Staff Security Engineer

2 weeks ago


San Francisco CA United States Stars Group Full time
As our Staff Cloud Security Engineer, you will be responsible for the security assessment of infrastructure/cloud. Implementing and managing security controls for cloud services which includes Secure configuration management for all Cloud native services, setting up processes and guidelines. The Goal is to build Seamless Security. We want you to redefine how developers view security, eliminating friction and improving Security natively. You will work closely with other Security functions, DevOps, Architects and Developers and QA to build highly reliable and secure products on cloud. Responsibilities
  • Understand the Amazon identity management ecosystem holistically and create a secure infrastructure, enforce compliance with IAM principals including least privilege access, password management, audit logging, RBAC, user account lifecycle, certificate management and system authentication solutions (SSO/Federation). Minimum of 3 years of experience with AWS.
  • Prepare reference architectures for Developer adoption - Secure Cloud Architecture.
  • Devise and implement Serverless, Container and Kubernetes Security (EKS) Strategy in the company.
  • Deploy CNAPP (Cloud-Native Application Protection Platform) - CSPM, CWPP solutions at a large scale.
  • Lead remediation for findings from CSPM (Cloud Security Posture Management), work with developers on targeted remediation based on prioritization.
  • Experience working with Infrastructure-as-Code (IaC) to secure-by-design solutions to mitigate/fix cloud security issues (Terraform, CloudFormation, etc).
  • Build tools to assist engineering teams with remediation of issues at scale across Cloud.
  • Building security tooling to aid with protection of data stored in the cloud and compliant with relevant regulations - Enforcement of Cloud Data Protection Guidelines from Risk team.
  • Improve Web App Firewalls (WAF), prior experience with WAF rule fine-tuning a plus. Ensure early identification of intrusion & attacks and implement countermeasures.
  • Experience with solutions around DDoS and identify Anti-bot patterns for critical flows.
  • Partner with SOC team for Security Incident Management and Remediation triage with Engineering across the ecosystem. Requirements
    • Overall 6-10 years of relevant experience.
    • Bachelor's degree in Computer Science or a related technical discipline, or equivalent practical experience.
    • Solid understanding of Amazon Web Services (AWS) including VPC, ELB, IAM, KMS, EC2, S3, CloudTrail, CloudFormation, CloudWatch, Cloud HSM, AWS Encryption SDK, RDS, ELB, AWS Route 53, CloudFront, SNS.
    • Experience with enforcement of Security Best practices via CloudFormation/Terraform IaC.
    • Understanding of security frameworks and standards like OWASP & NIST, solid understanding of security protocols, cryptography, authentication, authorization.
    • Good understanding of Linux and Windows OS, TCP/IP protocol stack and networking fundamentals, and security principles at all layers of the OSI stack.
    • Experience with API security, AWS cloud security, container security, network security, cryptography, PKI, certificate management.
    • Experience in CI/CD tools including Git, Jenkins, Ansible, or similar.
    • Experience in designing cloud-native security architectures applying defense-in-depth strategies.
    • Advanced expertise in at least one language, Shell scripting/Python/Go/NodeJS, and AWS CLI.
    • Expert knowledge of container security (Docker/Kubernetes), container security tools such as Twistlock and Aqua Security, etc.
    • Experience with third-party/open source cloud security tools.
    • Experience with tooling and systems for a build, infrastructure automation, and monitoring. About Junglee Games Junglee Games is a leader in the skill-gaming space, with over 100 million registered players. Founded in San Francisco in 2012 and part of the $30 Bn Flutter Entertainment Group, Junglee Games is the fastest-growing skill games company in Southeast Asia. Some of our notable games are Junglee Rummy, Howzat, Junglee Poker, and Carrom Stars. Our mission is to build entertainment for millions of people around the world and help them connect with each other through high-quality games. We focus on creating exhilarating and immersive gaming experiences and also incorporate social features to promote interaction and competition among players. Our games are available on multiple platforms, including web browsers and Android and iOS devices. Since our inception, we have drawn 700+ of the world's most talented people into our ranks. Our team has worked on international AAA titles like Transformers, Star Wars: The Old Republic, Real Steel, Rio, Mech Conquest, and Dueling Blades. Our designers have worked on some of Hollywood's biggest hits, including the movie Avatar. Junglee Games is not just a gaming business. It is a blend of data science, innovation, cutting-edge technology, and, most importantly, a value-driven culture that is creating the next set of conscious leaders. An equal-opportunity employer, Junglee Games has been certified as a Great Place to Work for four years in a row. We celebrate diversity and are committed to creating an inclusive environment for all our employees. Junglee Games has received various accolades for its contribution to the online gaming space. The company continues to innovate and develop new games, expanding its presence in the global gaming market. Website: LinkedIn:
      #J-18808-Ljbffr


