person looking for a Security Operations Remote Jobs

Get Remote Security Operations Jobs in your mailbox.

91 exciting remote jobs on file from 2500+ top remote companies.

  • Hot new jobs of this week
  • 91 active jobs from past weeks to consult
  • Segmented for USA, Europe or Worldwide.
  • Personally selected for you by our experienced remote hiring managers.


A selection of jobs from the previous newsleterrs.

ScienceLogic is hiring a Remote Sr. Security Engineer

What we’re looking for…

ScienceLogic is looking for a Senior Security Engineer who will design and implement systems and procedures to sustain the security, integrity, and availability of the organization's data. Assess risk of exposure of proprietary data through weaknesses in platforms, access procedures, and forms of access to the organization's systems and the data contained in them. Track security violations and identify trends or exposures that could be addressed by additional training, technical measures, or use of application tools to enhance security. May participate in ethical simulated attacks or security violations to assess the organization's data security measures.

 

What you’ll be doing…

  • Conduct platform or operating system vulnerability scans that assess exposure of system to attacks or hacking. Monitor Security Operations pager and respond to issues of potential viral activity, spam, phishing.
  • Administer controls and review their application to ensure that system's controls, policies, and procedures are operating effectively relative to the predicted effectiveness of the controls.
  • Investigate events or incidents of apparent security breaches and report to appropriate authorities using corporate procedures.
  • Collaborate with internal and external auditors to ensure that appropriate controls are installed, operating properly, and being monitored and reported.
  • May plan and/or conduct tests of the core infrastructure and the contingency environment for critical business applications to ensure business continuity in the event of a computer security incident.
  • Aggregate metrics of operation of security controls, as well as apparent attacks, breaches, and other pertinent data; track trends and prepare for periodic security reports.
  • Measure and improve patch management procedures with appropriate teams.
  • Participate in projects designed to test defenses against hacking, denial of service, spam, break-ins, or similar attacks. May provide guidance to infrastructure or application staff participating in exercise.
  • Examine and/or test new methodologies or tools that could be adopted to enhance security of platforms, infrastructure, or access to data.
  • Other duties as required.

 

Qualities you possess…

  • US Citizenship with the ability to obtain a public trust clearance required.
  • Bachelor's Degree or equivalent required.
  • Applicable certifications are desired.
  • 5+ years of related experience in an IT Security related field.
  • 5+ years of experience as system or network administrator or a support specialist in a SOC environment.
  • Solid understanding of basic fundamentals in TCP/IP and the OSI model as well as common routing protocols.
  • Experience with SOC 2 and/or ISO 27001 audits and certifications.
  • Experience working with Firewalls and IDS technologies .
  • Problem solving skills complimented with experience in solving information security device and application issues with customers is a must.
  • SOC/NOC experience desired. Good verbal and written communication skills as well as attention to detail.
  • Exceptional customer service skills and interpersonal skills. Ability to work in small teams.
  • Must be able to resolve highly complex and technical business problems.
  • Understanding of threat agents, attack vectors, and attack patterns as well as compensating controls and design patterns needed to mitigate risk.
  • Possesses a broad domain level of expertise to resolve complex issues and performs detailed network analysis across a broad range of network and other technologies both on premise as well as cloud and hosted environments.
  • Demonstrated skills on technical procedures development (equipment configuration) for testing and implementation of design changes.
  • Create technical documentation and diagrams using Microsoft Visio, Excel, Word and PowerPoint.
  • Knowledge of single sign-on integration with on premise and cloud toolset.
  • Knowledgeable of Network Design and Project Management methodologies.
  • Excellent presentation/verbal communication skills.

 

Recommended Certifications or Skills

  • Security+
  • Associate CISSP
  • Associate SSCP
  • Associate CCSP
  • OS/Linux/Windows/macOS
  • Directory Services
  • Microsoft Security Center, Intune, Defender
  • Network Protocols
  • Scripting Languages (Python/Bash/PowerShell)

 

Benefits & Perks

  • A remote-first culture - work from home or come into the office, it's totally up to you.
  • Comprehensive medical, dental and vision plans.
  • 401(k) plan with employer match.
  • Flexible Paid Time Off (FTO) so that you can take the time that you need to re-energize.
  • Volunteer Time Off (VTO) - take two days off per calendar year to volunteer with your preferred charitable organization.
  • 5-year Service Milestone Sabbatical.
  • Paid parental leave.
  • Generous employee referral bonus program.
  • Pet insurance.
  • HQ Office centrally located in Reston Town Center featuring a well-stocked kitchen with rotating snacks and beverages, and catered lunch on Thursdays.
  • Regular virtual company-wide events, including cooking classes, yoga, meditation and more.
  • The opportunity to learn and develop from some of the best and brightest minds in the industry!

 

Don’t meet every single requirement? Studies have shown that women and people of color are less likely to apply to jobs unless they meet every single qualification. At ScienceLogic, we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or any other applicable legally protected characteristics in the location in which you are applying.

 

 

About ScienceLogic

We empower intelligent and automated IT operations.

The ScienceLogic SL1 platform enables companies to digitally transform themselves by removing the difficulty of managing complex, distributed IT services. We use patented discovery techniques to find everything in your IT environment, so you get visibility across all technologies and vendors running anywhere in your data centers or clouds

 

www.sciencelogic.com

See more jobs at ScienceLogic

Apply for this job

9d

Senior Product Security Engineer

InstacartCanada (Remote in ON, AB or BC Only)
golangsqlDesignrubypython

Instacart is hiring a Remote Senior Product Security Engineer

We're transforming the grocery industry

At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We work to deliver an essential service that customers rely on to get their groceries and household goods, while also offering safe and flexible earnings opportunities to Instacart Personal Shoppers.

Instacart has become a lifeline for millions of people, and we’re building the team to help push our shopping cart forward. If you’re ready to do the best work of your life, come join our table.

Instacart is a Flex First team

There’s no one-size fits all approach to how we do our best work. Our employees have the flexibility to choose where they do their best work—whether it’s from home, an office, or your favorite coffee shop—while staying connected and building community through regular in-person events. Learn more about our flexible approach to where we work.

Overview

We're looking for experienced Security Engineers to join our fast moving security team. We work on a range of interesting and challenging problems, from supporting thousands of concurrent shoppers and processing millions of data points in real time, to developing and enhancing internal tools, addressing vulnerabilities and managing secrets.

Our goal is to run the world's most trusted and secure delivery platform. We work across all layers of our infrastructure to ensure we deploy trustworthy systems and protect our customers’, shoppers’, and partners’ data.

 

About the Team

You will be a key member of the Security Engineering team that is responsible for developing security-focused features and frameworks for Instacart in both production and infrastructure space. Ideally a hybrid builder/breaker, you will have an opportunity to lead high impactful projects across the platform and assist in defining the internal team processes. You will be directly influencing the security posture of many products and systems across the company. 

