitoring tools required.
  • Hands-on knowledge of Google SecOps SIEM/SOAR Tool or equivalent SIEM Tool experience.
  • Familiarity with Jira/Confluence for ticket automation and documentation or equivalent ticket system.
  • Cloud Security knowledge and experience, GCP and Kubernetes preferred.
  • Familiarity with MITRE Kill Chain framework and threat hunting experience.
  • Demonstrated leadership abilities in driving operational excellence and best practices.
  • Ability to adapt to a hyper-growth pace and manage priorities.
  • Experience delivering technical information to a less-technical audience in an impactful way.
  • Experience providing mentorship and support to teams outside of InfoSec to enable them to get their job done while operating securely.
  • Experience with Parameter 81 VPN.

  • Lead initiatives for security operations center (SOC), security monitoring and threat detection.
  • Manage incident response, threat hunting processes and workflows.
  • Use security tools and technology to detect and eradicate threats.
  • Drive continuous improvements for SOC and SOAR processes.
  • Evaluate complex business and technical requirements, communicating inherent risk and solutions to technical and non-technical business owners.

LeadershipGCPKubernetesJiraDocumentationComplianceConfluence

Posted about 1 month ago
Apply