Apply

Senior Security Engineer

Posted about 13 hours agoViewed

View full description

💎 Seniority level: Senior, 5+ years

💸 Salary: 124000.0 - 155000.0 USD per year

🔍 Industry: Software Development

🏢 Company: Recharge👥 11-50Electronics

🗣️ Languages: English

⏳ Experience: 5+ years

Requirements:
  • 5+ years of experience in network and/or security roles, with a focus on edge security tools
  • 2+ years experience with k8s, Helm, IaC, Terraform, Docker, Linux, Kubernetes, etc
  • 2+ years experience with Monitoring, Metrics and Logging (Splunk) solutions
  • 2+ years experience in cloud-native environments such as GCP, AWS, or Azure
  • Bachelor’s degree in Computer Science, Information Technology, or related field
  • Relevant certifications such as CISSP, CCSP, GSEC, or equivalent
  • Network security design experience and an an in-depth knowledge of network protocols, firewall configurations, and intrusion detection/prevention systems
  • Cloud infrastructure security knowledge including hardening standards, CSPM tools, VPN/remote access management and authentication technologies such as SAML, OAuth
  • Robust understanding of WAF technologies such as Akamai, Cloudflare, Google Cloud Armor, Imperva, etc
  • Experience configuring SIEM tools such as Splunk, LogRhythm, FileVault, etc
  • Extensive knowledge of Vulnerability Management practices
  • Understanding of virus and malware defense systems such as Crowdstrike, Sentinel One, Trend Micro, etc
  • Understanding of backup systems and disaster recovery planning
  • Experience with security assessment tools and techniques
Responsibilities:
  • Design, implement, and maintain secure cloud / network architectures, ensuring the confidentiality, integrity, and availability of data.
  • Review IAM and access controls to ensure adherence to the principles of least privilege.
  • Create and maintain network and security documentation.
  • Collaborate with cross-functional teams to integrate security measures into network designs and implementations.
  • Manage Endpoint / EDR / XDR / Anti-malware tools and policies
  • Monitor network traffic for unusual activity and respond to security incidents in a timely manner.
  • Audit and review user and merchant network activity to ensure system and data safety
  • IDS/IPS management and response
  • Firewall rule review and management
  • WAF configuration and rule tuning
  • Conduct regular vulnerability assessments on network infrastructure to identify and remediate potential security risks.
  • Stay abreast of emerging threats and vulnerabilities, applying proactive measures to protect against them.
  • Maintain and continuously improve incident response plans, participate in tabletop exercises, and lead incident response efforts when necessary.
  • Collaborate with internal teams and external stakeholders to investigate and mitigate security incidents.
  • Mentor other engineers on security configurations and best practices
  • Investigate, analyze and evangelize good security posture throughout the organization
  • Automate security tools and processes where possible
  • Live by and champion our values: Accountability, Collaboration, Iteration and Details
Apply

Related Jobs

Apply
🔥 Senior Security Engineer
Posted about 12 hours ago

💸 124000.0 - 155000.0 USD per year

🔍 Software Development

  • 5+ years of experience in network and/or security roles, with a focus on edge security tools
  • 2+ years experience with k8s, Helm, IaC, Terraform, Docker, Linux, Kubernetes, etc
  • 2+ years experience with Monitoring, Metrics and Logging (Splunk) solutions
  • 2+ years experience in cloud-native environments such as GCP, AWS, or Azure
  • Network security design experience and an an in-depth knowledge of network protocols, firewall configurations, and intrusion detection/prevention systems
  • Cloud infrastructure security knowledge including hardening standards, CSPM tools, VPN/remote access management and authentication technologies such as SAML, OAuth
  • Robust understanding of WAF technologies such as Akamai, Cloudflare, Google Cloud Armor, Imperva, etc
  • Experience configuring SIEM tools such as Splunk, LogRhythm, FileVault, etc
  • Extensive knowledge of Vulnerability Management practices
  • Understanding of virus and malware defense systems such as Crowdstrike, Sentinel One, Trend Micro, etc
  • Understanding of backup systems and disaster recovery planning
  • Experience with security assessment tools and techniques
  • Ability to manage multiple projects, activities, and tasks simultaneously
  • Ability to learn and support new systems and applications
  • Strong analytical and problem-solving skills
  • Excellent communication and collaboration skills
  • Willingness to participate in a first line of support on-call rotation
  • Desire to work remotely and to make an impact
  • Bachelor’s degree in Computer Science, Information Technology, or related field
  • Relevant certifications such as CISSP, CCSP, GSEC, or equivalent
  • Design, implement, and maintain secure cloud / network architectures, ensuring the confidentiality, integrity, and availability of data.
  • Review IAM and access controls to ensure adherence to the principles of least privilege.
  • Create and maintain network and security documentation.
  • Collaborate with cross-functional teams to integrate security measures into network designs and implementations.
  • Manage Endpoint / EDR / XDR / Anti-malware tools and policies
  • Cloud-native network traffic and event monitoring (GuardDuty, Security Command Center)
  • Monitor network traffic for unusual activity and respond to security incidents in a timely manner.
  • Audit and review user and merchant network activity to ensure system and data safety
  • IDS/IPS management and response
  • Firewall rule review and management
  • WAF configuration and rule tuning
  • Conduct regular vulnerability assessments on network infrastructure to identify and remediate potential security risks.
  • Stay abreast of emerging threats and vulnerabilities, applying proactive measures to protect against them.
  • Maintain and continuously improve incident response plans, participate in tabletop exercises, and lead incident response efforts when necessary.
  • Collaborate with internal teams and external stakeholders to investigate and mitigate security incidents.
  • Mentor other engineers on security configurations and best practices
  • Investigate, analyze and evangelize good security posture throughout the organization
  • Automate security tools and processes where possible
  • Live by and champion our values: Accountability, Collaboration, Iteration and Details
Posted about 12 hours ago
Apply
Apply
🔥 Senior Security Engineer
Posted about 12 hours ago