 

About the Job 

  • Design, implement and ship high-quality security features for the product and internal tools across Instacart with a strong sense of urgency and accountability such as:
    • Secrets & Vulnerability management
    • IAM and Zero Trust
    • Platform abuse prevention & mitigation 
    • Data analytics hardening 
  • Work closely with product managers, designers, data scientists, and peer engineering teams to define project requirements and execution plans.
  • Identify unaddressed areas of security weakness and help the teams come up with efficient and scalable solutions.
  • Provide software engineering resource for sister teams in the areas of infrastructure hardening, detection, and response
  • Participate in the team’s on-call by handling and running security incidents

 

About You

MINIMUM QUALIFICATIONS

  • 5+ years of experience in Security Engineering or related role
  • Strong knowledge of common back-end web technologies (such as Ruby on Rails, Python, Golang, SQL, etc.) in a large scale distributed system environment
  • Experience with threat modeling, security assessments, product security concepts, and security architecture reviews
  • An ability to make data-driven decisions & prioritize initiatives that improve key security metrics
  • An ability to balance a sense of urgency with shipping high-quality and pragmatic solutions.
  • Strong self-management and organizational skills
  • Experience developing tools and automation using common devops toolsets and programming languages

PREFERRED QUALIFICATIONS

  • Bachelor’s degree in Computer Science, Engineering, Math or related work experience
  • In depth knowledge on the best remediation techniques for different application vulnerabilities and the ability to explain them to product teams
  • An ability to create written work products and detailed technical documents to work effectively with cross functional teams and drive alignment on security objectives and plans.
  • Breaker experience, such as web/application penetration testing
  • Experience working with highly ephemeral environments
  • A security-related or architecture-related certification such as CISSP, OSCP, CEH

See more jobs at Instacart

Apply for this job

DoorDash is hiring a Remote Corporate Security Engineer

About the Team

Come help us build the world's most trusted on-demand, logistics engine for delivery! We're building a team of great minds to help us secure and maintain a 24x7, no downtime, global infrastructure system that powers DoorDash’s multi-sided marketplace of consumers, merchants, and drivers.

About the Role

The Corporate Security Engineering team is designing and building DoorDash’s next generation defense for the ever-changing landscape of the DoorDash corporate environment. From collaboration systems, endpoint hardening, AI proliferation in internal workflows and 3rd Party Services, to whatever the next big trend in the tech industry is, the Corporate Security Engineering team is responsible for making sure we have appropriate controls in place to keep customer and company data safe. More importantly, your north star is making security usable, breaking down bad habits and click fatigue in favor of solutions that improve security posture while enabling the business to move faster. Occasional travel is required for major planning meetings and to maintain supportive relationships with your direct reports.

You’re excited about this opportunity because you will…

  • Protect the DoorDash brand by making it harder for threat actors to impersonate our email, web presence, and overall brand
  • Build tooling to solve both security and usability problems, making it easier for people to do the right thing, and harder to do the wrong thing
  • Secure our brand integrity through securing communication channels and collaboration systems
  • Serve as an architect in solutioning, implementing and the productionalizing systems and services that interact with all classifications of corporate data
  • Manage vendor relationships, ensuring we’re using the product correctly and to its full capability 
  • Secure the endpoint-to-endpoint model, from device to remote resource, making sure ts is who they say they are and they are accessing what they’re supposed to be accessing
  • Work with employees, vendors, merchants, dashers and more to learn of their problem statements
  • Partner with IT as we continue to grow our device and identity solutions 
  • Translate policies and procedures into workflows and capabilities

We’re excited about you because…

  • Have 5+ years of security engineering with a focus in corporate systems or equivalent industry experience
  • You are a builder at heart, with a strong development background in Golang, Python or TypeScript
  • You have experience building and refining Data Loss Prevention (DLP) solutions and rulesets, reducing false positives
  • You have a successful track record implementing device security, attestation, and authorization
  • You get excited about securing services like Google, Okta, Slack, and preventing abuse through SPF, DKIM and DMARC posturing
  • You are an effective threat modeler, making sure integrations and business partners are held to a high security standard when connecting to our environment
  • You prioritize progress over perfection, understanding that iterative improvements often outperform waiting for ideal solutions.
  • Are adept at working in a very fast-paced, diverse environment and are comfortable wearing multiple hats to achieve strong security outcomes across multiple organizations

Nice to Have

Experience with these specific technologies or similar alternatives is not required but helpful.

  • Experience maintaining or contributing to open-source projects
  • Experience with Terraform, AWS and GCP
  • Experience with the lowest level of networking, deciphering a tcpdump with ease

About DoorDash

At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods.

DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more.

Our Commitment to Diversity and Inclusion

We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel.

Statement of Non-Discrimination: In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination.

Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.

If you need any accommodations, please inform your recruiting contact upon initial connection.

Compensation

The location-specific base salary range for this position is listed below.  Compensation in other geographies may vary.

Actual compensation within the pay range will be decided based on factors including, but not limited to, skills, prior relevant experience, and specific work location.  For roles that are available to be filled remotely, base salary is localized according to employee work location.  Please discuss your intended work location with your recruiter for more information.

DoorDash cares about you and your overall well-being, and that’s why we offer a comprehensive benefits package, for full-time employees, that includes healthcare benefits, a 401(k) plan including an employer match, short-term and long-term disability coverage, basic life insurance, wellbeing benefits, paid time off, paid parental leave, and several paid holidays, among others.

In addition to base salary, the compensation package for this role also includes opportunities for equity grants.

We expect this position to be filled by 7/9/2024.

California Pay Range:
$153,500$255,800 USD
Colorado Pay Range:
$145,000$230,300 USD
Hawaii Pay Range:
$145,000$217,400 USD
New Jersey Pay Range:
$145,000$255,800 USD
New York Pay Range:
$145,000$255,800 USD
Washington Pay Range:
$145,000$255,800 USD

See more jobs at DoorDash

Apply for this job

Webflow is hiring a Remote Staff Application Security Engineer

At Webflow, our mission is to bring development superpowers to everyone. Webflow is the leading visual development platform for building powerful websites without writing code. By combining modern web development technologies into one platform, Webflow enables people to build websites visually, saving engineering time, while clean code seamlessly generates in the background. From independent designers and creative agencies to Fortune 500 companies, millions worldwide use Webflow to be more nimble, creative, and collaborative. It’s the web, made better. 

 

We’re looking for a Staff Application Security Engineer to help us level up Webflow’s secure development practices ranging from secure coding, tooling, and improving procedures.

 

About the role 

  • Location: Remote-first (United States; BC & ON, Canada) 
  • Full-time 
  • Permanent
  • Exempt 
  • The cash compensation for this role is tailored to align with the cost of labor in different geographic markets. We've structured the base pay ranges for this role into zones for our geographic markets, and the specific base pay within the range will be determined by the candidate’s geographic location, job-related experience, knowledge, qualifications, and skills.
    • United States  (all figures cited below in USD and pertain to workers in the United States)
      • Zone A: $191,600 - $260,600
      • Zone B: $180,100 - $245,000
      • Zone C: $168,600 - $229,350 
    • Canada  (All figures cited below in CAD and pertain to workers in ON & BC, Canada)
      • CAD 217,000 - CAD 296,350
  • Please visit our Careers page for more information on which locations are included in each of our geographic pay zones. However, please confirm the zone for your specific location with your recruiter.

  • Reporting to the Manager, AppSec

 

As a Staff Application Security Engineer, you’ll … 

  • Collaborate with the Webflow engineering team to secure Webflow’s web application platform and ecosystem.
  • Bring security best practices to the software development lifecycle.
  • Work as part of a team to champion security standards while balancing business strategies and requirements.
  • Support Webflow’s security current and future compliance frameworks
  • Work to find security vulnerabilities through grey-box techniques, and propose solutions at the architecture and code level to mitigate findings.
  • Contribute code and architecture improvements to enable security within Webflow’s application for engineers.
  • Cross-train entry and mid-level application security engineers

 

In addition to the responsibilities outlined above, at Webflow we will support you in identifying where your interests and development opportunities lie and we'll help you incorporate them into your role.