  • San Francisco, California, United States Foursquare Full time

    About FoursquareFoursquare is a leading independent location technology and data cloud platform dedicated to building meaningful bridges between digital spaces and physical places.Our proprietary technology unlocks the most accurate, trustworthy location data in the world, empowering businesses to answer key questions, uncover hidden insights, improve...


  • San Francisco, California, United States Abnormal Security Full time

    About the RoleAbnormal Security is a leading provider of cloud-based cybersecurity products, trusted by enterprises of all sizes to stop cybercrime. As we continue to grow and expand our offerings, we need a skilled Site Reliability Engineer II to help us build tools and processes for releasing software and ensuring reliability and availability in heavily...


  • San Francisco, California, United States Databricks Inc. Full time

    About the RoleWe are seeking a highly experienced Senior Staff Software Security Engineer to join our team at Databricks Inc. As a key member of our security engineering team, you will play a critical role in ensuring the security and integrity of our data and AI infrastructure platform.Key ResponsibilitiesDesign and implement secure systems and...


  • San Francisco, United States Code Red Partners Full time

    Code Red is Partnered with one of the most innovative companies in the world. They have raised $100M+ funding and are backed by leading investors like a16z. The CISO is ready to make the first core security team hires, with great impact and scope. We are hiring a Device Security Engineer.What you’ll do:secure embedded devices by innovating + applying...


  • san francisco, United States Code Red Partners Full time

    Code Red is Partnered with one of the most innovative companies in the world. They have raised $100M+ funding and are backed by leading investors like a16z. The CISO is ready to make the first core security team hires, with great impact and scope. We are hiring a Device Security Engineer.What you’ll do:secure embedded devices by innovating + applying...


  • San Francisco, United States Code Red Partners Full time

    Code Red is Partnered with one of the most innovative companies in the world. They have raised $100M+ funding and are backed by leading investors like a16z. The CISO is ready to make the first core security team hires, with great impact and scope. We are hiring a Device Security Engineer.What you’ll do:secure embedded devices by innovating + applying...


  • San Francisco, California, United States Databricks Inc. Full time

    About the RoleWe are seeking a seasoned Senior Staff Software Engineer to lead our Data Security efforts at Databricks Inc. As a key member of our Trust & Safety team, you will be responsible for creating and executing the vision for our security engineering discipline.Key ResponsibilitiesSecurity Engineering Leadership: Develop and implement a comprehensive...

  • Security Engineer

    4 weeks ago


    San Francisco, California, United States Security Bank & Trust Co. Full time

    About the RoleWe are seeking a highly skilled Security Engineer - Detection and Response to join our team at Security Bank & Trust Co. as a key member of our Security team. As a Detection and Response Security Engineer, you will play a critical role in implementing and maintaining our security infrastructure, detecting and responding to security incidents,...


  • San Francisco, United States Code Red Partners Full time

    Code Red is Partnered with one of the most innovative companies in the world. They have raised $100M+ funding and are backed by leading investors like a16z. The CISO is ready to make the first core security team hires, with great impact and scope. What you’ll do:make a highly secure wallet for self-custodial crypto and identityenable third-party wallets to...


  • San Francisco, United States Code Red Partners Full time

    Code Red is Partnered with one of the most innovative companies in the world. They have raised $100M+ funding and are backed by leading investors like a16z. The CISO is ready to make the first core security team hires, with great impact and scope. What you’ll do:make a highly secure wallet for self-custodial crypto and identityenable third-party wallets to...


  • San Francisco, California, United States Aurora Innovation Full time

    About the RoleAurora Innovation is seeking a highly skilled Product Security Specialist to join our team. As a key member of our Product Security team, you will play a critical role in ensuring the security and integrity of our autonomous vehicle platform.Key ResponsibilitiesSecure Design Reviews and Threat Modeling: Perform secure design reviews and threat...


  • Market St #, San Francisco, CA , USA, United States SPAN Full time

    About the RoleSPAN is seeking a highly skilled and experienced individual to join our Security & Privacy team as a Staff Application Security Engineer. In this critical role, you will be instrumental in building and enhancing SPAN's application security program.ResponsibilitiesLead and execute application security assessments, including static application...

  • Staff Engineer

    2 weeks ago


    Inglewood, CA, United States VirtualVocations Full time

    A company is looking for a Staff Engineer (Golang) with extensive experience in cloud-native distributed systems. Key Responsibilities Develop core platform features using Golang, Python, PostgreSQL, and AWS services Collaborate with engineering and cross-functional teams to translate requirements into technical solutions Assist in security reviews...


  • San Francisco, California, United States Foursquare Full time

    About FoursquareFoursquare is a pioneering location technology and data cloud platform dedicated to bridging digital spaces and physical places. Our proprietary technology provides the most accurate and trustworthy location data, empowering businesses to answer key questions, uncover hidden insights, and achieve better outcomes.The PositionWe are seeking a...


  • San Francisco, United States Aurora Innovation Full time

    Aurora hires talented people with diverse backgrounds who are ready to help build a transportation ecosystem that will make our roads safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all. Aurora’s Detection and Response team’s mission is to identify, contain and eradicate cybersecurity threats in the...


  • Mountain View, CA, United States Aurora Innovation Full time

    Aurora hires talented people with diverse backgrounds who are ready to help build a transportation ecosystem that will make our roads safer, get crucial goods where they need to go, and make mobility more efficient and accessible for all. Aurora's Product Security team's mission is to discover, mitigate, and prevent security risks in the software, hardware,...


  • San Jose, California, United States MILLENNIUMSOFT Full time

    Job DescriptionMILLENNIUMSOFT is seeking a highly skilled Staff Engineer Product Security to join our product security team. As a key member of our team, you will be responsible for working with software development teams to assess potential security vulnerabilities and provide recommendations for resolving them.ResponsibilitiesLead product security risk...


  • San Francisco, California, United States Rippling Full time

    About RipplingRippling is a cutting-edge platform that streamlines HR, IT, and Finance operations for businesses. By integrating workforce systems, Rippling enables companies to manage and automate every aspect of the employee lifecycle in a single, intuitive system.About the RoleThe Security & Compliance products team at Rippling is dedicated to creating a...


  • San Francisco, California, United States Rippling Full time

    About RipplingRippling is a leading provider of cloud-based human capital management (HCM) solutions, offering a comprehensive platform that streamlines HR, IT, and finance operations for businesses of all sizes.Our mission is to empower organizations to manage and automate every aspect of the employee lifecycle in a single system, freeing up time and...


  • San Francisco, California, United States Rippling Full time

    About RipplingRippling is a cutting-edge platform that streamlines HR, IT, and Finance operations for businesses. By consolidating workforce systems into a single, intuitive system, Rippling empowers companies to manage and automate every aspect of the employee lifecycle.Take Onboarding to the Next LevelWith Rippling, hiring a new employee anywhere in the...