📍 United States

🧭 Full-Time

💸 200000.0 - 220000.0 USD per year

🔍 Tech / Retirement Services

  • 2+ years in a security focused engineering role
  • 5+ years in software engineering role
  • Proficient in Typescript/Javascript, Ruby, Java, Python, or Golang
  • Experience securing cloud environments
  • Build practical controls to improve effectiveness
  • Foster a DevSecOps culture
  • Secure SDLC process through automation
  • Perform security reviews of application code
  • Monitor security events and alerts

PythonCloud ComputingCybersecurityJavaRubyTypeScript

Posted about 12 hours ago
Apply
Apply

📍 Poland, Spain

🏢 Company: Booksy👥 501-1000💰 Debt Financing 5 months agoMobile PaymentsMarketplaceSaaSPaymentsMobile AppsWellnessSoftware

  • Strong experience in cyber defense, including log analysis, threat detection, forensic investigations, and security monitoring
  • Hands-on knowledge of cybersecurity tools such as SIEM, SOAR, CNAPP, and Threat Intelligence Platforms
  • A solid understanding of operating systems (Windows, Linux, MacOS), web application security, and network security
  • Programming/scripting skills (e.g., Python, Bash, PowerShell) to automate security monitoring and response processes
  • Lead and enhance our global cyber defense initiatives, ensuring Booksy is well-equipped to detect, investigate, and respond to security threats.
  • Introduce new security tools, optimising our incident response processes, and strengthening our cybersecurity monitoring capabilities
  • Collaborate with diverse stakeholders across the company

PythonBashCloud ComputingCybersecurityLinuxScriptingEnglish communication

Posted 1 day ago
Apply
Apply

📍 United States

🧭 Full-Time

🔍 Information Security

🏢 Company: Jobgether👥 11-50💰 $1,493,585 Seed almost 2 years agoInternet

  • 5+ years of experience as a Senior Security Engineer
  • Extensive knowledge of healthcare data privacy regulations
  • Advanced certifications like CISSP, CISM, or HITRUST CCM
  • Strong understanding of security governance frameworks
  • Lead development and maintenance of security policies
  • Ensure compliance with healthcare regulatory requirements
  • Manage the Information Security Committee
  • Develop security awareness and training programs
  • Coordinate vendor security assessments
  • Run security incident response protocols

LeadershipCloud ComputingCybersecurityComplianceRisk Management

Posted 3 days ago
Apply
Apply

🧭 Full-Time

🔍 Software Development

🏢 Company: AssuredCloud Data ServicesB2BCloud SecurityCyber Security

  • Experience developing best practices for security in a growing team, with a strong understanding of web application architecture.
  • Proficiency in cloud-based application security, container security, and DevSecOps practices.
  • Hands-on experience writing secure code (our stack includes TypeScript/Node.js/React, but we value great engineers regardless of stack).
  • Familiarity with industry standards and regulations, such as SOC 2 Type II.
  • Strong problem-solving and analytical skills, with the ability to assess risks and implement effective solutions.
  • Excellent communication and collaboration skills, enabling you to work effectively across teams.
  • Develop and implement security measures to safeguard infrastructure, applications, and data from threats.
  • Perform regular security assessments and penetration testing to identify vulnerabilities and ensure compliance with security standards.
  • Collaborate with engineers to design and deploy security solutions tailored to business needs.
  • Monitor and analyze network traffic and security logs to detect and respond to potential incidents.
  • Provide ongoing support and maintenance to ensure the continued protection of our systems.
  • Stay updated on the latest security trends to proactively address emerging threats and integrate best practices.
Posted 7 days ago
Apply
Apply