 

About you 

You’ll thrive as a Staff Application Security Engineer if you:

  • Has 7+ years of experience in application security
  • Has led medium to large application security programs 
  • Has led and delivered multi-quarter/complex security projects
  • Has experience mentoring other application security engineers
  • Led application security roadmaps in collaboration with engineering teams and organizations.
  • Significant experience penetration testing, finding and developing high complexity application vulnerabilities.

 

Our Core Behaviors:

  • Obsess over customer experience.We deeply understandwhatwe’re building andwhowe’re building for and serving. We define the leading edge of what’s possible in our industry and deliver the future for our customers.
  • Move with heartfelt urgency.We have a healthy relationship with impatience, channeling it thoughtfully to show up better and faster for our customers and for each other. Time is the most limited thing we have, and we make the most of every moment.
  • Say the hard thing with care.Our best work often comes from intelligent debate, critique, and even difficult conversations. We speak our minds and don’t sugarcoat things — and we do so with respect, maturity, and care.
  • Make your mark.We seek out new and unique ways to create meaningful impact, and we champion the same from our colleagues. We work as ateamto get the job done, and we go out of our way to celebrate and reward those going above and beyond for our customers and our teammates.

Benefits & wellness

  • Equity ownership (RSUs) in a growing, privately-owned company
  • 100% employer-paid healthcare, vision, and dental insurance coverage for employees and dependents (full-time employees working 30+ hours per week), as well as Health Savings Account/Health Reimbursement Account, dependent care Flexible Spending Account (US only), dependent on insurance plan selection where applicable in the respective country of employment; Employees may also have voluntary insurance options, such as life, disability, hospital protection, accident, and critical illness where applicable in the respective country of employment
  • 12 weeks of paid parental leave for both birthing and non-birthing caregivers, as well as an additional 6-8 weeks of pregnancy disability for birthing parents to be used before child bonding leave (where local requirements are more generous employees receive the greater benefit); Employees also have access to family planning care and reimbursement
  • Flexible PTO with a mandatory annual minimum of 10 days paid time off for all locations (where local requirements are more generous employees receive the greater benefit), and sabbatical program
  • Access to mental wellness and professional coaching, therapy, and Employee Assistance Program
  • Monthly stipends to support health and wellness, smart work, and professional growth
  • Professional career coaching, internal learning & development programs
  • 401k plan and pension schemes (in countries where statutorily required) financial wellness benefits, like CPA or financial advisor coverage
  • Discounted Pet Insurance offering (US only)
  • Commuter benefits for in-office employees

Be you, with us

At Webflow, equality is a core tenet of our culture. We are an Equal Opportunity (EEO)/Veterans/Disabled Employer and are committed to building an inclusive global team that represents a variety of backgrounds, perspectives, beliefs, and experiences. Employment decisions are made on the basis of job-related criteria without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other classification protected by applicable law. Pursuant to the San Francisco Fair Chance Ordinance, Webflow will consider for employment qualified applicants with arrest and conviction records.

Stay connected

Not ready to apply, but want to be part of the Webflow community? Consider following our story on our Webflow Blog, LinkedIn, X (Twitter), and/or Glassdoor.

Please note:

To join Webflow, you'll need valid U.S. or Canadian work authorization depending on the country of employment.

If you are extended an offer, that offer may be contingent upon your successful completion of a background check, which will be conducted in accordance with applicable laws. We may obtain one or more background screening reports about you, solely for employment purposes.

For information about how Webflow processes your personal information, please reviewWebflow’s Applicant Privacy Notice

See more jobs at Webflow

Apply for this job

13d

Staff Cloud Security Engineer

TubiSan Francisco, CA; Remote
Designc++kubernetesAWS

Tubi is hiring a Remote Staff Cloud Security Engineer

Join Tubi (www.tubi.tv), Fox Corporation's premium ad-supported video-on-demand (AVOD) streaming service leading the charge in making entertainment accessible to all. With over 200,000 movies and television shows, including a growing library of Tubi Originals, 200+ local and live news and sports channels, and 455 entertainment partners featuring content from every major Hollywood studio, Tubi gives entertainment fans an easy way to discover new content that is available completely free. Tubi's library has something for every member of our diverse audience, and we're committed to building a workforce that reflects that diversity. We're looking for great people who are creative thinkers, self-motivators, and impact-makers looking to help shape the future of streaming.

About the Role:

The Tubi Security team is responsible for securing Tubi and Adrise applications and infrastructure. As a member of the Tubi Security team, the Staff Cloud Security Engineer will be responsible for securing the cloud infrastructure of both applications. Candidates for this should have a passion for reducing security risks in a cloud environment while building great partnerships with key stakeholders and engineers. 

Responsibilities:

  • Design, implement, and maintain secure architecture and infrastructure components, including networks, systems, and cloud environments, in accordance with industry best practices and regulatory requirements
  • Develop and deploy security controls and monitoring systems to detect and prevent security threats, intrusions, and vulnerabilities
  • Conduct and perform security reviews, threat models, and security assessments to identify and remediate security weaknesses
  • Build automation and tools for security fixes and policy enforcement
  • Participate in incident response, red/blue team exercises, and vulnerability triage 

Qualifications:

  • 8+ years of experience in cybersecurity with a focus on cloud and infrastructure security
  • Deep understanding of cloud security architecture (AWS preferred) and network security
  • Hands-on experience with SIEM, WAF and DDOS prevention tools
  • An understanding of security best practices, frameworks and principles such as OWASP Top 10, NIST CSF, SLSA Framework, and zero-trust
  • Great understanding of modern cloud technology components and deployment pattern such as containers, Kubernetes, infrastructure as code, etc
  • Experience performing threat models and risk assessments
  • Familiarity with compliance and privacy regulations such as SOX and GDPR
  • Excellent communication and problem solving skills with proven ability to collaborate effectively with technical and non-technical stakeholders

#LI-MQ1 

Pursuant to state and local pay disclosure requirements, the pay range for this role, with final offer amount dependent on education, skills, experience, and location is is listed annually below. This role is also eligible for an annual discretionary bonus, long-term incentive plan, and various benefits including medical/dental/vision, insurance, a 401(k) plan, paid time off and other benefits in accordance with applicable plan documents.

California, New York City, Westchester County, NY, and Seattle, WA
$181,000$259,000 USD
Colorado and Washington (excluding Seattle, WA)
$162,000$232,000 USD

Tubi is a division of Fox Corporation, and the FOX Employee Benefits summarized here, covers the majority of all US employee benefits.  The following distinctions below outline the differences between the Tubi and FOX benefits:

  • For US-based non-exempt Tubi employees, the FOX Employee Benefits summary accurately captures the Vacation and Sick Time.
  • For all salaried/exempt employees, in lieu of the FOX Vacation policy, Tubi offers a Flexible Time off Policy to manage all personal matters.
  • For all full-time, regular employees, in lieu of FOX Paid Parental Leave, Tubi offers a generous Parental Leave Program, which allows parents twelve (12) weeks of paid bonding leave within the first year of the birth, adoption, surrogacy, or foster placement of a child. This time is 100% paid through a combination of any applicable state, city, and federal leaves and wage-replacement programs in addition to contributions made by Tubi.
  • For all full-time, regular employees, Tubi offers a monthly wellness reimbursement.

