Sr Security Engineer
As a Sr Security Engineer, you will work on complex technical security solutions across multiple technology stacks. You work closely with development, DevOps, and infrastructure team members to build best in class security practices.
Major Activities
- Analyzes complex security issues (e.g security events, threat models, etc)
- Responsible to monitor, operate, configure, remediate multiple security tool (e.g firewalls, anti-malware)
- Design, implement, and manage security solutions for cloud environments (Google Cloud).
- Develop and enforce cloud security policies, standards, and best practices.
- Automate security operations using scripting, deploy and configure cloud-native security tools and solutions (e.g., firewalls, encryption, identity and access management).
- Help to implement security processes / standards, for example Michaels Secure Coding Standard
- Use tooling architecture and develop hands-on Security Automation that integrates with various DevOps / DevSecOps tools
- Enhanced speed with security functions
- Responsible for independent security controls, tools and monitoring
- Leverage internal and external partnerships and networks to maximize the achievement of business goals
- Execute systems strategies to support business goals
- Resolves cross-functional issues
Minimum Education
Bachelor's degree in Computer Science, Information Security, or STEM related field of studyMinimum Type of Experience the Job Requires
5+ years of experience in security engineeringExperience multiple security component (e.g. firewall and IPS)Competency with complete security stack with in discipline (elgl network security)Good knowledge of incorporating secure coding into application development and DevOps practicesPrior experience with managing application security training programsExperience with operations and security with GCP or AWS, Containers, and Serverless technologiesEstablished experience with Agile (including Scrum and Kanban) and software development lifecycle (SDLC) practices.Experience with web development languages (Java, Python, JavaScript, etc.)Ability to navigate a rapidly changing landscape, while handling multiple responsibilitiesCurious about new technology and always looking to acquire new knowledgeExcellent verbal and written communication skillsBe an action-oriented, independent, self-starter comfortable working in an unstructured, fast-paced environmentPreferred Special Certifications or Technical Skills
CISSP, CISM, CCNP, OSCP, GIAC, GCP Cloud Certifications Associate, Professional Cloud are highly desirable etc.Cloud Solution Architects Certification preferredPreferred Type of Experience the Job Requires
Experience with Windows andnix operating systems, endpoint applications, networking protocols and devices.Experience single sign-on (SSO), OAuth 2.0, OpenID Connect and SAML.Ability to effectively communicate business risk from cybersecurity topics.Active involvement with practices emerging from OWASP, NIST and SANS, among others.