Staff Engineer
3 weeks ago
GEICO . Applying for this role is straight forward Scroll down and click on Apply to be considered for this position. For more information, please . **At GEICO, we offer a rewarding career where your ambitions are met with endless possibilities. ****Every day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive through relentless innovation to exceed our customers’ expectations while making a real impact for our company through our shared purpose. ****When you join our company, we want you to feel valued, supported and proud to work here. That’s why we offer The GEICO Pledge: Great Company, Great Culture, Great Rewards and Great Careers. ****GEICO ** is seeking an experienced **Staff Engineer ** to provide enterprise support for product security in our hybrid, multi-cloud environments. You will proactively and holistically lead and support Product Security activities that guide the design, development, security of code, and code repositories for cloud, hybrid, and open-source applications. **Position Description: **Our **Product Security Staff Engineer ** is a senior level position that reports to the Manager of Secure Product Design and works closely with development teams, product teams, and others across the organization to integrate security into the product lifecycle. The Product Security Staff Engineer is a subject matter expert in defining security requirements, defining secure application design, performing application security assessments, threat modeling, and providing developers with remediation guidance and solutions. On any given day, the Product Security Staff Engineer can be pulled in to evaluate a new system, review a proposed application design, or provide solutions for application security/coding best practices. **Position Responsibilities **As a Staff Engineer, you will: * Work independently with developers, system/network engineers, product owners, and other engineers to ensure secure design, development, and implementation of cloud-based applications * Define and document secure architecture patterns and anti-patterns * Perform security architecture design reviews of our products including web applications, services, and mobile applications. * Define security best practices and standards and partner with Product Development teams to implement them. * Provide remediation guidance and recommendations to developers and engineers. * Serve as a technical advisor and consultant to colleagues and/or GEICO leadership on the implementation of the Cybersecurity application security policy and standards. * Provide technical thought leadership for integration decisions, analyzing design constraints and trade-offs in system and security design, and ensuring integrity of GEICO mission objectives, while protecting GEICO assets from cyber threats and vulnerabilities. * Work with Product Development teams to help prioritize and validate urgency of mitigation of identified product vulnerabilities and security feature enhancement requests * Interface with the Product and Cyber Security teams to track security feature enhancement requests * Help develop actionable insights, prioritizing the work, based on risk, and impact, and allocate resources effectively, using Geico specific large data sets. **Qualifications: *** Hands-on product development experience, with strict SLA and SLR, using a mature S-SDLC. * Direct experience working with development teams to define, develop and document secure solutions * Experience breaking down complex systems and applications to find flaws with analysis and threat modeling * Strong familiarity with common vulnerabilities and attack vectors * Knowledge of web service technologies, load balancer services (i.e., Nginx, Cloudflare, F5, etc.) and RESTful APIs * Knowledge of ubiquitous encryption technologies (PGP, SSH, SSL, etc.) and common authentication protocols (OpenID Connect, OAUTH, SAML, RADIUS, LDAP, KERBEROS, etc.)* Solid understanding of secure network, system, and service design in cloud (Azure, AWS etc.) and conventional environments * Understanding and applied use of OWASP Top 10, NIST SP800 Series, NIST CSF, FIPS 140-2, ISO 27001, PCI-DSS, etc. * Knowledge of various aspects of a technology architecture like integration, network, and security * Advanced understanding and knowledge of application development life cycle methodologies (such as waterfall, spiral, agile software development, rapid prototyping, incremental, synchronize and stabilize, and DevOps/ SecDevOps)* Exposure to multiple, diverse security technologies, platforms, and processing environments * Strong command of strategic and emerging security/ cloud technology trends, and the practical application of existing and emerging technologies to new and evolving business and operating models. * Good understanding of product management, agile principles and development methodologies and capability of supporting agile teams by providing advice and guidance on opportunities, impact, and risks, taking account of technical and architectural debt * Experience collaborating closely with senior executives on strategic initiatives * A background integrating security testing into the SDLC * Experience providing security training to developers * Ability to find security defects within programming languages such as Go, Rust, Java, Python, Object C, and mobile device languages * Demonstrated experience using DAST and SAST tools and services * One or more of the following Cybersecurity certifications are highly desired: Security+, Certified Information System Security Professional (CISSP) or Certified Information Security Manager (CISM)**Experience: *** 6+ years planning and designing application security, cloud security, systems security, or platform security * 5+ of experience in at least two security solution design and development disciplines, including technical or security infrastructure architecture, cloud security, network security management, secure application development or secure cloud development. * 4+ years of experience in application and open-source security * 3+ years of experience with AWS, GCP, Azure, or another cloud service * 2+ years of experience in open-source frameworks **Education *** Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or equivalent education or work experience **Annual Salary **$105,000.00- $230,000.00The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.GEICO will consider sponsoring a new qualified applicant for employment authorization for this position. **The GEICO Pledge: ****Great Company: ** At GEICO, we help our customers through life’s twists and turns. Our mission is to protect people when they need it most and we’re constantly evolving to stay ahead of their needs.We’re an iconic brand that thrives on innovation, exceeding our customers’ expectations and enabling our collective success. From day one, you’ll take on exciting challenges that help you grow and collaborate with dynamic teams who want to make a positive impact on people’s lives. **Great Careers: ** We offer a career where you can learn, grow, and thrive through personalized development programs, created with your career – and your potential – in mind. You’ll have access to industry leading training, certification assistance, career mentorship and coaching with supportive leaders at all levels. **Great Culture: ** We foster an inclusive culture of shared success, rooted in integrity, a bias for action and a winning mindset. Grounded by our core values, we have an an established culture of caring, inclusion, and belonging, that values different perspectives. xrczosw Our teams are led by Remote working/work at home options are available for this role.
