Apply

Security Engineer

Posted 2024-10-05

View full description

πŸ’Ž Seniority level: Middle, 3+ years of experience in data security

πŸ“ Location: Chile, Argentina, United States, Brazil, Mexico, Americas timezone

πŸ’Έ Salary: $4,000 - $12,000 per month

πŸ” Industry: Financial technology

🏒 Company: AltScore

⏳ Experience: 3+ years of experience in data security

πŸͺ„ Skills: LeadershipPythonCybersecurityCommunication SkillsAnalytical SkillsCollaboration

Requirements:
  • Bachelor’s or Master's degree in Computer Science, Engineering, Cybersecurity, or a related technical field.
  • 3+ years of experience in data security.
  • Proficiency with Python programming.
  • Extensive experience and knowledge in complying with data protection standards such as SOC 2, ISO, GDPR, and similar certifications.
  • Strong technical foundation in cybersecurity principles, network security, and data protection technologies.
  • Proven track record in development and implementation of data security strategies that align with international compliance standards.
  • Excellent communication skills.
  • Relevant certifications in cybersecurity (e.g., CISSP, CISM, CEH) and compliance standards are highly desirable.
Responsibilities:
  • Lead the development and implementation of comprehensive data security strategies, ensuring compliance with SOC 2, ISO, GDPR, and similar standards.
  • Grow, manage and mentor a team of security professionals in maintaining high standards of data security and compliance.
  • Collaborate with the Engineering Team to integrate compliance requirements into our security infrastructure.
  • Conduct regular security audits, risk assessments, and ensure continual alignment with international data protection laws and standards.
  • Help develop, enforce, and update policies related to data encryption, secure coding practices, and overall information security, in line with global standards.
  • Stay updated on the latest developments in data security, cybersecurity, and compliance regulations.
Apply

Related Jobs

Apply

πŸ“ United States

  • U.S. citizenship is required
  • Ability to obtain a Public Trust before starting the position

  • Work hand-in-hand with the Federal client
  • Ensure security for highly visible applications
  • Provide technical and operational subject matter expertise
  • Support services to partners and clients

Communication SkillsAnalytical SkillsCollaborationProblem SolvingAttention to detailOrganizational skillsPresentation skillsTime ManagementWritten communication

Posted 2024-11-23
Apply
Apply

πŸ“ Brazil

🧭 Full-Time

πŸ” Real estate technology (proptech)

🏒 Company: Grupo QuintoAndar

  • Expertise in managing and configuring SOC tools such as EDR, SIEM, IDS/IPS, DLP, firewalls.
  • Experience with SOAR implementations.
  • Extensive experience in incident response and threat investigation.
  • Proficiency in identifying, containing, and mitigating cybersecurity incidents.
  • Skills in vulnerability management and risk mitigation.
  • Certifications: GIAC Certified Incident Handler (GCIH), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or similar.
  • Effective communication, analytical and collaboration skills.
  • Fluency in Portuguese and proficiency in English.

  • Monitor security events and alerts, responding to incidents detected by the SOC and security systems.
  • Lead and coordinate cybersecurity incident response, including identification, containment, eradication, recovery, and post-incident analysis.
  • Investigate the origin of attacks and security events by analyzing logs, network traffic, and system records.
  • Create and maintain incident response playbooks, and collaborate on developing SIEM use cases.
  • Identify automation opportunities in SOC processes and assist in implementing SOAR tools.
  • Provide internal training on security best practices and conduct incident response simulations.
  • Collaborate with software engineering teams to resolve identified vulnerabilities.
  • Develop and present incident status reports and SOC performance metrics to management.

LeadershipCybersecurityData AnalysisProduct ManagementData analysisCommunication SkillsAnalytical SkillsCollaborationProblem SolvingLinuxAttention to detailOrganizational skillsPresentation skillsTime ManagementWritten communicationDocumentation

Posted 2024-11-23
Apply
Apply

πŸ“ Little Rock / Northwest Arkansas

🧭 Full-Time

πŸ” Information Security

🏒 Company: GuidePoint Security

  • Must live in the Little Rock / Northwest Arkansas area.
  • 2-3 years in an enterprise-level security consultative, vendor, or operational role.
  • Prior client-facing presales or consultative role experience.
  • Deep proficiency in multiple security technologies including Network Security, Cloud Security, Vulnerability Management, and SIEM.
  • Expertise in architecting and designing enterprise-scale security solutions.
  • Proficiency in various client and server operating systems (Windows, Linux, OSX).
  • Experience with AWS, Azure, or GCP.
  • Working knowledge of advanced security concepts like Defense in Depth and Zero Trust.

  • Focus on driving new business by working with Account Executives within territory.
  • Provide direction for engineering cyber-security solutions.
  • Make design and configuration recommendations for clients' environments.
  • Listen to clients to understand issues and gaps in their security programs and provide solutions.
  • Articulate complex technical content to technical and non-technical audiences.
  • Work with teams to create new service offerings and supporting collateral.
  • Research and engage emerging vendors and technologies.
  • Author comprehensive business and technical collateral.
  • Position GuidePoint’s Information Assurance Service Offerings.