Tubi is proud to be an equal opportunity employer and considers qualified applicants without regard to race, color, religion, sex, national origin, ancestry, age, genetic information, sexual orientation, gender identity, marital or family status, veteran status, medical condition, or disability. Pursuant to the San Francisco Fair Chance Ordinance, we will consider employment for qualified applicants with arrest and conviction records. We are an E-Verify company.

See more jobs at Tubi

Apply for this job

ServiceNow is hiring a Remote Senior Staff Product Security Engineer (SSDL)

Job Description

About Digital Technology & The SSO  

We’re not yesterday’s IT department, we're Digital Technology. The world around us keeps changing and so do we. We’re redefining what it means to be IT with a mindset centered on transformation, experience, AI-driven automation, innovation, and growth.    

We’re all about delivering delightful, secure customer and employee experiences that accelerate ServiceNow’s journey to become the defining enterprise software company of the 21st century. And we love co-creating, using, and highlighting our own products to do it.     

Ultimately, we strive to make the world work better for our employees and customers when you work in ServiceNow Digital Technology, you work for them.     

The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact   

Role  

As a Senior Staff Product Security Engineer on the ServiceNow SSDL team, you will collaborate with developers and software architects on highly technical solutions and help the organization build secure and resilient software. You will be threat modeling software products and services to identify potential risk and participate in architectural reviews of products in development.    

A key part of this position is to ensure the continued success of a large and growing security champions program. You will help mentor security champions and assist them in secure software design. As a Senior Staff Product Security Engineer, you will help security champions be successful. 

What you get to do in this role: 

  • Work on a wide range of technologies 

  • Work on complex architectural and technical challenges 

  • Participate in threat modeling activities 

  • Mentor and collaborate with development teams to adopt secure coding practices 

  • Work on strategic and highly visible security activities across the organization 

  • Be an advocate for security and participate in a security champions program 

Qualifications

To be successful in this role, we need someone who has: 

  • 10+ years of experience in software security (AppSec) 

  • 6+ years of experience in threat modeling software applications and services 

  • Expert-level knowledge in threat modeling methodologies such as STRIDE or PASTA and their applied use in fast-moving, iterative development lifecycles 

  • Expert-level knowledge of common web application vulnerabilities (OWASP Top 10) 

  • Developer-level proficiency in one or more languages - Python, Java, JavaScript, and Golang preferred 

  • Working knowledge of Machine Learning and taxonomies such as BIML that categorize known attacks on machine learning models 

  • In-depth knowledge of software design patterns and their security considerations 

  • Expertise in authentication and authorization standards including OAuth, OIDC, SAML, JWT, and PASETO 

  • Knowledge of symmetric and asymmetric cryptography, digital signatures, PKI, TLS, and cryptographic hash functions 

  • Knowledge of cloud native technologies including containers, Kubernetes, and services provided by AWS, GCP, and Azure 

  • Knowledge of static analysis (SAST), dynamic analysis (DAST), and software composition analysis (SCA) security tools 

  • Knowledge of OWASP ASVS, SCVS, and related verification standards 

  • Ability to work collaboratively in a highly distributed team 

  • Ability to communicate technical concepts to business stakeholders 

  • A passion for security 

 

#DTjobs  

#SecurityJobs 

See more jobs at ServiceNow

Apply for this job

ServiceNow is hiring a Remote Staff Information Security Engineer

Job Description

About Digital Technology & The SSO  

We’re not yesterday’s IT department, we're Digital Technology. The world around us keeps changing and so do we. We’re redefining what it means to be IT with a mindset centered on transformation, experience, AI-driven automation, innovation, and growth.   

We’re all about delivering delightful, secure customer and employee experiences that accelerate ServiceNow’s journey to become the defining enterprise software company of the 21st century. And we love co-creating, using, and highlighting our own products to do it.   

Ultimately, we strive to make the world work better for our employees and customers. When you work in ServiceNow Digital Technology, you work for them.   

The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact  

 

Please Note: This position will include supporting our US Federal customers. 

This position requires passing a ServiceNow background screening, USFedPASS (US Federal Personnel Authorization Screening Standards). This includes a credit check, criminal/misdemeanor check and taking a drug test.  

Any employment is contingent upon passing the screening.  Due to Federal requirements, only US citizens, US naturalized citizens or US Permanent Residents, holding a green card, will be considered. 

 

What you get to do in this role: 

  • Assess security risk and impact of issues pertaining to ServiceNow 

  • System Scanning and Vulnerability Management 

  • Partner with stakeholders to provide triage and remediation recommendations 

  • Partner with compliance teams to ensure appropriate level of risk management 

Qualifications

To be successful in this role you have: 

  • US Citizenship is recommended. Must be eligible for a Public Trust Position (PTP) to support US regulated environments. 

  • Minimum of 5 years relevant experience, including Vulnerability Management for Corporate and/or Cloud Systems 

  • Minimum of 3 years of experience with Vulnerability Management Scanning Tools (e.g., Tenable, Qualys, Rapid7, Wiz, etc.) 

  • Understanding and experience with Federal, PCI Compliance and Security Frameworks 

  • Familiarity with Container Solutions (e.g., Docker, Kubernetes, etc.) 

  • Minimum of 3 years experience with Infrastructure, Cloud, and Risk Assessment 

  • Fundamental understanding of Systems and Network Engineering 

  • Deep understanding of Network Communications OSI 

  • An analytical mind for problem solving, abstract thought, and defensive security tactics 

  • Strong interpersonal skills (written and oral communication) 

  • Experience with remote collaboration 

  • Ability to articulate complex issues to executives and customers 

  • Familiarity with ServiceNow Platform and Agile Methodologies 

  • Adaptable to evolving situations. 

  • Bachelor's Degree in Computer Science or equivalent experience 

#DTjobs  

#SecurityJobs 

 

 

JV20

For positions in California (outside of the Bay Area), we offer a base pay of $142,700 to $249,800, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs.  Compensation is based on the geographic location in which the role is located, and is subject to change based on work location. For individuals who will be working in the Bay Area, there is a pay enhancement for positions located in that geographical area; please contact your recruiter for additional information.

See more jobs at ServiceNow

Apply for this job

14d

Cybersecurity Consultant

DevoteamCité Mahrajène, Tunisia, Remote

Devoteam is hiring a Remote Cybersecurity Consultant

Description du poste

En tant que Cybersecurity Consultant, vous jouerez un rôle crucial dans la protection des systèmes d'information de nos clients:

Pentesting (Test d'intrusion):

Concevoir et réaliser des tests d'intrusion avancés sur les infrastructures informatiques, les applications web, les réseaux et les systèmes.

Analyser les vulnérabilités découvertes et proposer des solutions appropriées pour les corriger.

Rédiger des rapports détaillés sur les résultats des tests d'intrusion et présenter les conclusions aux parties prenantes.

SMSI (Système de Management de la Sécurité de l'Information):

Élaborer, mettre en œuvre et maintenir un SMSI conforme aux normes internationales telles que ISO 27001.

Effectuer des évaluations des risques et mettre en place des contrôles de sécurité adaptés.

Assurer la formation des employés sur les politiques de sécurité de l'information et s'assurer de leur conformité.

PSSI (Politique de Sécurité des Systèmes d'Information):

Développer et mettre en œuvre des politiques de sécurité des systèmes d'information conformes aux réglementations en vigueur.

