Apply

Information Security Engineer

Posted 9 days agoViewed

View full description

💎 Seniority level: Senior, 5+ years

🔍 Industry: SaaS

🏢 Company: G-P

⏳ Experience: 5+ years

Requirements:
  • Bachelor's degree in Cyber Security, Management Information Systems, Computer Science, Information Science or equivalent work experience.
  • 5+ years of related work experience in Application Security.
  • Strong understanding of Cloud Security in AWS, including IAM Roles, Policies, Security Groups, and Encryption methodologies.
  • Strong communication and relationship building skills.
  • Proficiency in coding/scripting languages (e.g., Python, Go).
  • Experience with security focused application design reviews, threat modeling, manual code reviews, and ethical hacking.
  • Experience implementing and working with SAST/DAST/SCA security tools.
  • Knowledge of security vulnerabilities, authentication, and authorization options.
  • Experience with security assessments and penetration testing.
  • Familiarity with CI/CD practices and incorporating security into SDLC.
Responsibilities:
  • Evangelize application security fundamentals and act as a consultative partner to development teams.
  • Implement and leverage SAST/DAST/SCA security tools.
  • Perform security activities including threat modeling, vulnerability analysis, and code review.
  • Triage application risks and collaborate with engineering for remediation.
  • Generate and report on AppSec metrics.
  • Make recommendations on development processes and provide application security support as needed.
  • Create and maintain technical documentation for the AppSec program.
  • Contribute to security awareness and training programs.
  • Develop scripts and tools to automate security tasks.
  • Build custom solutions to integrate security tools with existing systems.
Apply

Related Jobs

Apply

📍 Argentina

🧭 Full-Time

🔍 Cybersecurity

🏢 Company: Onapsis

  • 1+ years of experience using SIEM tools for security monitoring and incident detection.
  • Understanding of security protocols, networking, operating systems, and cryptography.
  • Familiarity with alerting systems, ticketing systems, and triaging security incidents.
  • Understanding of vulnerability management processes, including scanning and remediation.
  • Knowledge of antivirus software and Endpoint Detection and Response (EDR) solutions.
  • Practical experience in programming/scripting languages like Python, Bash, Powershell.
  • Upper intermediate spoken and written English level.
  • Strong communication and teamwork skills, and self-motivation.

  • Monitor security alerts, investigate potential incidents, and respond using SIEM tools.
  • Participate in vulnerability scanning and support remediation by coordinating with teams.
  • Assist in deployment and monitoring of endpoint detection and response solutions.
  • Proactively search for indicators of compromise in the network.
  • Help maintain and update security policies for compliance with regulations.
  • Stay updated on emerging threats and security technologies.

PythonBash

Posted 2 days ago
Apply
Apply
🔥 Information Security Engineer
Posted about 1 month ago

📍 Bulgaria, Georgia, Moldova, Poland

🧭 Regular Employment

🔍 Information Security

🏢 Company: Coherent Solutions👥 501-1000OutsourcingSoftware

  • 3+ years of experience in the IT industry.
  • 2+ years of experience in the Information Security field.
  • Ability to develop and implement InfoSec processes.
  • Understanding of core security processes such as risk management, incident management, and access management.
  • Knowledge of InfoSec standards and frameworks, such as ISO 27001/27002 and NIST.
  • Familiarity with system technologies (e.g., AD, DHCP, DNS, SMB) and network technologies (LAN/WAN, TCP/IP, and other protocols).
  • Experience with security technologies like SIEM, NGFW, patching, vulnerability assessment, and antivirus/EDR.
  • English proficiency at B1 or higher.
  • Strong team player with excellent interpersonal and conflict resolution skills.
  • Ability to plan daily and weekly tasks independently.
  • Willingness to learn and explore new areas in Information Security.

  • Plan and execute the organization’s information security roadmap.
  • Develop and implement InfoSec processes such as risk management, incident management, and access management based on industry standards.
  • Lead or participate in security projects, such as DLP implementation and SOC improvement.
  • Create and enforce security policies and procedures.
  • Conduct training sessions for employees on security practices and awareness.
  • Collaborate with IT groups such as network/system administrators and DevOps teams.
  • Leverage threat intelligence platforms for proactive security measures.
  • Manage and optimize security technologies, including SIEM, NGFW, antivirus/EDR, and vulnerability assessment tools.