-
Staff Software Engineer
7 days ago
Washington DC, United States Chewy Full timeStaff Software Engineer Are you looking for more than just a job? At Chewy, you'll find yourself on a career path with other outstanding humans, like yourself. Join a culture that values all your contributions, your outstanding identity, and the career objectives you've established. We want to give you the opportunity to grow, earn competitive pay, and be...
-
Staff Geotechnical Engineer
3 weeks ago
Washington DC, United States Schnabel Engineering, Inc. Full timeSchnabel is an employee-owned, professional engineering and consulting firm that focuses on solving problems related to the earth and environment through specialization in geotechnical, geostructural, tunnel, and dam engineering. Schnabel’s high standards for quality, business ethics, and concern for the communities in which we live are a vital part of who...
-
Manager, Staff Engineering
3 weeks ago
Washington DC, United States GEICO Full timeGEICO . Read the overview of this opportunity to understand what skills, including and relevant soft skills and software package proficiencies, are required. For more information, please .Manager, Staff Engineering - Cryptography page is loaded## Manager, Staff Engineering - Cryptographyremote type: Hybridlocations: Chevy Chase, MD: Palo Alto, CA: New York...
-
Full-Time Staff Engineers
3 weeks ago
Washington DC, United States Confiz Full timeSenior Staff Engineer • Seattle, WA, United States We are seeking a highly experienced and security‑minded Senior Staff Engineer - Backend & Cloud, Tech Lead to join our team in a hybrid capacity based in Seattle, WA. This role blends deep technical expertise with leadership responsibilities, requiring a strong foundation in backend development,...
-
Staff Software Engineer
3 weeks ago
Washington DC, United States GEICO Full timeA leading insurance provider is seeking a Staff Software Engineer to drive engineering excellence in a hybrid work environment. Please make sure you read the following details carefully before making any applications. The ideal candidate will focus on high-performance systems and applications, mentor teams, and execute strategic technical roadmaps. This role...
-
Staff ML Engineer, Product
19 minutes ago
Washington DC, United States Truebill Full timeABOUT ROCKET MONEY Rocket Moneys mission is to empower people to live their best financial lives. Rocket Money offers members a unique understanding of their finances and a suite of valuable services that save them time and money - ultimately giving them a leg up on their financial journey. ABOUT THE TEAM Machine Learning Engineers at Rocket Money further...
-
Staff Software Engineer
3 weeks ago
Washington DC, United States Rippling Full timeRippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system. A variety of soft skills and experience may...
-
Washington DC, United States Google Inc. Full timeStaff Software Engineer, Site Reliability Engineering All potential candidates should read through the following details of this job with care before making an application. Google Kirkland, WA, USA Apply Qualifications Bachelor’s degree in Computer Science, a related field, or equivalent practical experience. 8 years of experience with software...
-
Engineering Staff Product Security Engineer
3 weeks ago
Washington DC, United States DataRobot, Inc. Full timeJob Description: Please read the following job description thoroughly to ensure you are the right fit for this role before applying. DataRobot delivers AI that maximizes impact and minimizes business risk. Our platform and applications integrate into core business processes so teams can develop, deliver, and govern AI at scale. DataRobot empowers...
-
Staff Software Engineer, Member Insights
3 weeks ago
Washington DC, United States Social Finance, Inc. (SoFi) Full timeStaff Software Engineer, Member Insights Check all associated application documentation thoroughly before clicking on the apply button at the bottom of this description. Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial...