Security Engineer
1 month ago
We are hiring a Security Engineer with a specialization in APIs to join our DevSecOps team. The ideal candidate will play a crucial role in enhancing our APIcentric development approach managing API security tools and ensuring the security of our systems within an Azure environment. Our DevSecOps team is focused on high performance tracking work in a management system to demonstrate progress towards our goals. We value meaningful security work over security theater emphasizing evidencebacked security measures.
What youll be doing
Own the API security program including strategic planning tool selection and demonstrating program value through metrics.
Implement and manage API security tools focusing on identifying fullfeatured API security solutions.
Work closely with development teams to integrate security principles in API development and ensure compliance with security standards.
Support the DevSecOps team in areas such as container security application security testing tools and infrastructure as code scanning.
Strategically manage identify and track new technologies to ensure a comprehensive security tool stack configuration to address threats and gaps particularly related to API security.
Build and present business cases on new technologies to address new and emerging risks as well as gaps identified by external and internal essors.
Lead work in security controls and requirements identification for large and small technology and business initiatives.
Build strong relationships with other technical personnel to create trust in guidance and insight on security topics.
Maintain and improve policy and standards doentation relating to API security.
What you will need to be successful
Bachelors degree in Information Systems Cybersecurity or a related field and minimum 2 years relevant experience; or equivalent combination of education and experience.
Demonstrated experience as a professional security engineer and/or software engineer particularly regarding APIs and modern software architecture.
Experience with Azure cloud environments and familiarity with API management tools like Azure APIM and Kong..
Experience executing and performing security risk essments for onpremise and cloudbased services.
Advanced security certification (e.g. CISSP CSSLP CEH) or demonstrable level of compentency preferred
Agile/Scrum and Microsoft Azure experience are beneficial with expertlevel working knowledge of API Security and the concepts and tooling that can help protect them.
Expert knowledge of leading information security frameworks and best practices (OWASP API Top 10 NIST Cybersecurity Framework ISO27001/2 and CIS Top 20 Controls) and extensive experience applying frameworks to identify appropriate security measures and applying multiple risk treatments
An API attacker mindset that is only satisfied when defenseindepth controls are in place but will still question umptions about our existing security posture.
Ability to perform highquality and effectual threat modeling.
Ability to present complex security recommendations and influence both senior leaders and technology SMEs.
Ability to research identify and iterate on new security metrics to provide greater visibility on program status and improvement opportunities to senior leadership
Ability to clearly and logically doent all procedures related to this role and a pion for keeping doentation up to date
Excellent interpersonal ss including the ability to interact effectively and professionally with individuals at all levels; both internal and external
Team player capable of developing strong collaborative working relationships with internal partners and able to effectively engage and build consensus among crossfunctional teams
Experience in financial services or healthcare industries dealing with sensitive data protection is a plus.
Familiarity with container security application security testing tools and infrastructure as code scanning is a plus.
No phone calls or third parties. Candidates must be United States citizens or legal permanent residents. Proof of legal residence and work authorization in the United States is required.
Remote Work :
No
-
Senior Security Engineer
3 weeks ago
Boston, United States Aqua Security Full timeAqua Security is a global leader in cloud-native security, safeguarding software infrastructure from development to production. As a rapidly growing player in the cloud-native security space, we champion innovation, collaboration, and growth. We're seeking a talented Security Engineer to join our elite Security team and enhance our vulnerability management...
-
Splunk Security Engineer
4 weeks ago
Boston, Massachusetts, United States GuidePoint Security Full timeAt GuidePoint Security, we are seeking a highly skilled Splunk Security Engineer to join our team. As a Splunk Security Engineer, you will be responsible for driving complex security-focused deployments of Splunk while working side by side with our customers to solve their unique problems across a variety of use cases.Key Responsibilities:Drive complex...
-
Senior Cloud Security Specialist
4 weeks ago
Boston, Massachusetts, United States Aqua Security Full timeAqua Security is a global leader in cloud-native security, safeguarding software infrastructure from development to production.We're seeking a talented Security Engineer to enhance our vulnerability management and compliance operations.This role offers the opportunity to manage vulnerabilities, conduct security scans, and oversee the security...
-
Security Engineer, Security
2 weeks ago
Boston, United States Amazon Full timeSecurity Engineer, Business Information Risk At Audible, we believe stories have the power to transform lives. It's why we work with some of the world's leading creators to produce and share audio storytelling with our millions of global listeners. We are dreamers and inventors who come from a wide range of backgrounds and experiences to empower and inspire...
-
Security Engineer
2 months ago
Boston, United States Whitridge Associates Full timeWe are seeking a highly skilled Security Engineer to join our team on a contract basis. This role requires a seasoned professional with deep experience in security engineering and operations, particularly with hands-on operational duties. The ideal candidate will be able to work collaboratively in a hybrid setting, with no exceptions to the onsite...
-
Security Engineer
3 weeks ago
boston, United States Whitridge Associates Full timeWe are seeking a highly skilled Security Engineer to join our team on a contract basis. This role requires a seasoned professional with deep experience in security engineering and operations, particularly with hands-on operational duties. The ideal candidate will be able to work collaboratively in a hybrid setting, with no exceptions to the onsite...