Évaluer régulièrement l'efficacité des politiques de sécurité et apporter des ajustements en fonction de l'évolution des menaces.

Collaborer avec les équipes internes pour assurer la cohérence des politiques de sécurité à travers l'ensemble de l'organisation.

Veille Technologique:

Suivre les tendances et les évolutions dans le domaine de la cybersécurité.

Mettre à jour continuellement les connaissances techniques et rester informé des nouvelles méthodes d'attaque.

Coordination de Projets:

Coordonner et superviser la mise en œuvre des mesures de sécurité, en travaillant en étroite collaboration avec les équipes techniques et les parties prenantes.

Assurer le suivi des projets de cybersécurité et garantir leur conformité aux objectifs fixés.

Qualifications

  • Détenir un diplôme d'une grande école d'ingénieur, de commerce ou d'université en informatique, en génie ou en cybersécurité, ou posséder une expérience de travail pertinente dans la sécurité informatique.
  • L'obtention de certifications telles que CISSP, ISO27001, CompTIA Security+ ou SANS est un plus.

See more jobs at Devoteam

Apply for this job

Tucows is hiring a Remote Director, Information Security Operations

Job Application for Director, Information Security Operations at Tucows{"@context":"schema.org","@type":"JobPosting","hiringOrganization":{"@type":"Organization","name":"Tucows","logo":"https://s3-recruiting.cdn.greenhouse.io/external_greenhouse_job_boards/logos/400/487/300/resized/Tucows.png?1619639797"},"title":"Director, Information Security Operations","datePosted":"2024-03-08","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Toro

See more jobs at Tucows

Apply for this job

16d

Senior IAM Security Engineer

ExperianHeredia, Costa Rica, Remote
SailPointazurelinuxAWS

Experian is hiring a Remote Senior IAM Security Engineer

Job Description

The IAM Senior Security Engineer is required to support the Experian global Identity & Access Management team in the PAM (Privileged Access Management) space, handling differing technologies such as CyberArk PAS, CyberArk EPM, Centrify on Linux, Windows, and MAC environments globally across different regions, both on-premises and in cloud environments.

In this role, you will be responsible for vulnerability management, OS and application support, and availability. You will be held accountable for supporting the implementation of new functionalities on the above systems, creating internal documentation for those new functionalities, and supporting the existing processes associated with Privileged Access Management activities.

You will need to work closely with Cyber Security teams, service desk leads, systems engineering, network security, audit, application developers, and other internal systems administrators’ teams. Additionally, you will need to: 

Summary of Primary Responsibilities 

  • Perform critical analysis on information consolidated from multiple sources, identify, and resolve conflicts, and break down high-level information into actionable work plans. 
  • Support IAM transformation on IDM-PAM technology expansion by developing enhancements and new features driven by business requirements as well as internally identified opportunities for efficiency gain-automation. 
  • Resolve and identify root cause scenarios for any issues within our PAM platforms. 
  • Be responsible for system health, patching, and vulnerability support across different IAM systems across on-prem & cloud environments. 
  • Recommend adjustments to the technical requirements to adjust with agility to the business needs. 
  • Be responsible for minimizing-reducing interruption for the Organization within our IDM-PAM systems. 
  • Prioritize specifications based on business value and support implementation according to the timelines. 
  • Provide On-call support as required according to team support rotation. 
  • Support and implement compliance activities as needed to comply with different PAM controls. 

Qualifications

  • 4+ years of hands-on experience in IAM & PAM product support, such as CyberArk, Secret Server, Centrify, OKTA, Sailpoint, Saviynt, or similar. CyberArk is desired. 
  • Working knowledge of IAM concepts and technologies such as AD, Azure, LDAP protocols, authentication & authorization across on-prem and Cloud environments. 
  • Hands-on experience with Windows and Linux OS and common utilities to provide infrastructure support and implement PAM controls, especially on the UNIX side. 
  • Background and understanding of Cloud concepts on AWS, AZURE, or GCP is required. 
  • Strong understanding of networking concepts such as TCP-IP to troubleshoot and support application issues. 
  • Good understanding of modern PAM-IDM concepts and best practices. 
  • Good knowledge of the Incident Response lifecycle, ITIL concepts, and the ability to work independently with minimum supervision. 
  • Ability to thrive under pressure. 

See more jobs at Experian

Apply for this job

Fastly is hiring a Remote Senior Security Engineer - Detection and Response

Fastly helps people stay better connected with the things they love. Fastly’s edge cloud platform enables customers to create great digital experiences quickly, securely, and reliably by processing, serving, and securing our customers’ applications as close to their end-users as possible — at the edge of the Internet. The platform is designed to take advantage of the modern internet, to be programmable, and to support agile software development. Fastly’s customers include many of the world’s most prominent companies, including Vimeo, Pinterest, The New York Times, and GitHub.

We're building a more trustworthy Internet. Come join us.

As a Senior Security Engineer on our Detection and Response team, you will help detect and respond to threats for one of the biggest online platforms in the world that handles massive amounts of traffic at very low latency.

We are looking for a teammate with expertise in both security engineering and operations and that values the complement between the two. You will have the opportunity to build and integrate tooling and detections, as well as investigate threats and lead incidents. As part of the larger Security organization, we make risk-informed decisions and prioritize automations to help us scale. In this role, you will help design, build, and mature our detection and response program, enabling rapid detection and effective response to threats against Fastly.

What You'll Do:

  • Develop detections and other analytics to identify threats across cloud, corporate, and edge environments
  • Partner closely with Engineering, Security Architecture, Risk Management, Compliance, and other teams to prioritize detections and delivery of other security initiatives
  • Triage and investigate security threats and lead security incidents
  • Research, evaluate, implement, and maintain a variety of custom and commercial security tools, such as Endpoint Detection and Response (EDR), anti-phishing, and Security Information and Event Monitoring (SIEM)
  • Develop strategies, frameworks, designs, automations, metrics, and processes to support the maturity of the Detection and Response program
  • Develop and maintain incident response playbooks and other detection and response documentation
  • Conduct threat hunts to discover unknown malicious activity across our environment
  • Participate in our on-call rotations
  • Mentor other team members and contribute to larger Security initiatives

What We're Looking For: 

At Fastly we value a diversity of voices. The following is not a laundry list, but to be effective in this role you should possess most of the following and an interest in learning more about the rest:

  • Experience in utilizing Splunk to include investigating threats, developing metrics and dashboards, normalizing data feeds, and integrating with other tools
  • Familiarity of attacker tactics, techniques, and procedures (TTPs) and investigating advanced threats
  • Experience in evaluating, implementing, configuring, tuning, and maintaining Endpoint Detection and Response solutions
  • Experience with at least one major public cloud infrastructure, such as Amazon Web Services (AWS) or Google Cloud Platform (GCP)
  • Experience in effectively leading large and complex security incidents from detection to remediation
  • Familiarity with modern security frameworks and best practices, such as the MITRE ATT&CK framework and NIST CSF
  • Proficiency in one or more general purpose programming languages such as Python, Ruby, Go, or Rust
  • Experience with Linux administration at scale, associated intrusion/manipulation techniques, and standard methodologies for system hardening and process isolation

We’ll be super impressed if you have experience in any of these: 

  • Developed “detections-as-code”
  • Conducted threat hunts
  • Published research on detection engineering or threat intelligence
  • Developed automations to improve security operations
  • Familiarity with content delivery networks (CDN), edge cloud platforms, or other Fastly products and services

Work Hours:

This position will require you to be available during core business hours and support an on-call rotation. 