CybersecurityRisk Management

Posted about 1 month ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 100000 - 120000 USD per year

🔍 Technology-enabled healthcare services

🏢 Company: Urrly👥 1-10Artificial Intelligence (AI)Business DevelopmentSalesInformation Technology

  • 3-5 years of hands-on experience in security engineering.
  • Experience deploying and managing IAM, SIEM, firewalls, anti-malware, and vulnerability scanning systems.
  • Strong ability to manage security technologies in AWS and enterprise environments.
  • Familiarity with SOC 2, HITRUST, and HIPAA frameworks.
  • Strong documentation skills for developing policies, procedures, and security configurations.
  • Proven success in identifying, remediating, and preventing security threats.

  • Design, implement, and maintain security measures, tools, and frameworks to protect systems and sensitive data.
  • Install, configure, and manage security controls in AWS environments such as firewalls and intrusion detection systems.
  • Monitor infrastructure for potential threats and conduct incident response.
  • Lead compliance initiatives with frameworks like SOC 2, HITRUST, and HIPAA, including audit support and documentation.
  • Perform risk evaluations, vulnerability assessments, and enhance overall security posture.
  • Collaborate with cross-functional teams to align security policies with business goals.

AWSBashCybersecurityAmazon Web ServicesLinuxDocumentationCompliance

Posted about 2 months ago
Apply
Apply

📍 AL, AZ, CA, CO, CT, FL, GA, IL, IN, MA, NC, NJ, NV, OH, PA, TX, UT

🧭 Full-Time

💸 120000 - 140000 USD per year

🔍 Contact center software and technology

🏢 Company: Convoso👥 251-500InternetComputerSaaSCall CenterBrand MarketingTelecommunicationsSoftware

  • Bachelor's Degree in Computer Science, Information Technology, or related field preferred.
  • Minimum of 5 years of experience in cybersecurity, system security engineering, or related field.
  • Significant knowledge in SaaS security environments and standards like NIST and ISO 27001.
  • Strong understanding of networking concepts and protocols like TCP/IP and VLANs.
  • Familiarity with regulations such as CCPA, GDPR, and HIPAA.
  • One or more security certifications (ISC2, GIAC, CISM, CEH, etc.).
  • Excellent analytical, problem-solving, and communication skills.

  • Design and drive security initiatives in collaboration with IT and SRE teams to ensure secure systems.
  • Conduct vulnerability assessments and risk analyses with third parties.
  • Implement security measures and policies to protect against unauthorized access.
  • Lead incident response efforts, investigating security breaches and conducting digital forensics.
  • Establish Disaster Recovery and Business Continuity processes.
  • Regularly update cyber security strategies based on new technologies.

LeadershipArtificial IntelligenceCybersecurityCross-functional Team LeadershipCommunication SkillsAnalytical SkillsCollaboration

Posted 3 months ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 $75,600.00 - $179,200.00 per year

🔍 Financial Services

  • 4+ years of Information Security Engineering experience.
  • 4+ years of information security applications and systems experience.
  • 4+ years of mainframe security risk assessment and remediation experience.
  • 4+ years of hands-on Resource Access Control Facility (RACF) experience with at least current and supported version (z/OS 2.3 and above).
  • 4+ years of mainframe security experience using native z/OS and RACF tools.
  • 4+ years of experience issuing RACF commands and performing diagnosis.
  • 4+ years of JCL (Job Control Language) experience.
  • 4+ years of TSO (Time Sharing Options) experience.

  • Provide complex technical analysis and support of mainframe security in a large, complex Multi-LPAR RACF environment utilizing RRSF (RACF Remote Sharing Facility), zSecure, RACF/DB2 and CICS.
  • Work with internal and end-user personnel to define customized access solutions, reporting, notification, and data gathering as required.
  • Provide Production on-call duties.
  • Participate in the research, analysis, design, testing, and implementation of complex computer security/protection technologies for company information and systems/applications.
  • Perform periodic detailed assessments of the operating system and infrastructure components' security configuration to identify security vulnerabilities and provide remediation alternatives.
  • Participate in the evaluation of vendor proposals, new and existing security designs, and emerging security technologies and systems.
  • Lead or assist senior engineers in researching, analyzing, designing, testing, and implementing security solutions using a Wells Fargo methodology.
  • Lead or assist senior level engineers with analysis to identify security vulnerabilities and conduct security risk assessments.
  • Assist in computer security incident response activities and technical investigations of security-related incidents.
  • Provide technical guidance to less experienced staff.

LeadershipCybersecurityLDAPAssemblerCommunication SkillsAnalytical SkillsCollaboration

Posted 3 months ago
Apply

Related Articles

Posted 5 months ago

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

Posted 5 months ago

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Posted 5 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 5 months ago

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.

Posted 5 months ago

The article explores the current statistics for remote work in 2024, covering the percentage of the global workforce working remotely, growth trends, popular industries and job roles, geographic distribution of remote workers, demographic trends, work models comparison, job satisfaction, and productivity insights.