AWSCybersecurityGCPAzureLinux

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 127350 - 203760 USD per year

πŸ” Security technology

🏒 Company: Axon

  • A fundamental understanding of how modern, distributed cloud-based applications function.
  • Demonstrated experience in security best practices or an interest in building that knowledge.
  • Experience responding to and investigating information security events and incidents.
  • 1+ year(s) of experience using SOAR and SIEM solutions.
  • Fluency in development languages like Python or Go, and shell scripting (bash/powershell).
  • Experience interacting with cloud platforms like Azure and AWS via APIs.
  • Working competency with GitOps.
  • Strong problem-solving skills.
  • Strong written and verbal communication skills.
  • Bachelor’s degree or higher, or equivalent experience.

  • Design, develop, implement, and maintain tooling to improve Axon’s ability to detect and respond to security events.
  • Participate in an on-call rotation to investigate and remediate escalated security events.
  • Evaluate and integrate new security tools and technologies into the SOC.
  • Partner with teams throughout the company to build secure solutions.
  • Write run books and draft incident reports for leadership.
  • Engineer solutions for current security attack methods.
  • Contribute to enhancing the overall Information Security Program.
  • Stay current on security industry trends through educational opportunities.

AWSPythonBashAzureGoCommunication SkillsProblem Solving

Posted 2024-11-21
Apply
Apply

πŸ“ Brazil

πŸ” Real Estate/PropTech

🏒 Company: Grupo QuintoAndar

  • Strong hands-on experience with penetration testing tools and frameworks (5+ years).
  • Professional expertise in offensive security techniques, including vulnerability assessment, exploitation, and post-exploitation tactics.
  • Knowledge of modern exploitation techniques, web application vulnerabilities (OWASP Top 10), and network security weaknesses.
  • Familiarity with Zero Trust principles and how they apply to offensive security testing and hardening.
  • Experience conducting Red Team exercises and utilizing frameworks such as MITRE ATT&CK, Cyber Kill Chain and NIST.
  • Fluency in Portuguese and proficiency in English, especially for writing detailed reports, security documentation, and collaborating with global teams.
  • Offensive Security Certified Professional (OSCP) or similar certifications are highly desirable.

  • Conduct regular penetration testing on corporate infrastructure, applications, and networks (including cloud environments) to identify and exploit vulnerabilities.
  • Develop and execute offensive security strategies to simulate real-world attack scenarios, providing insights into potential security weaknesses and paths to exploitation.
  • Automate offensive security processes, including vulnerability scanning, reconnaissance, and exploit deployment, to enhance testing efficiency and coverage.
  • Create detailed reports of findings and work closely with the incident response, SOC, and blue team to provide actionable recommendations for remediation.
  • Lead Red Team exercises, developing attack methodologies and leveraging the MITRE ATT&CK framework to improve detection and response capabilities.
  • Collaborate with various stakeholders to integrate offensive security findings into the broader security program, aligning with Zero Trust principles.
  • Stay up to date with the latest vulnerabilities, exploits, and offensive security tools to continuously improve the security posture of the organization.

Communication SkillsAnalytical SkillsCollaborationProblem SolvingLinuxAttention to detailOrganizational skillsTime ManagementWritten communicationDocumentation

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 100000 - 120000 USD per year

πŸ” Technology-enabled healthcare services

🏒 Company: Urrly

  • 3-5 years of hands-on experience in security engineering.
  • Experience deploying and managing IAM, SIEM, firewalls, anti-malware, and vulnerability scanning systems.
  • Strong ability to manage security technologies in AWS and enterprise environments.
  • Familiarity with SOC 2, HITRUST, and HIPAA frameworks.
  • Strong documentation skills for developing policies, procedures, and security configurations.
  • Proven success in identifying, remediating, and preventing security threats.

  • Design, implement, and maintain security measures, tools, and frameworks to protect systems and sensitive data.
  • Install, configure, and manage security controls in AWS environments such as firewalls and intrusion detection systems.
  • Monitor infrastructure for potential threats and conduct incident response.
  • Lead compliance initiatives with frameworks like SOC 2, HITRUST, and HIPAA, including audit support and documentation.
  • Perform risk evaluations, vulnerability assessments, and enhance overall security posture.
  • Collaborate with cross-functional teams to align security policies with business goals.

AWSBashCybersecurityAmazon Web ServicesLinuxDocumentationCompliance

Posted 2024-11-21
Apply
Apply

πŸ“ United States

🧭 Full-Time

πŸ’Έ 188000 - 230000 USD per year

πŸ” Mental health care technology

  • 5+ years of experience in security and/or software engineering roles.
  • Demonstrated history of working on security-related projects.
  • Strong cross-functional experience with team collaboration.
  • Technical depth in building secure platforms and products.
  • Ability to tackle ambiguous problems in a fast-paced environment.
  • Focus on innovation in security and privacy technologies.
  • Results-driven and motivated by the mission to increase access to quality mental health care.

