Security Engineer – Security Operations, Zero Trust

Job not on LinkedIn

November 6

🇺🇸 United States – Remote

💵 $100k - $140k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

Apply Now
Logo of BLACKCLOAK

BLACKCLOAK

Cybersecurity • SaaS

BLACKCLOAK is an award-winning concierge cybersecurity and privacy platform focused on providing digital executive protection services. The platform is designed to protect individuals, families, and corporations from cyber threats by securing personal devices, home networks, and private data. BLACKCLOAK serves high-value individuals, including executives and companies, offering tailored cybersecurity solutions to mitigate risks associated with internet-connected devices and personal data vulnerabilities. With a comprehensive app and dashboard, BLACKCLOAK provides real-time security monitoring and incident response, helping to safeguard digital lives against cyberattacks.

11 - 50 employees

🔒 Cybersecurity

☁️ SaaS

💰 $11M Series A on 2021-07

📋 Description

• Review, design, and implementation of new Security Tools - support administration across tools such as SIEM, EDR, CNAAP, Email Security, and others. • Support security and risk assessments for new tools, vendors, and relationships with broader Security and IT team. • Assist in development of new threat detections, playbooks, and automated response/remediation • Support triage and response of security alerts, as an escalation point from the broader team. • Participate in supporting security on-call rotation • Strengthen Zero Trust posture by expanding usage of Cloudflare WARP, WAF, other Zero Trust tooling and principles • Collaborate with the IT team to enhance endpoint security policies within EDR tools such as SentinelOne, Crowdstrike, as well as secure hardening standards into MDM • Support design and implementation of IAM best practices/principles for workforce and client identity, leveraging tools such as; Google IDP, Okta, Auth0, Zitadel • Mature Zero Trust alerts and controls across risk-based alerting, posture checks • Incorporation of Zero Trust principles into new programs and architecture designs • Support application security program strategy and implementation, including but not limited to various controls towards a “shift-left” security model, Security Champions program, adoption and implementation of SAST, DAST, other application security tools. • Assist in maturation of the Secure SDLC, including threat modeling, security architecture and requirements guidance, as well as secure code development training. • Work directly with developers to triage findings, provide remediation guidance, and foster a security-first culture. • Manual testing support for light red teaming such as POC’ing vulnerabilities, leading penetration tests via vendor engagements and/or internally led testing, and validating security findings. • Partner with Engineering, DevOps, to secure GCP, AWS environments • Leverage Cloud Security tools such as CNAAP, to remediate discovered misconfigurations, vulnerabilities, and triage of Cloud Security alerts. • Support development and implement secure infrastructure baselines, vulnerability management processes, secrets managements, IAM, and hardening standards within the cloud environment. • Incorporation of shift-left security tests and controls, into CI/CD pipelines • Help expand monitoring capabilities within tools such as SIEM, CNAAP, including implementation of required cloud architecture/logging, onboarding of log sources to security tools, and detection rules for cloud-based threats.

🎯 Requirements

• 3-5 years of hands-on experience in a security engineering role, preferably within a cloud-native, startup environment • Deep experience building or contributing to a Security Operations program, leveraging/administering SIEM, EDR, CNAAP, Email Security, and SOAR tools. • Hands-on experience building and tuning threat detections, partnering with Security Analysts to improve/automate runbooks and response actions. • Demonstrated experience implementing tools and controls to support Zero Trust, with tools such as Cloudflare, IAM architecture and protocols, risk and posture based alerting, and workforce/customer identity solutions. • Proficiency in at least one scripting language (e.g., Python, Bash) to automate security tasks and processes, ability to implement and support detection-as-code and infrastructure-as-code where applicable. • Excellent problem-solving skills and the ability to work collaboratively with both technical (Engineering) and non-technical (GTM) teams. • Ability to drive new projects, self-starter, with minimal supervision • A proactive, "builder" mindset with a passion for improving processes, reducing risk. • Familiarity with Infrastructure as Code (IaC) and its security implications (e.g., Terraform). • Knowledge of compliance frameworks such as SOC 2, GDPR, NIST CSF • Familiarity with common application development languages such as Java or JavaScript • Understanding of system and architecture design principles, from code to cloud • Relevant industry certifications (e.g., GCLD, GCP Cloud Security Engineer, GCSA).

🏖️ Benefits

• Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. • Health Savings Account with company contribution for eligible medical plans. • Flexible Vacation Plan • 10 Paid Company Holidays • 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance • 401k with Traditional and Roth options, including employer match. • Company Equity • Paid Parental and Pregnancy Recovery Leave • Company and team off-sites and virtual events throughout the year • Home office stipend

Apply Now

Similar Jobs

November 4

Global Channel Management, Inc.

11 - 50

🎯 Recruiter

🤝 B2B

☁️ SaaS

Remote SOC Analyst investigating security alerts and managing incidents in cybersecurity operations. Requires certifications and scripting knowledge for effective threat detection and response.

🇺🇸 United States – Remote

💵 $58 - $59 / hour

⏰ Full Time

🟢 Junior

🟡 Mid-level

🛡️ Security Operations

🚫👨‍🎓 No degree required

November 2

FIS

10,000+ employees

💳 Fintech

💸 Finance

🏦 Banking

Senior Cyber Security Incident Response Analyst at FIS responsible for incident response to major cybersecurity threats. Collaborating with incident responders across the US and India for digital forensics and incident response.

🇺🇸 United States – Remote

💵 $104.3k - $175.1k / year

⏰ Full Time

🟠 Senior

🛡️ Security Operations

🦅 H1B Visa Sponsor

October 31

Arcadia

201 - 500

Lead the technical security operations for a healthcare company, unifying Security, Cloud, and Infrastructure Security teams. This role is hands-on with a focus on protecting healthcare data and SaaS platform.

🇺🇸 United States – Remote

💰 $29.5M Venture Round on 2020-01

⏰ Full Time

🟠 Senior

🛡️ Security Operations

🦅 H1B Visa Sponsor

October 31

Prophet Security

11 - 50

🔒 Cybersecurity

🤖 Artificial Intelligence

☁️ SaaS

Security Operations Engineer at Prophet Security helping shape AI for threat detection and response. Collaborate with engineers to redefine the possibilities in security operations.

🇺🇸 United States – Remote

💵 $135k - $200k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

October 30

Growe

501 - 1000

🎮 Gaming

🤝 B2B

SOC Analyst monitoring real-time security events and incidents, working collaboratively within the cybersecurity team at GROWE.

🇺🇸 United States – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

🛡️ Security Operations

🗣️🇺🇦 Ukrainian Required

Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com