-
Security Engineer
2 months ago
boston, United States Whitridge Associates Full timeWe are seeking a highly skilled Security Engineer to join our team on a contract basis. This role requires a seasoned professional with deep experience in security engineering and operations, particularly with hands-on operational duties. The ideal candidate will be able to work collaboratively in a hybrid setting, with no exceptions to the onsite...
-
Security Engineer
2 weeks ago
Boston, United States Whitridge Associates Full timeWe are seeking a highly skilled Security Engineer to join our team on a contract basis. This role requires a seasoned professional with deep experience in security engineering and operations, particularly with hands-on operational duties. The ideal candidate will be able to work collaboratively in a hybrid setting, with no exceptions to the onsite...
-
Security Engineer
1 week ago
Boston, United States Softworld, a Kelly Company Full timeJob Title: 80677 - Security EngineerJob Location: Boston MA 02210Onsite Requirements:Palo AltofirewallsSIEMJob Description: As a Security Engineer with a primary emphasis on operational aspects, you will play a pivotal role in the implementation and management of security defenses.You will collaborate closely with cross-functional teams to develop and...
-
Security Engineer
1 week ago
boston, United States Softworld, a Kelly Company Full timeJob Title: 80677 - Security EngineerJob Location: Boston MA 02210Onsite Requirements:Palo AltofirewallsSIEMJob Description: As a Security Engineer with a primary emphasis on operational aspects, you will play a pivotal role in the implementation and management of security defenses.You will collaborate closely with cross-functional teams to develop and...
-
Cyber Security Sales Professional
4 weeks ago
Boston, Massachusetts, United States Transmit Security Full timeJob Title: Cyber Security Sales ProfessionalJob Description:We are seeking a highly skilled Cyber Security Sales Professional to join our team at Transmit Security. As a key member of our sales team, you will be responsible for prospecting and acquiring new enterprise clients in the fintech, gaming, ecommerce/retail, and media/telco sectors.Key...
-
Security Engineer
4 weeks ago
boston, United States Pryzm Full timeWe are seeking an experienced Cybersecurity Engineer to lead our efforts to achieve Impact Level 5 (IL-5) accreditation. The ideal candidate will have deep expertise in directly building software architectures that meet DoD cybersecurity requirements, cloud security, and the Risk Management Framework (RMF).Specifically, you will…Design, implement, and...
-
Security Engineer
4 weeks ago
Boston, United States Pryzm Full timeWe are seeking an experienced Cybersecurity Engineer to lead our efforts to achieve Impact Level 5 (IL-5) accreditation. The ideal candidate will have deep expertise in directly building software architectures that meet DoD cybersecurity requirements, cloud security, and the Risk Management Framework (RMF).Specifically, you will…Design, implement, and...
-
Security Engineer
4 weeks ago
Boston, United States Pryzm Full timeWe are seeking an experienced Cybersecurity Engineer to lead our efforts to achieve Impact Level 5 (IL-5) accreditation. The ideal candidate will have deep expertise in directly building software architectures that meet DoD cybersecurity requirements, cloud security, and the Risk Management Framework (RMF).Specifically, you will…Design, implement, and...
-
Security Engineer
2 months ago
Boston, United States CPS Insurance Services Full timeWe are hiring a Security Engineer with a specialization in APIs to join our DevSecOps team. The ideal candidate will play a crucial role in enhancing our API-centric development approach, managing API security tools, and ensuring the security of our systems within an Azure environment. Our DevSecOps team is focused on high performance, tracking work in a...
-
Security Engineer
2 months ago
Boston, United States CPS Insurance Services Full timeWe are hiring a Security Engineer with a specialization in APIs to join our DevSecOps team. The ideal candidate will play a crucial role in enhancing our APIcentric development approach managing API security tools and ensuring the security of our systems within an Azure environment. Our DevSecOps team is focused on high performance tracking work in a...
-
Information Security Engineer
2 weeks ago
Boston, United States Shorelight Full timeInformation Security EngineerBoston, MassachusettsAbout UsShorelight is reinventing the international education experience for students worldwide. Based in Boston, the company works directly with top-ranked, nonprofit American universities to build innovative programs and high-touch, technology-driven services that help talented students thrive and become...
-
Information Security Engineer
2 weeks ago
Boston, United States Shorelight Full timeInformation Security EngineerBoston, MassachusettsAbout UsShorelight is reinventing the international education experience for students worldwide. Based in Boston, the company works directly with top–ranked, nonprofit American universities to build innovative programs and high–touch, technology–driven services that help talented students thrive and...
-
Security Engineer
1 month ago
Boston, Massachusetts, United States CPS Insurance Services Full timeJob Title: Security Engineer - API Security SpecialistWe are seeking a highly skilled Security Engineer to join our DevSecOps team. The ideal candidate will have expertise in API security and a strong understanding of cloud security principles.Key Responsibilities:Own the API security program, including strategic planning and tool selection.Implement and...
-
Cyber Security Engineer
1 month ago
Boston, Massachusetts, United States TEKsystems Full timeJob SummaryTEKsystems is seeking a highly skilled Cyber Security Engineer to join our team. As a Cyber Security Engineer, you will be responsible for designing and developing technology solutions to monitor and protect our clients' security posture.Key ResponsibilitiesDesign and develop technology solutions to monitor and protect security postureCollaborate...