Work Locations & Travel Requirements: 

This position is open to both hybrid and remote work. 

The preferred locations for this position are:

  • San Francisco, CA 
  • Los Angeles, CA 
  • Denver, CO 
  • New York City, NY

Fastly currently embraces a largely hybrid model for most roles which allows employees flexibility to split their time between the office and home.  

We are willing to consider remote candidates in US (Remote). 

This position may require travel as required by your role or requested by your manager.

Salary: 

The estimated salary range for this position is $155,370 to $194,210.

Starting salary may vary based on permissible, non-discriminatory factors such as experience, skills, qualifications, and location.

This role may be eligible to participate in Fastly’s equity and discretionary bonus programs.

Benefits: 

We care about you. Fastly works hard to create a positive environment for our employees, and we think your life outside of work is important too. We support our teams with great benefits that start on the first day of your employment with Fastly. Curious about our offerings? 

We offer a comprehensive benefits package including medical, dental, and vision insurance. Family planning, mental health support along with Employee Assistance Program, Insurance (Life, Disability, and Accident), a Flexible Vacation policy and up to 18 days of accrued paid sick leave are there to help support our employees. We also offer 401(k) (including company match) and an Employee Stock Purchase Program. For 2024, we offer 10 paid local holidays, 11 paid company wellness days. 

Why Fastly?

  • We have a huge impact. Fastly is a small company with a big reach. Not only do our customers have a tremendous user base, but we also support a growing number of open source projects and initiatives. Outside of code, employees are encouraged to share causes close to their heart with others so we can help lend a supportive hand.

  • We love distributed teams. Fastly’s home-base is in San Francisco, but we have multiple offices and employees sprinkled around the globe. As a new hire, you will be able to attend our IN-PERSON new hire orientation in our San Francisco office! It is an exciting week-long experience that we offer to new employees to build connections with colleagues across Fastly, participate in hands-on learning opportunities, and immerse yourself in our culture firsthand. 

  • We value diversity. Growing and maintaining our inclusive and diverse team matters to us. We are committed to being a company where our employees feel comfortable bringing their authentic selves to work and have the ability to be successful -- every day.

  • We are passionate. Fastly is chock full of passionate people and we’re not ‘one size fits all’. Fastly employs authors, pilots, skiers, parents (of humans and animals), makeup geeks, coffee connoisseurs, and more. We love employees for who they are and what they are passionate about.

We’re always looking for humble, sharp, and creative folks to join the Fastly team. If you think you might be a fit please apply!A fully completed application and resume or CV are required when applying.

Fastly is committed to ensuring equal employment opportunity and to providing employees with a safe and welcoming work environment free of discrimination and harassment. Our employment decisions are based on business needs, job requirements and individual qualifications.All qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, family or parental status, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances.

Consistent with the Americans with Disabilities Act (ADA) and federal or state disability laws, Fastly will provide reasonable accommodations for applicants and employees with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact your Recruiter, or the Fastly Employee Relations team atcandidateaccommodations@fastly.comor 501-287-4901. 

Fastly collects and processes personal data submitted by job applicants in accordance with our Privacy Policy. Please see our privacy notice for job applicants.

See more jobs at Fastly

Apply for this job

Mindoula Health Inc is hiring a Remote IT Security Engineer

The IT Security Engineer will be responsible for maintaining and improving the security of our production environments and systems, including cloud. We are looking for a motivated, passionate, and hands-on expert in security operations and architecture. Our ideal candidate will drive the reduction of risk while enabling the business to move quickly and safely.

Location...

This is a 100% remote position in the United States. Applicants must be authorized to work for any employer in the US. We are unable to sponsor or take over sponsorship of an employment Visa at this time.

What you'll do...

  • Discover, validate, and remediate security issues across IaaS, SaaS, and PaaS systems according to industry standards.
  • Build, deploy, document, and manage production security tools and services to monitor networks, endpoints, and cloud workloads.
  • Design, document, and operate scalable processes to provision cloud access and maintain least-privilege.
  • Build and maintain low-touch, production-quality cloud infrastructure using state-of-the-art enterprise DevSecOps practices.
  • Design, create, document, review, and consult on processes and tools that enable the engineering teams to build secure, reproducible, and productive container/VM/bare metal images.
  • Partner closely with security leadership, compliance, and engineering to execute on security strategies.
  • Assess and propose solutions regarding security to leadership.
  • Perform architectural and design reviews through the security lens and provide timely, actionable requirements and recommendations.
  • Perform security reviews of applications, systems, and third parties.
  • Perform security auditing and compliance functions in support of security frameworks, such as NIST and HITRUST.

What you'll need...

  • Bachelor’s degree in information technology preferred.
  • 5 years of experience in the security field, with 3+ years of experience working with AWS or Azure
  • 2+ years of Linux experience preferred.
  • Excellent communication and presentation skills.
  • A positive attitude and the ability to work effectively in a team-oriented environment and independently.
  • Ability to translate business needs into requirements and implement solutions.

About Mindoula...

Mindoula is a next generation population health management company that identifies, engages, and serves populations with complex behavioral health, medical, and social challenges across the continuum of care. By using technology to “scale the human connection,” Mindoula helps health plans, health systems, hospitals, and provider groups extend their reach and achieve their value-based service delivery goals. At Mindoula, we address the full range of behavioral health challenges. We deploy tech-enabled teams of case managers, care managers, community health workers, peer support specialists, therapists, and psychiatrists to provide 24/7 support to even the most complex and underserved behavioral health populations.

See more jobs at Mindoula Health Inc

Apply for this job

Dataprise is hiring a Remote Cyber Security Engineer

Cyber Security Engineer - Career Page

See more jobs at Dataprise

Apply for this job

Windmill Smart Solutions is hiring a Remote Chief Information Security Officer (CISO)

Chief Information Security Officer (CISO) - Windmill Smart Solutions - Career Page

See more jobs at Windmill Smart Solutions

Apply for this job

20d

Cyber Security Engineer - Vulnerability Management

TestProsRemote (with some travel to Norfolk VA Area), VA
swiftqarubyc++

TestPros is hiring a Remote Cyber Security Engineer - Vulnerability Management

Cyber Security Engineer - Vulnerability Management - TestPros - Career PageNon-citizen al

See more jobs at TestPros

Apply for this job

Talent Acquisition Concepts is hiring a Remote Cybersecurity Engineer

Looking for challenging and rewarding work alongside some the best in the business? Energized by finding new solutions and technologies that benefit your clients, improve efficiency, and make buildings and the environment better? Eager to work in a setting where you can make a difference, be involved from strategy through implementation, and can see your ideas come to life? Do you thrive in an environment where initiative is rewarded with opportunity? If your answer to these questions was a “Yes” then our client may be the right fit for you.

And a few more things -- are you flexible in your work schedule and work location? Our work allows for some work from home, but it also requires us to be hands-on for our clients when and where they need us. Are you up for a little adventure? Our client performs work in some interesting places well worth visiting, and you might want in on that.