🔍 Software Development

🏢 Company: Human Interest👥 501-1000💰 $161,000,000 Private about 2 years agoWealth ManagementRetirementFinanceInsurTechEmployee BenefitsInsuranceFinTech

  • Minimum 2 years in a security focused engineering role
  • Minimum 5 years in software engineering role.
  • Proficient coding ability in at least one modern programming language. E.g.Typescript/Javascript, Ruby, Java, Python, Golang
  • Practical experience securing cloud environments.
  • Strong communication skills: you can easily discuss complex technical concepts with both engineers and non-engineers.
  • Strong ownership and bias for action: You love to roll up your sleeves. You are proactive, drive projects from start to finish, and lead cross-functional projects, while keeping stakeholders informed.
  • Leader and Mentor: You are a recognized leader in your areas of responsibility, and enjoy sharing knowledge and mentoring others.
  • Operational Excellence: you raise the bar on the quality of the software and infrastructure that you work on.
  • Build practical controls to improve the effectiveness and robustness of our engineering team
  • Foster a DevSecOps culture through education, automation, and tooling.
  • Secure our SDLC process through automation
  • Implement checks in pipeline
  • Perform security reviews of application code
  • Take part in team on call rotation for security events and monitoring alerts
  • Advocate and educate security best practices
  • Create tooling and automation to efficiently respond to security events
  • Partner with stakeholders to respond and mitigate security threats
Posted 7 days ago
Apply
Apply

🔍 Security

  • Deep understanding of JavaScript, browsers
  • Ideally also some background in Rust and Yara rules
  • Participated in capture the flag events or regularly spend time doing white hat hacking or bug bounties.
  • Keep an eye out on attacks around the world, we have a lot of data and keep an eye on a lot of websites. There is always a new attack method to be found. We want you to find it, develop a detection method, use existing attributes where possible and ship it!
  • Review detections that happen with some of our existing in-house detections. Some may catch something we’ll want to narrow down on.
  • Build new detection methods and rules for new attacks. A deep understanding of JavaScript would help here. However, a large range of our detection systems use Rust.
  • Proactively define detections for client-side behaviours that can be malicious and review this against our script data.
  • Use and build internal tools to detect never seen before attacks.
Posted 8 days ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 150000.0 - 180000.0 USD per year

🔍 Sports Gaming

🏢 Company: Underdog Sports

  • 5+ years of experience in cloud security, preferably with AWS services
  • Hands-on experience with Kubernetes and container environments
  • Knowledge of at least one programming language (Python, Ruby, JavaScript/TypeScript)
  • Experience with security frameworks and compliance standards
  • Manage and optimize tooling for cloud security monitoring
  • Investigate security incidents and perform root cause analysis
  • Implement security logging and monitoring
  • Conduct vulnerability management
  • Develop and maintain security automation scripts
  • Secure and optimize CDN configurations
  • Collaborate with development and operations teams

AWSPythonCloud ComputingCybersecurityKubernetesTerraform

Posted 10 days ago
Apply
Apply

📍 United States, Canada

🧭 Full-Time

💸 200000.0 - 230000.0 USD per year

🔍 Blockchain/Crypto

🏢 Company: Phantom👥 51-100💰 $109,000,000 Series B about 3 years agoCryptocurrencyEthereumBitcoinFinTech

  • 7+ years in offensive security techniques
  • Strong understanding of web and mobile application security
  • Proficient in code review for JavaScript & Typescript
  • Strong analytical and problem-solving skills
  • Perform regular security assessments on projects and code
  • Identify and mitigate security vulnerabilities through various methods
  • Collaborate with development teams for secure coding practices
  • Participate in incident response activities
  • Lead large cross-team projects

BlockchainJavascriptTypeScript

Posted 10 days ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 150025.0 - 176500.0 USD per year

🔍 Healthcare, Telemedicine

🏢 Company: Bicycle Health👥 101-250💰 $5,000,000 Series B over 2 years agoPersonal HealthHealth InsuranceHealth Care

  • 5+ years experience as a Senior Security Engineer or similar role.
  • Extensive knowledge of healthcare data privacy and security regulations.
  • Advanced certifications (CISSP, CISM, HITRUST CCM).
  • Strong understanding of security governance frameworks.
  • Collaborate with the executive team to align security strategies to business objectives.
  • Manage compliance with healthcare regulatory requirements.
  • Conduct security compliance audits and risk assessments.
  • Develop and implement security awareness training programs.
  • Oversee vendor security assessments.

AWSCybersecurityComplianceRisk Management

Posted 14 days ago
Apply

Related Articles

Posted 6 months ago

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

Posted 6 months ago

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Posted 6 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 6 months ago

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.

Posted 6 months ago

The article explores the current statistics for remote work in 2024, covering the percentage of the global workforce working remotely, growth trends, popular industries and job roles, geographic distribution of remote workers, demographic trends, work models comparison, job satisfaction, and productivity insights.