Senior Information Security Engineer

3 weeks ago


Minneapolis, United States SmartThings Full time
Job DescriptionJob DescriptionDescriptionWe’re SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our corporate offices are based in Minneapolis and the Bay Area.
More than 270 million people worldwide use SmartThings to control and manage their connected life. SmartThings delivers simple, powerful experiences across Samsung’s leading portfolio of phones, TVs, and appliances, and we offer the most versatile smart home experience as an open platform with a rich partner ecosystem. As a founding member of Matter, we are a leader in the industry to help make smart homes more secure, reliable and seamless to use.
Like the smartphone revolution, smart home technology is transforming the way we interact with the world around us. With SmartThings products, we’re reducing global emissions, improving service industries, and creating a safer, smarter planet. Come be a part of the transformation with us Do the SmartThings

SmartThings Culture & Ways of Working
SmartThings’ dynamic culture continuously moves forward with agility and determination, providing an opportunity for impactful contributions across all roles. Our commitment to diversity, equity, inclusion and belonging is deeply ingrained in our core values, fostering a culture that values,celebrates, and honors the unique perspectives and experiences of every individual. Embracing inclusive practices, we strive to cultivate a work environment where everyone thrives. 
At SmartThings, we’re creating immersive, interconnected experiences for both our customers and our team members. Our workplace mirrors this ethos, offering a versatile hybrid environment that nurtures personal connections and fosters collaborative efforts. It’s a place where we can harness the power of teamwork and also delve into focused solo work from the comfort of home a couple of days a week. Joining our team means being based in the vibrant Minneapolis/St. Paul area and working with us at our Minneapolis office three days a week, adding your unique touch to our collective journey. 

About The Team

The Information Security and Privacy team at SmartThings is responsible for empowering our partners to succeed safely and securely. The world of IoT represents many new opportunities for how computers interact with the world around, and with that brings new challenges. As a Senior Information Security Engineer your role will support our ecosystem, its expansion, and growing list of new features to ensure the assets of SmartThings and our users are protected at all times.
About The RoleAs a Senior Information Security Engineer at SmartThings, you will: 
  • Collaborate with partner teams to achieve strategic initiatives by providing security and privacy expertise.
  • Assess and audit the security and compliance posture of the cloud platform against various internal and external risk and regulatory security frameworks
  • Develop and implement effective security controls for cloud-based and distributed architectures.
  • Ensure necessary security controls and requirements are well understood and secure development practices are in place while empowering engineers to do their jobs confidently.
  • Assess the appropriateness and effectiveness of security measures and recommend enhancements.

Skills Knowledge and ExpertiseInclusive Hiring Practices
If your skills and experience are close to what we’re looking for, we encourage you to apply. We know that abilities can be developed in many different ways, and some of the most educational paths have twists and turns. Diversity of thought creates the most creative teams, and we’re passionate about adding new perspectives to the conversation at SmartThings. Even if you aren’t certain you meet every requirement, we encourage you to apply 

What You Bring On Day One (Required Qualifications) 
  • BA/BS or MS in Cybersecurity, Computer Science, or similar discipline.
  • 5+ years of experience in security operations or similar experience
  • Knowledge of security principles, techniques, and technologies
  • Experience with developing and/or recommending security controls
  • Experience with one or more compliance frameworks (PCI, ISO, HIPAA, etc.)
  • Ability to create system security defensive strategies for a fast paced, engineering-driven environment
  • Background in a variety of security and cloud technologies
  • Integration of capability into development pipelines/continuous integration

Desired Skills
  • Scripting/Programming skills
  • Experience in configuring, hardening, and assessing technical resources
  • Understanding of IoT and wireless communications (WiFi, Zigbee, Z-Wave)
  • Familiarity with AWS (EC2, Networking, Security Hub, Inspector, etc.)
  • Familiarity with security tools: Burp Suite, Nmap, Wireshark, etc. 

SmartThings Benefits
  • We offer an attractive compensation package with comprehensive health benefits, including medical, dental, vision, and mental health; an HSA with employer contribution; life & disability insurance; FSAs for health and dependent care expenses; a competitive 401k with a 5% employer match, and more.
  • All of our employees enjoy unlimited PTO, 12 paid holidays, and a generous parental leave policy (8 weeks fully paid parental leave and 8 more fully paid weeks for childbirth recovery leave). 
  • Eligible employees benefit from our education reimbursement program, and all employees enjoy access to learning resources through O’Reilly.
  • Our commitment to diversity, equity, inclusion and belonging is embedded into our culture and our work, and everyone has frequent opportunities to join forums and groups and participate in ongoing projects.

Compensation for this role for a candidate based in Minneapolis is expected to be between $116,509 and $168,938


  • Minneapolis, United States Hennepin County Medical Center Full time

    Hennepin Healthcare is an integrated system of care that includes HCMC, a nationally recognized Level I Adult Trauma Center and Level I Pediatric Trauma Center and acute care hospital, as well as a clinic system with primary care clinics located in Minneapolis and across Hennepin County. The comprehensive healthcare system includes a 473-bed academic medical...


  • Minneapolis, Minnesota, United States Hennepin County Medical Center Full time

    Hennepin Healthcare is an integrated system of care that includes HCMC, a nationally recognized Level I Adult Trauma Center and Level I Pediatric Trauma Center and acute care hospital, as well as a clinic system with primary care clinics located in Minneapolis and across Hennepin County. The comprehensive healthcare system includes a 473-bed academic medical...


  • Minneapolis, United States Diverse Lynx Full time

    Azure architect certification (AZ-500, SC-100) | DLP certification | Web Proxy | Azure cloud security Leading major incidents independently Need Subject Matter Experts Help with developing the security tools full operational readiness scope. Provide support of Data Loss Prevention (DLP) or web traffic protection and experience with deployment of O365...


  • Minneapolis, United States Tata Consultancy Services Full time

    Azure architect certification (AZ-500, SC-100) | DLPcertification | Web Proxy | Azure cloud security Leading major incidents independently Need Subject Matter Experts Helpwith developing the security tools full operational readiness scope. Providesupport of Data Loss Prevention (DLP) or web traffic protection andexperience with deployment of O365 security...


  • Minneapolis, United States Hilo Talent Partners Full time

    Job Description Job Description Hilo Talent Partners has been engaged to recruit for this position. The Company We are an investment firm located in Minneapolis. We believe that investing is about more than money. Our work is grounded in our purpose as a firm: To further human flourishing. The companies we invest in and our approach to client relationships...


  • Minneapolis, United States SmartThings Full time

    Staff Information Security EngineerDepartment: Behaviors, Execution and Foundation Employment Type: Full Time Location: Minneapolis, MN Reporting To: Dylan Barnes Description We're SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our...


  • Minneapolis, United States SmartThings Full time

    Staff Information Security EngineerDepartment: Behaviors, Execution and Foundation Employment Type: Full Time Location: Minneapolis, MN Reporting To: Dylan Barnes Description We're SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our...


  • Minneapolis, United States Hilo Talent Partners Full time

    Job DescriptionJob DescriptionHilo Talent Partners has been engaged to recruit for this position.The CompanyWe are an investment firm located in Minneapolis. We believe that investing is about more than money. Our work is grounded in our purpose as a firm: To further human flourishing. The companies we invest in and our approach to client relationships seek...


  • Minneapolis, United States SmartThings Full time

    Job DescriptionJob DescriptionDescriptionWe’re SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our corporate offices are based in Minneapolis and the Bay Area.More than 270 million people worldwide use SmartThings to control and manage...


  • Minneapolis, United States SmartThings Full time

    Job DescriptionJob DescriptionDescriptionWe’re SmartThings, one of the leading IoT ecosystems in the world, creating the most effortless way for anyone to create a smart home. As a wholly owned subsidiary of Samsung, our corporate offices are based in Minneapolis and the Bay Area.More than 270 million people worldwide use SmartThings to control and manage...


  • Minneapolis, Minnesota, United States Xcel Energy, Inc. Full time

    Position SummaryThe IT Security Engineer II is responsible for creation, coordination, implementation and execution of cyber security solutions and providing security governance and oversight in support of Xcel Energy's strategy and consistent with the IT Security & Risk Management Program Strategy. This position works closely with key business partners,...


  • Minneapolis, Minnesota, United States SPS COMMERCE Full time

    Description: SPS Commerce is hiring a Senior Security Engineer to ensure our development, infrastructure, and business practices have security defined, integrated, and implemented according to the SPS security incident monitoring program, and threat and vulnerability management best practices. You will work closely with cross-functional teams to ensure the...


  • Minneapolis, United States C4 Technical Services Full time

    Information Security ArchitectLocation: Minneapolis, MNThis company is a non-profit organization in the exciting and rapidly evolving cellular therapy industry. We seek an Information Security Architect to maintain and improve our security practice with system integration, software development, and application deployment pipelines.The Information Security...


  • Minneapolis, Minnesota, United States Jamf Full time

    At Jamf, people are at the core of everything we do. We do what's right for our customers, our employees, our communities and our world. We take pride in simplifying technology for tens of thousands of customers around the globe and helping organizations succeed with Apple.Jamf offers remote and hybrid positions. Depending upon the role, work in the office,...


  • Minneapolis, United States Ameriprise Financial Full time

    "Part of a team that establishes, supports and continuously improves the enterprise information security policies, practices and standards. Participate in on-going operational activities that serve to establish appropriate access to and provide the appropriate protection, confidentiality, integrity and availability of enterprise systems and data through...


  • Minneapolis, United States Xcel Energy, Inc. Full time

    Position Summary The IT Security Engineer II is responsible for creation, coordination, implementation and execution of cyber security solutions and providing security governance and oversight in support of Xcel Energy's strategy and consistent with the IT Security & Risk Management Program Strategy. This position works closely with key business...

  • Security Engineer

    4 weeks ago


    Minneapolis, Minnesota, United States Motion Recruitment Full time

    This national bank is looking for a Lead Cloud Security Engineer to join their Identity and Access Management team. It is a generalist role that involves DevSecOps, endpoint security, incident mitigation, and more. The position involves a little bit of everything, but the focus will be on cloud security and IAM within their GCP environment.Ideal candidates...


  • Minneapolis, United States Jamf Full time

    At Jamf, people are at the core of everything we do. We do what's right for our customers, our employees, our communities and our world. We take pride in simplifying technology for tens of thousands of customers around the globe and helping organizations succeed with Apple. Jamf offers remote and hybrid positions. Depending upon the role, work in the...


  • Minneapolis, United States On-Demand Group Full time

    On Demand is seeking a resource to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets or exceeds specific federal security guidelines; 2) are Payment Card Industry (PCI) compliant; and 3) meet or exceed current “best practices” regarding driver’s license and motor vehicle...


  • Minneapolis, United States On-Demand Group Full time

    On Demand is seeking a resource to conduct comprehensive audits of data systems including its infrastructure, policies and procedures, to assure: 1) all data meets or exceeds specific federal security guidelines; 2) are Payment Card Industry (PCI) compliant; and 3) meet or exceed current “best practices” regarding driver’s license and motor vehicle...