The Work:

The Cybersecurity Engineer is a Subject Matter Expert in applying the Risk Management Framework (RMF) and will be responsible for managerial direction and development of one or more projects under the supervision of the Cybersecurity Program Manager. The Project Manager will manage and interface with key clients and cultivate effective relationships with existing and potential stakeholders and partners to develop business, prepare proposals, negotiate contracts, and oversee the successful delivery of projects. This position works collaboratively with the Program Manager and other team members to support network discovery, developing hardware/software lists, and developing network diagrams. As part of a multi-disciplinary team the Project Manager will advise, implement, and manage cybersecurity and control system solutions for SCADA, HVAC, Fire Alarm/Life Safety Systems, and Electronic Security Systems and ensure projects are aligned, and closely with leadership in the successful growth and management of the program, ensuring that financial goals and objectives are maximized.

  • Oversee the application of the RMF to client systems
  • Provide project capabilities in design, network system documentation, and identification of FRCS and IT components
  • Lead and perform logical scans to locate FRCS components and assess network architecture and connectivity
  • Lead the completion of detailed network diagrams and network dataflow diagrams
  • Implement risk management programs for our federal clients
  • Enhance cyber awareness with clients and project teams
  • Work alongside federal clients to help them mitigate risk with the use of continuous monitoring and incident response
  • Establish security controls to ensure the protection of client systems
  • Implement cutting edge security tools for our federal clients
  • Create, implement, and maintain project plans for on-going and new initiatives
  • Document meetings minutes and action items and disseminate to meeting participants
  • Monitor status of action items through effective tracking tools and communication of progress and assist with closing of action items
  • Create, draft, and review project documentation

Here's What You Need:

  • 7+ years of experience performing network discovery, developing hardware/software lists, and developing network diagrams.
  • Strong leadership skills with experience managing teams
  • In-depth experience implementing the Risk Management framework
  • IT/OT network design experience
  • Experience designing and configuring servers, switches, workstations.
  • Experience designing and programming control system devices.
  • Experience working with RMF and NIST 800-53
  • Experience working with UFGS 25 05 11
  • Experience working with cyber security tools
  • Bachelor’s Degree in computer science, cybersecurity, or related engineering field or equivalent combination of training and experience
  • AT Level II Certification Required (CCNA-Security, GICSP, GSEC, Security+ CE, or SSCP certification), AT Level III Certification Preferred (CISSP)
  • Certifications in Cisco, Juniper, Moxa, and/or other Network Switches Preferred
  • Certifications in MS Windows Server, Active Directory, Enterprise OS Preferred
  • Certifications in Linux Operating Systems Preferred
  • Project Management Professional (PMP) Preferred
  • Registered Communications Distribution Designer (RCDD) Preferred

Equal Employment Opportunity Statement

Talent Acquisition Concepts is an Equal Opportunity Employer. We do not discriminate against anyone because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation.

Talent Acquisition Concepts is committed to providing veteran employment opportunities to our service men and women.

Other Employment Statements

Applicants for employment must be US citizens and be able to pass security screens, up to Top Secret level, due to the nature of who we work for.

Applicants must be able to work a full day on a project site, combined sitting, standing, walking, and in front of the monitor. We can guarantee you won’t be bored!

Applicants must be able to stand, climb ladders, stairs, and get to wherever the problem is so you can see it for yourself.

See more jobs at Talent Acquisition Concepts

Apply for this job

Samsara is hiring a Remote Senior Security Operations Engineer

Who we are

Samsara (NYSE: IOT) is the pioneer of the Connected Operations™ Cloud, which is a platform that enables organizations that depend on physical operations to harness Internet of Things (IoT) data to develop actionable insights and improve their operations. At Samsara, we are helping improve the safety, efficiency and sustainability of the physical operations that power our global economy. Representing more than 40% of global GDP, these industries are the infrastructure of our planet, including agriculture, construction, field services, transportation, and manufacturing — and we are excited to help digitally transform their operations at scale.

Working at Samsara means you’ll help define the future of physical operations and be on a team that’s shaping an exciting array of product solutions, including Video-Based Safety, Vehicle Telematics, Apps and Driver Workflows, Equipment Monitoring, and Site Visibility. As part of a recently public company, you’ll have the autonomy and support to make an impact as we build for the long term. 

Recent awards we’ve won include:

Glassdoor's Best Places to Work 2024

Best Places to Work by Built In 2024

Great Place To Work Certified™ 2023

Fast Company's Best Workplaces for Innovators 2023

Financial Times The Americas’ Fastest Growing Companies 2023

We see a profound opportunity for data to improve the safety, efficiency, and sustainability of operations, and hope you consider joining us on this exciting journey. 

Click hereto learn more about Samsara's cultural philosophy.

About the role:

As a member of our Security Operations Team, you will collaborate with a global team of engineers to monitor and respond to security events, lead security incidents as Incident Commander, and lead digital forensic investigations in support of Employee Relations, Legal, Compliance or Information Security cases.

You will collaborate with leadership and a diverse team of engineers on security initiatives across the company including shaping the future of our digital forensic capabilities at Samsara.

Although you will be highly focused on digital forensics work, you will also have the opportunity to create automated workflows, and assist in process refinement and implementation. Above all, your focus is bringing Security expertise to the table in a collaborative, humble, and practical manner.

This role requires availability during PST business hours, including being on call.

You should apply if:

  • You want to impact the industries that run our world: Your efforts will result in real-world impact—helping to keep the lights on, get food into grocery stores, reduce emissions, and most importantly, ensure workers return home safely.
  • You are the architect of your own career: If you put in the work, this role won’t be your last at Samsara. We set up our employees for success and have built a culture that encourages rapid career development, countless opportunities to experiment and master your craft in a hyper growth environment.
  • You’re energized by our opportunity: The vision we have to digitize large sectors of the global economy requires your full focus and best efforts to bring forth creative, ambitious ideas for our customers.
  • You want to be with the best: At Samsara, we win together, celebrate together and support each other. You will be surrounded by a high-caliber team that will encourage you to do your best. 

Click hereto learn more about Samsara's cultural philosophy. 

In this role, you will: 

Monitor security events and provide technical analysis on alerts

  • Lead information security incidents by developing the incident response strategy, lead the execution through incident closure, while providing incident updates to key stakeholders throughout the incident
  • Mentor and growstaff on engineering projects and digital forensic investigations
  • Assist with developingSamsara’s digital forensic capabilities
  • Deliver security guidance clearly and concisely for cloud and enterprise infrastructure initiatives
  • Coordinate the building of services, capabilities, integrations, and implementations of technologies to support security operations and incident response
  • Champion, role model, and embed Samsara’s cultural principles (Focus on Customer Success, Build for the Long Term, Adopt a Growth Mindset, Be Inclusive, Win as a Team) as we scale globally and across new offices

Minimum requirements for the role:

  • 4+ years of experience in host-level digital forensics, endpoint detection & response, and forensic analysis tools (e.g. EnCase, FTK, Volatility)
  • One of more of the following certifications:
    • GIAC Certified Incident Handler (GCIH)
    • GIAC Certified Forensic Examiner (GCFE)
    • GIAC Certified Forensic Analyst (GCFA)
    • EnCase Certified Examiner (EnCE)
    • Certified Forensic Computer Examiner (CFCE)
  • Ability to communicate investigative findings and strategies to technical staff, executive leadership, and legal
  • Ability to build scripts or tools to support Samsara’s incident investigation processes, with a proficiency in Python
  • Mentor and train security operation engineers on data collection, analysis and reporting technical analysis
  • Experience designing and implementing engineering solutions and tools for digital forensic capabilities
  • Practical experience acting as a lead during security incident response, including triage, and coordinating across teams

An ideal candidate also has:

  • Experience in security competitions, CTFs, and/or testing platforms
  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
  • Splunk certifications

Samsara’s Compensation Philosophy:Samsara’s compensation program is designed to deliver Total Direct Compensation (based on role, level, and geography) that is at or above market. We do this through our base salary + bonus/variable + restricted stock unit awards (RSUs) for eligible roles.  For eligible roles, a new hire RSU award may be awarded at the time of hire, and additional RSU refresh grants may be awarded annually. 

