Staff Security Engineer

🕒 il y a 9 jours

🇺🇸 États-Unis – Télétravail

💵 $160 000 - $200 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Forward Financing

Forward Financing

201 - 500 employés

Fondée en 2012

💸 Finance

💳 Fintech

🤝 B2B

💰 €250 000 000 Debt Financing en 2021-05

Finance • Fintech • B2B

Forward Financing est une entreprise qui propose des solutions de financement rapides et flexibles pour les petites entreprises. Elle se spécialise dans l'octroi de capital aux petites entreprises qui peuvent rencontrer des difficultés à obtenir des financements auprès des institutions financières traditionnelles. Avec un processus de demande simple, les entreprises peuvent recevoir des décisions de financement en quelques heures et peuvent voir les fonds transférés le jour même. Leur modèle de financement basé sur les revenus permet d'adapter les paiements en fonction du chiffre d'affaires de l'entreprise. Forward Financing vise à offrir des conditions claires et transparentes, assurant la satisfaction et la confiance du client. Elle est reconnue pour son excellent service et est fortement appréciée par les propriétaires de petites entreprises.

Description

• Own the end-to-end architecture of Forward’s security technology stack – the platforms, tooling, data pipelines, and integrations that power AppSec, SecOps, and GRC – and make sure it works cleanly with the broader Engineering, IT, and Infrastructure ecosystem. • Set the technical direction for how we evaluate, integrate, standardize, and retire security tools, defining the reference architectures and standards the department builds on. • Act as the shared technical foundation for all three security functions: helping developers build security testing into how software ships, giving the operations team clean and reliable data to detect and investigate threats, and giving the compliance team the evidence and reporting they need to prove that controls are working. • Partner with Engineering, IT, and Infrastructure to build security into shared platforms – cloud (AWS), identity, CI/CD, endpoints, and SaaS – so security is native rather than bolted on. • Lead the evaluation, proof-of-concept, and rollout of new security technologies; consolidate overlapping tools and reduce operational toil with defensible build-versus-buy recommendations. • Use infrastructure-as-code and detection-as-code to make security configurations, platform hardening, and cloud-native controls automated, versioned, and repeatable. • Architect our centralized logging and detection data foundation (SIEM and supporting pipelines) so a single high-quality data source serves detection, investigation, and audit needs. • Architect the technical underpinnings of our identity governance and role-based access control programs, plus the automation that keeps access defensible as we grow. • Keep the security architecture aligned to frameworks like CIS Controls, ISO 27001, SOC 2, and NIST, so it stays defensible and auditable. • Provide senior technical support during major incidents, and turn lessons learned into lasting architectural improvements. • Grow the bar for the whole department – mentoring and technically guiding engineers across AppSec, SecOps, and GRC on design quality, secure defaults, and engineering practices.

🎯 Exigences

• Typically 7 or more years in security engineering, security architecture, detection engineering, or security operations, including designing systems that span multiple security domains. • Demonstrated experience owning or heavily shaping the architecture of a security technology stack – how platforms, data, and controls fit together – not just operating a single tool. • Deep, hands-on cloud security expertise (AWS required; GCP or Azure a plus), including control plane monitoring, IAM, network architecture, and infrastructure log analysis. • A track record of integrating security tooling and controls into broader Engineering and IT ecosystems (CI/CD, identity, endpoints, and SaaS). • Fluency across at least two of the three domains this role serves – AppSec, SecOps, and GRC – with enough literacy in the third to design for it. • Experience with infrastructure-as-code and/or detection-as-code (e.g., Terraform and CI/CD pipelines for security configurations and detection logic). • Working knowledge of security frameworks such as CIS Controls, ISO 27001, SOC 2, and NIST, and how architecture maps to control and audit requirements. • Experience with modern programming languages such as Ruby, Python, or Go, sufficient to build automation and integrations. • Ability to communicate risk and technical direction crisply to engineers and executives alike. • Typically has a Bachelor’s Degree in Computer Science, Physics, or an equivalent technical degree, or equivalent industry experience.

🏖️ Avantages

• Flexibility is a top priority: Our employees are empowered to choose where they want to work (whether that’s from home, in the office, or a combination of both) with flexible hours.

Postuler Maintenant

Emplois Similaires

🕒 il y a 9 jours

Voyager Technologies

501 - 1000

🏭 Fabrication

📦 Logistique

🎖️ Défense

Vice President of Growth developing growth strategies and business development for space, defense, and national security. Engaging with US government clients for mission-critical solutions.

🇺🇸 États-Unis – Télétravail

💵 $225 000 - $275 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 9 jours

OKSI

51 - 200

🎖️ Défense

🚀 Aérospatiale

🤖 Intelligence artificielle

Product Security Engineer at Opto-Knowledge Systems Inc owning security across hardware and software systems. Leading threat modeling and compliance for product portfolio with collaboration across teams.

🇺🇸 États-Unis – Télétravail

💵 $154 000 - $210 000 / an

💰 €206 500 Grant - Opto-Knowledge Systems en 2024-01

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

Linux

RTOS

🕒 il y a 9 jours

Grow Therapy

201 - 500

🏥 Santé

⚕️ Assurance santé

🏪 Place de marché

Staff Engineer, Security architecting secure infrastructure at Grow Therapy. Leading multi-year roadmap for security initiatives to protect customers and empower engineering organization.

🇺🇸 États-Unis – Télétravail

💵 $182 000 - $288 000 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 9 jours

Valiant Solutions

201 - 500

💼 Conseil

🎖️ Défense

🔒 Cybersecurity

Security Architect leading the development of security architecture guidance for on-premise and cloud platforms at Valiant Solutions. Supporting cybersecurity design for a large government agency.

🇺🇸 États-Unis – Télétravail

💵 $150 000 - $160 000 / an

⏰ Temps Plein

🟠 Senior

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 9 jours

Lexitas

501 - 1000

⚖️ Juridique

☁️ SaaS

🤝 B2B

Vice President of Information Security building, scaling, and modernizing security programs at Lexitas. Collaborating with teams to leverage AI and improve security operations.

🇺🇸 États-Unis – Télétravail

💵 $200 000 - $230 000 / an

💰 Debt financing en 2016-10

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis