InfoSec Security Engineer
Job Description
We are looking for a Cross Function Security Technology Support Engineer, who will become part of our Security Technology Operations team. We are interested in people who bring in Development security operational experience in large environment having performed detailed troubleshooting of issues, by using their analytical skills and collaborating with other technical teams, stakeholders and internal and external customers. As a successful candidate you will have functional and/or technical experience in supporting security technologies including detailed knowledge of many of the following: Cloud Operations, AWS, Digital Ocean, On Premises, technologies, networking concepts & mechanisms, Firewalls, Proxies, EDR, AV/AM, Vulnerability Scanning, IPS/IDS, Scripting in Python or other languages, DNS, Encryption, SIEM, E-Mail technologies including DMARC, DKIM, SMTP, TLS, and other relevant technologies and work with internal and external groups to ensure the related systems are secure and robust.
Responsibilities
• Document the security assessments, to be able to work on RFP for security compliance needs, findings, and remediation plans to ensure traceability and compliance with regulatory requirements.
• Collaborate with third-party vendors and partners to evaluate the security of their systems and integrations
• Participate in incident response activities, investigating and resolving security incidents in a timely manner.
• Conduct comprehensive security assessments and penetration testing of our systems, networks, and applications using industry-grade tools and techniques.
• Identify vulnerabilities, weaknesses, and potential threats in our infrastructure and provide actionable recommendations to mitigate risks.
• Collaborate with cross-functional teams to design and implement security controls, ensuring that our systems meet industry standards and best practices.
• Stay up-to-date with the latest security trends, threats, and technologies, and provide insights and recommendations to enhance our security posture.
• Perform code review and analysis to identify security flaws and suggest remediation strategies.
• Develop and maintain security testing methodologies, tools, and frameworks to streamline the testing process.
• Conduct security training and awareness programs for employees to promote a culture of security awareness and best practices.
Knowledge and Technical Skills: (any, max possible)
• vulnerability assessments
• penetration testing
• code review
• OWASP
• NIST
• ISO 27001
• PCI DSS
• Python
• PowerShell
Disclaimer : This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