We pay for performance, and top performers in eligible roles may receive above-market equity refresh awards which allow employees to achieve higher market positioning.

The range of annual base salary for full-time employees for this position is below. Please note that base pay offered may vary depending on factors including your city of residence, job-related knowledge, skills, and experience.
$135,482$204,930 USD

At Samsara, we welcome everyone regardless of their background. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, gender, gender identity, sexual orientation, protected veteran status, disability, age, and other characteristics protected by law. We depend on the unique approaches of our team members to help us solve complex problems. We are committed to increasing diversity across our team and ensuring that Samsara is a place where people from all backgrounds can make an impact.

Benefits

Full time employees receive a competitive total compensation package along with employee-led remote and flexible working, health benefits, Samsara for Good charity fund, and much, much more. Take a look at our Benefits site to learn more.

Accommodations 

Samsara is an inclusive work environment, and we are committed to ensuring equal opportunity in employment for qualified persons with disabilities. Please email accessibleinterviewing@samsara.com or click hereif you require any reasonable accommodations throughout the recruiting process.

Flexible Working 

At Samsara, we embrace a flexible working model that caters to the diverse needs of our teams. Our offices are open for those who prefer to work in-person and we also support remote work where it aligns with our operational requirements. For certain positions, being close to one of our offices or within a specific geographic area is important to facilitate collaboration, access to resources, or alignment with our service regions. In these cases, the job description will clearly indicate any working location requirements. Our goal is to ensure that all members of our team can contribute effectively, whether they are working on-site, in a hybrid model, or fully remotely. All offers of employment are contingent upon an individual’s ability to secure and maintain the legal right to work at the company and in the specified work location, if applicable.

Fraudulent Employment Offers

Samsara is aware of scams involving fake job interviews and offers. Please know we do not charge fees to applicants at any stage of the hiring process. Official communication about your application will only come from emails ending in ‘@samsara.com’ or ‘@us-greenhouse-mail.io’. For more information regarding fraudulent employment offers, please visit our blog post here.

Apply for this job

Latitude, Inc. is hiring a Remote Cyber Security Analyst (Remote)

Cyber Security Analyst (Remote) - Latitude, Inc. - Career Page

See more jobs at Latitude, Inc.

Apply for this job

In All Media Inc is hiring a Remote Cyber Security Engineer

The candidate must be proficient in:

  • Understanding and background with Intrusion Detection Systems and SIEM products.
  • Background in Incident Response.
  • Understanding and background with Firewalls and Networking.
  • Background in multiple Operating Systems and Cloud Environments. Linux, Windows, AWS, Azure.
  • Excellent written and verbal communication skills in English.

Key Responsibilities

  • Conduct or coordinate vulnerability scans, and penetration tests on systems, document findings, and recommend risk mitigation strategies.
  • Operate, administer and monitor network and host-based intrusion detection/prevention systems.
  • Assist other technical support staff in identifying and implementing appropriate security safeguards, including patch application and anti-malware strategies.
  • Analyze network traffic, intrusion attempts, activity logs, and system alerts for trends, anomalies, and potential security breaches.
  • Develop scripts, tools, and procedures to automate scans, assessments, and other monitoring and discovery activities.
  • Perform other duties as assigned.

See more jobs at In All Media Inc

Apply for this job

22d

Security Analyst

ImpervaHybrid Remote, Vancouver, Canada

Imperva is hiring a Remote Security Analyst

Security Analyst 

Cyber Security is a big deal. It’s in the news, growing rapidly, a critical tool for every company, and our specialty.

The Opportunity:

Imperva’s Security Analyst is tasked with tackling and solving our most complex field issues for enterprise customers in combating automated threats targeting their web applications, API’s, and mobile applications. As a Security Analyst, you will be analyzing large amounts of traffic to websites to find global correlations and patterns. Based on the conclusions drawn from the analysis, the analyst collaborates with the customer and internal teams to implement mitigation strategies to stop automated website attacks. An important component of the position is to work with clients, investigate anomalies, and provide easily consumable but detailed evidence for all actions taken.

The position requires working from Imperva's Vancouver office and working on Saturday or Sunday. A typical work schedule could look like Tuesday through Saturday or Sunday through Thursday. Work Days are flexible as long as they are consistent and cover Saturday and/or Sunday.

Role and Responsibilities:

  • Become an Imperva Expert--you will know everything there is to know about how Imperva’s Bot Detection platform works, as well as how bots and bot operators attack websites
  • Work with Imperva customers to fully understand the issues automated attacks cause to their business and devise strategies to mitigate or eliminate the issues
  • Serve as a security expert analyzing customer’s network traffic, application designs, applications and provide recommendations to mitigate Bot attacks.
  • Regularly work with the customers on their specific security-related engagements per their billable hours.
  • Participate in presentations with customers on a regular basis.
  • Work with Imperva’s internal threat research, data science, and product teams by delivering actionable intelligence that will inform future product enhancements
  • Use data visualization tools to create consumable reports to quickly validate findings and demonstrate the efficacy of actions taken
  • Be a trusted advisor, take ownership of all problems you encounter, and be a team player

Requirements:

  • Minimum of 3-5 years of experience in a Cybersecurity or Bot Management space.
  • Minimum bachelor’s degree in Computer Science, Information Management or relevant technical degree
  • Excellent interpersonal, presentation, and customer skills
  • Intermediate to advanced SQL skills.
  • Experience with, or an appetite to learn, data visualization tools like Tableau and Looker
  • Experience with basic scripts in one or more languages such as Python, Bash, or Go
  • You have a knack for automating redundant tasks, streamlining repetitive processes, and are always looking for opportunities to scale operations
  • Ability to lead and work independently as well as tightly with a team
  • Prefer a candidate with a degree of flexibility to take appointments evenings and mornings, as required
  • Proficiency in English language required for effective communication within and English speaking environment
  • Full time position

Business Address/ Work Location: 700 W Pender St suite #410, Vancouver, BC V6C 1G8, Canada

Contact information: Phone: +1 778 657 5315

The anticipated annual base salary range for this position is CAD $97,200- 105,000. The salary offered will be determined based on the candidate’s experience, knowledge, skills, other qualifications, and location.  

Our Company:
Imperva is an analyst-recognized, cybersecurity leader—championing the fight to secure data and applications wherever they reside. Once deployed, our solutions proactively identify, evaluate, and eliminate current and emerging threats, so you never have to choose between innovating for your customers and protecting what matters most. Imperva—Protect the pulse of your business. Learn more: www.imperva.com, our blog, on Twitter.

Rewards:
Imperva offers a competitive compensation package that includes base salary, medical, flexible time off and more. It’s an exciting time to work in the security space. Check out our products and services at www.imperva.com and career opportunities at www.imperva.com/careers

Legal Notice:
Imperva is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, ancestry, pregnancy, age, sexual orientation, gender identity, marital status, protected veteran status, medical condition or disability, or any other characteristic protected by law.   



#LI-Hybrid

#LI-VL1

See more jobs at Imperva

Apply for this job


Other Job subscriptions you might be insterested in