  • Partner with Product and Engineering for secure new product launches.
  • Engage in implementation efforts, security reviews, product design decisions, and auditing vulnerabilities.
  • Develop automated tooling for product security capabilities.
  • Define application guardrails for secure development practices.
  • Assist in ongoing security operations, including incident response and vulnerability management.

AWSPythonKafkaTypeScriptFastAPIPostgresProduct designRedisReactSpark

Posted 2024-11-21
Apply
Apply

πŸ“ Argentina

🧭 Full-Time

πŸ’Έ 20 - 30 USD per hour

πŸ” Credit repair

🏒 Company: The Credit Pros

  • 3+ years of experience in cybersecurity roles, with a focus on cloud security, network security, and incident response.
  • Strong experience with Azure and AWS security configurations.
  • Expertise in managing VPNs, firewalls, and endpoint security.
  • Proven experience with penetration testing and vulnerability assessments.
  • Experience leading disaster recovery plans.
  • Knowledge of PCI DSS compliance is a strong plus.
  • At least one relevant certification required (e.g., CISSP, CEH, CompTIA Security+, CCSP).
  • Hands-on experience with ransomware prevention and phishing simulations.

  • Oversee the overall security of the infrastructure, including cloud environments (Azure and AWS) and core applications.
  • Implement and maintain secure configurations for all cloud services, networks, and applications.
  • Manage and enforce identity and access management policies.
  • Ensure business-critical applications are fully secured and assess vulnerabilities.
  • Manage security of employee devices and enforce BYOD policies.
  • Design and maintain secure network architectures, including VPNs and firewalls.
  • Lead the development of disaster recovery and incident response plans.
  • Conduct regular penetration testing and vulnerability assessments.
  • Implement ransomware prevention and conduct phishing simulations.
  • Ensure compliance with industry regulations, focusing on PCI DSS.

AWSLeadershipCloud ComputingCybersecurityMicrosoft AzureAmazon Web ServicesAzure

Posted 2024-11-19
Apply
Apply

πŸ“ Mexico

🧭 Full-Time

πŸ’Έ 20 - 30 USD per hour

πŸ” Credit repair

🏒 Company: The Credit Pros

  • 3+ years of experience in cybersecurity roles with an emphasis on cloud security, network security, and incident response.
  • Strong experience with Azure and AWS security configurations.
  • Expertise in managing VPNs, firewalls, and endpoint security.
  • Proven experience with penetration testing, vulnerability assessments, and leading disaster recovery plans.
  • Knowledge of PCI DSS compliance is a plus.
  • At least one relevant certification required (e.g., CISSP, CEH, CompTIA Security+, CCSP).
  • Hands-on experience with ransomware prevention and phishing simulations.

  • Oversee the overall security of infrastructure, including cloud environments (Azure and AWS) and core applications.
  • Implement and maintain secure configurations for cloud services, networks, and applications.
  • Manage and enforce identity and access management policies.
  • Ensure business-critical applications are secured against vulnerabilities.
  • Manage security for employee devices and enforce BYOD policies.
  • Design and maintain secure network architectures, including VPNs and firewalls.
  • Lead disaster recovery and incident response planning.
  • Conduct regular penetration testing and vulnerability assessments.
  • Implement ransomware prevention strategies and conduct phishing simulations.
  • Ensure compliance with industry regulations, focusing on PCI DSS.

AWSLeadershipCloud ComputingCybersecurityMicrosoft AzureAmazon Web ServicesAzureCompliance

Posted 2024-11-19
Apply
Apply

πŸ“ Brazil

🧭 Full-Time

πŸ’Έ 20 - 30 USD per hour

πŸ” Credit Repair

🏒 Company: The Credit Pros

  • 3+ years of experience in cybersecurity roles, focusing on cloud security, network security, and incident response.
  • Strong experience with Azure and AWS security configurations.
  • Expertise in managing VPNs, firewalls, and endpoint security.
  • Proven experience with penetration testing, vulnerability assessments, and leading disaster recovery plans.
  • Knowledge of PCI DSS compliance is a strong plus.
  • At least one relevant certification required (e.g., CISSP, CEH, CompTIA Security+, CCSP).
  • Hands-on experience with ransomware prevention and phishing simulations.

  • Oversee the overall security of infrastructure including cloud environments (Azure and AWS) and core applications.
  • Implement secure configurations for all cloud services, networks, and applications.
  • Manage and enforce identity and access management policies.
  • Ensure core applications are secured against vulnerabilities.
  • Manage security of employee devices and enforce BYOD policies.
  • Design secure network architectures and monitoring.
  • Lead development of disaster recovery and incident response plans.
  • Conduct regular penetration testing and vulnerability assessments.
  • Implement and manage ransomware prevention strategies and conduct phishing simulations.
  • Ensure compliance with industry regulations, particularly focusing on PCI DSS.

AWSLeadershipCloud ComputingCybersecurityMicrosoft AzureAmazon Web ServicesAzureCommunication SkillsAnalytical SkillsCollaborationProblem SolvingAttention to detailOrganizational skillsCompliance

Posted 2024-11-19
Apply