Principal Security Operations Engineer

2 weeks ago


Remote, Oregon, United States Vimeo Full time

As a Principal Security Operations Engineer at Vimeo, you will engage in a variety of activities, either offensive, defensive, or some combination thereof, ultimately aimed at safeguarding our 300+ million users who entrust Vimeo with their content every day.

You'll plan, carry out, and lead security initiatives to monitor and protect sensitive data and systems from infiltration and cyber-attacks.

You will likely collaborate frequently with and support developers, as well as members of the infrastructure security team, the compliance team, IT, Product, and other teams throughout the organization.

You love to solve puzzles, and are a great team player.

This role is remote.

What you'll do:

Depending on your preferences and the current needs of the team, you may either focus on just some of the following areas, or you may choose to become involved with all of them.

  • As a Principal SecOps Engineer, you will be responsible for ensuring the security of our systems and infrastructure. You will work closely with our development, DevOps teams to identify and remediate vulnerabilities, implement security best practices, and automate security processes. You will also monitor and respond to security incidents and maintain compliance with industry and regulatory standards.
  • Conduct security assessments of our systems and infrastructure to identify vulnerabilities and risks, identify risk owners and implement mitigating controls.
  • Implement and maintain security controls, including access controls, Zero trust network access (ZTNA), network segmentation, and security monitoring tools.
  • Design and operate identity management, lifecycle, governance and SSO.
  • Implement and operate cloud security hardening and cloud security posture management across Google cloud and AWS.
  • Develop and maintain security policies and procedures, and ensure compliance with industry and regulatory standards.
  • Collaborate with SRE, AppSec and Information technology around vulnerability management, endpoint hardening, detection and response.
  • Participate in incident response activities, including investigating security incidents and responding to security alerts.
  • Collaborate with development and DevOps teams to implement security best practices throughout the software development and infrastructure lifecycle.
  • Automate security processes using scripting and other automation tools.
  • Stay up-to-date with the latest security threats, vulnerabilities, and technologies.
  • Collaboration with the compliance and privacy team — help ensure that our company complies with industry best practices and standards
  • Process improvements — help strengthen our own internal processes and procedures

Skills and knowledge you should possess:

  • 6+ years of experience in a security or operations role, preferably in a cloud-based Linux environment.
  • 3+ years experience with container and container orchestration systems
  • Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
  • Strong knowledge of security best practices and industry standards, such as NIST, CIS, and ISO.
  • Relevant certifications such as CISSP, CCSP, or AWS Certified Security Specialty are a plus.
  • Experience with security tools such as IDS/IPS, SIEM, vulnerability scanners, and endpoint protection.
  • Experience with automation tools such as Terraform, Ansible, or Chef.
  • Strong scripting skills using Python, shell, or other scripting languages.
  • Excellent problem-solving skills and the ability to work well under pressure.
  • Good communication and interpersonal skills.Confident working in and across cloud environments like AWS and GCP. Detailed knowledge of at least one cloud environment.
  • Confident with common SDLC components, like git, Jira, Jenkins, etc
  • At least an upper-intermediate level of English

Bonus points (nice skills to have, but not needed):

  • Experience implementing zero trust network access such as Z-Scaler, Warp, Google beyondCorp etc.
  • Experience implementing identity lifecycle including provisioning, quarterly access reviews, role management and deprovisioning.
  • Understanding of FIDO2 and machine certificate authentication flows.
  • Experience with Crowdstrike and OKTA.
  • Experience with system security hardening guidelines and SDLC principles
  • Experience with implementing Fedramp and/or HIPAA.

Targeted Base Salary Range: $149,400 to $227,500

The base salary range listed above is for candidates located in the U.S., including the New York City metro area.

At Vimeo, we strive to hire and nurture amazing talent across the globe. Actual salaries will vary depending on factors including but not limited to experience, specialized skills, internal alignment and a candidate's home base.

Base salary is just one component of Vimeo's total rewards philosophy. We offer a wide range of benefits and perks that appeal to the variety of needs across our diverse employee base Other rewards may include bonus or commission, Restricted Stock Units (RSUs), paid time off, generous 401k match, wellbeing resources, and more.

#LI-MM1


About Us:

Vimeo (NASDAQ: VMEO) is the world's most innovative video experience platform. We enable anyone to create high-quality video experiences to better connect and bring ideas to life. We proudly serve our community of millions of users – from creative storytellers to globally distributed teams at the world's largest companies – whose videos receive billions of views each month. Learn more at

Vimeo is headquartered in New York City with offices around the world. At Vimeo, we believe our impact is greatest when our workforce of passionate, dedicated people, represents our diverse and global community. We're proud to be an equal opportunity employer where diversity, equity, and inclusion is championed in how we build our products, develop our leaders, and strengthen our culture.



  • Remote, Oregon, United States Duo Security Full time

    Who We Are The Cisco Security Innovation team incubates ideas for the leading provider of network security services, which enables the world to connect with confidence on any device, anywhere, anytime. Cisco Security is passionate about SIG and SASE world and our product portfolio includes the cloud delivers firewall, Web proxy, Zero Trust Proxy, NaaS...


  • Remote, Oregon, United States GitHub Full time

    Principal Software EngineerUnited StatesEngineeringExperienced ProfessionalIndividual ContributorYes2920Full TimeJob DescriptionAbout GitHubAs the global home for all developers, GitHub is the complete AI-powered developer platform to build, scale, and deliver secure software. Over 100 million people, including developers from 90 of the Fortune 100...

  • Security Engineer

    1 month ago


    Remote, Oregon, United States Baylor Scott & White Health Full time

    JOB SUMMARYThe Security Engineer will be accountable for developing information security policy, introducing security best practices, and auditing information security compliance. This also includes selecting and implementing appropriate security solutions and leading efforts to assess vulnerability and risk. You will assist respective IS Directors and/or...

  • Security Engineer

    2 weeks ago


    Remote, Oregon, United States Baylor Scott & White Health Full time

    JOB SUMMARYThe Security Engineer will be accountable for developing information security policy, introducing security best practices, and auditing information security compliance. This also includes selecting and implementing appropriate security solutions and leading efforts to assess vulnerability and risk. You will assist respective IS Directors and/or...


  • Remote, Oregon, United States Duo Security Full time

    Who We AreThe Cisco Security AI team delivers AI products and platform for all Cisco Secure products and portfolios so businesses around the world can defend against threats and safeguard the most vital aspects of their business with security resilience. We are passionate about making our customers secure by simplifying security with zero compromise using AI...

  • Principal Engineer

    1 month ago


    Remote, Oregon, United States Webflow Full time

    At Webflow, our mission is to bring development superpowers to everyone. Webflow is the leading visual development platform for building powerful websites without writing code. By combining modern web development technologies into one platform, Webflow enables people to build websites visually, saving engineering time, while clean code seamlessly generates...


  • Remote, Oregon, United States Huntress Full time

    Reports to: Engineering Manager Location: Remote, US and Canada Compensation: $195,000 to $215,000 base plus bonus and equity What We Do: Founded in 2015 as a fully remote company by former NSA cyber operators, Huntress was built on a simple premise: to force hackers to earn every inch of their access. Today's cyber-attacks aren't limited to large...


  • Remote, Oregon, United States Huntress Full time

    Reports to: Engineering Manager Location: Remote, US and Canada Compensation: $195,000 to $215,000 base plus bonus and equity What We Do: Founded in 2015 as a fully remote company by former NSA cyber operators, Huntress was built on a simple premise: to force hackers to earn every inch of their access. Today's cyber-attacks aren't limited to large...


  • Remote, Oregon, United States Ascensus Full time

    At Ascensus, technology is more than just a solution. It powers the business that helps millions of people save for what matters—retirement, education, and healthcare. Our technology experts tackle exciting challenges in collaborative teams, but work in an environment where individual and career development is always valued. Technology associates leverage...

  • Principal Engineer

    1 month ago


    Remote, Oregon, United States FRONTSTEPS Full time

    FRONTSTEPS is the nation's most comprehensive Community Management platform that simplifies how management companies and homeowner associations connect, operate, and optimize modern communities and management companies. With a focus on mobile-first technology and best-in-class user experiences, our platform makes it easy for community leaders to collaborate...


  • Remote, Oregon, United States Baylor Scott & White Health Full time

    JOB SUMMARYThe End Point Security Engineer is responsible for executing the enterprise-wide strategy to identify, implement, and support of End Point Defense solutions within the environment. This hands-on position requires strong collaboration skills to work with cross functional teams to ensure the operational effectiveness of technology solutions in...


  • Remote, Oregon, United States The Nerdery Full time

    About Nerdery and Being a "Nerd."Nerdery is a digital product consultancy. Much more than consultants, we're allies and guides on our clients' digital journey – helping them to grow their business and delight their customers through intuitive, thoughtfully designed technology. As true partners, we prepare our clients for the opportunities in front of them,...


  • Remote, Oregon, United States SailPoint Full time

    About SailPoint:SailPoint is the leader in identity security for the cloud enterprise. Our identity security solutions secure and enable thousands of enterprise companies worldwide, giving our customers unmatched visibility into the entirety of their digital workforce, ensuring workers have the right access to do their job - no more, no less. Built on a...


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way.Who You'll work with:We provide the basic building blocks for the Cisco Security Cloud....


  • Remote, Oregon, United States Equinix Full time

    Who are we?Equinix is the world's digital infrastructure company, operating over 250 data centers across the globe. Digital leaders harness Equinix's trusted platform to bring together and interconnect foundational infrastructure at software speed. Equinix enables organizations to access all the right places, partners and possibilities to scale with agility,...

  • Principal Engineer

    1 month ago


    Remote, Oregon, United States GE Full time

    Job Description SummaryThe need for clean energy is greater than ever. At GE Hitachi we are helping address climate change by designing technology to power our future with reliable, affordable, carbon-free energy. We are a world leader in advanced reactor technology, fuel and services. Join us as we build our legacy, boldly innovating to provide carbon-free...


  • Remote, Oregon, United States Duo Security Full time

    We are Cisco Secure Common Services Platform Engineering, a team of cybersecurity experts and innovative engineers who support the products and developers across Cisco Security. We put our people first, we take bold steps together, and we value transparency each step of the way. We're adding more talented members to our growing team who will help us take...

  • Security Engineer

    4 weeks ago


    Remote, Oregon, United States Network Coverage Full time

    Job descriptionWho we are:Network Coverage is a best-in-class technology solutions provider specializing in IT managed services, cybersecurity, compliance, cloud enablement, digital transformation, and software development for mid-market and enterprise organizations. Our comprehensive technology solutions and operational excellence allow clients to focus on...


  • Remote, Oregon, United States Arcadia Full time

    Arcadia is dedicated to happier, healthier days for all. We transform diverse data into a unified fabric for health. Our platform delivers actionable insights for our customers to advance care and research, drive strategic growth, and achieve financial success. For more information, visit Why This Role Is Important To ArcadiaThe US healthcare system is in a...


  • Remote, Oregon, United States Business Wire Full time

    Business Wire, a Berkshire Hathaway company, is the global market leader in press release distribution and regulatory disclosure. We are on a mission to redefine how organizations connect with their audiences - and that's just the beginningOrganizations, large and small, depend on us to accurately publicize market-moving news and multimedia, and generate...