Apply

Senior Security Engineer (EMEA)

Posted 22 days agoViewed

View full description

💎 Seniority level: Senior, 5+ years

📍 Location: England

🔍 Industry: Software Development

🏢 Company: Docker👥 251-500💰 $105,000,000 Series C about 3 years agoDeveloper ToolsDeveloper PlatformInformation TechnologySoftware

🗣️ Languages: English

⏳ Experience: 5+ years

Requirements:
  • 5+ years of experience security engineering roles, with a focus on product security, infrastructure security, ideally in a cloud-first environment
  • 3+ years of experience developing in Python or Golang
  • Have knowledge of secure coding principles and experience with security testing tools (SAST, DAST) within CI/CD pipelines
  • Understand, authentication, authorization, including technologies like OAuth, SAML, OIDC, MFA, cryptography applications and Zero Trust principals.
  • Strong cloud expertise with hands-on experience in cloud ecosystems (e.g: AWS, GCP, or Azure)
  • Knowledge on securing containerized environments: (Docker, Kubernetes) and implementing runtime security tools
  • Previous experience evolving and enforcing policies to assist co-workers in maintaining corporate and cloud security
  • Familiar with data privacy and compliance regulations (e.g, SOC 2, ISO 27xxx, GDPR, CCPA, FIPS) aligning security initiatives
Responsibilities:
  • Embed security best practices within the Software Development Lifecycle (SDLC), including secure coding, code review, and application security testing
  • Partner closely with engineering to drive security architecture and processes that implement security controls across our software and systems
  • Design and enforce security configurations in cloud environments (e.g. AWS), including IAM roles, security groups, and VPC segmentation
  • Establish automated monitoring and alerting to detect anomalies or potential breaches across cloud infrastructure
  • Maintain cloud and infrastructure security: AWS Security Hub, AWS IAM, AWS Key Management (KMS), OPA for Terraform
  • Take ownership, define strategy, and drive improvement for part so our security program such as threat modeling, secrets management, or container security
  • Plan and perform product security assessments including architecture review, threat modeling, code review, pen testing and general security consulting to proactively build security controls
  • Partner with detection and response to create new capabilities or respond to security events
  • Work with leadership to align security initiatives with business goals, ensuring that security is a core component of product and infrastructure
  • Serve as a security subject matter expert for software security and architecture
  • Educate and collaborate with cross-functional teams (e.g., engineering, product) to promote security practices
  • Have the ability to participate in our incident response team on-call rotation
Apply

Related Articles

Posted about 1 month ago

Why remote work is such a nice opportunity?

Why is remote work so nice? Let's try to see!

Posted 7 months ago

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

Posted 8 months ago

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Posted 8 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 8 months ago

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.