Senior Security Engineer

2 weeks ago


Santa Clara, United States Vimaan Full time

Senior Security Engineer VIMAAN is looking to hire a talented senior security engineer to join our exceptional engineering team developing the next generation of information systems for the warehouse. You will work with cross-functional teams, plan, and prepare to block security threats, identify potential threats, and implement remediation. You will define, implement and test security strategies, report on incidents, keep track of the status of network and system security, and raise security awareness amongst employees.

Scope of work will span the breadth of product development and deployment. You will ensure the product, its deployment, and integration into the infrastructure are not vulnerable to security risk while complying with contemporary security guidelines. You will also be responsible for interfacing with third parties to conduct threat assessment and implement corrective actions. You will be responsible for meeting specific industry InfoSec guidelines, standards and regulations, such as medical or government, and driving product compliance.

You will thrive in this role if you are curious, innovative, relish complexity, pay attention to detail, and work to make things a little better every single day. We expect you are smart, humble, hardworking and, above all, collaborative. If this sounds like a good fit for you, reach out for the start of a great journey together.

Senior Security Engineer Responsibilities

Help plan VIMAAN’s information security strategy

Develop security standards and practices as part of SDLC and oversee architecture, design, development, coding, testing, deployment and production to ensure product and infrastructure security

Assess risks, maintain risk register, analyze and communicate impact, undertake remedial actions and follow-up on remedial actions by team members

Install, configure and use security devices, tools and software, such as firewalls, IDS, IPS and data encryption solutions

Automate and deploy network scans to find vulnerabilities and perform penetration testing

Perform code reviews ensuring implementation of security best practices

Develop scripts to automate security related work

Track third party software security and keep updated for security patches and upgrades

Collaborate with DevOps for deployment of software updates and security patches

Collaborate with IT staff and system administrators to monitor networks and systems for security breaches or intrusions

Lead incident response activities, investigations into potential breaches, report on findings, develop and implement remediation plans

Interface with third parties to conduct threat assessment and penetration tests and to implement corrective actions

Ensure product and infrastructure meets specific industry InfoSec standards, such as medical or government, and drive product compliance to those standards

Continually research the current threat landscape and state of the art

Raise information security awareness in product development teams

Establish and maintain thorough and accurate documentation of all work

Senior Security Engineer Qualifications

Bachelor’s of Computer Science or equivalent degree

8+ years of experience as System Security Engineer or Information Security Engineer

Thorough understanding of the latest security and data protection principles, techniques, and protocols

Experience designing and implementing secure networks, systems, and application architectures

Experience with securing web technologies including web applications, Web Services, Microservices

Experience with securing Linux systems and databases such as Postgres

Knowledge of TCP/IP networking protocols, HTTPS, REST, SSH, TLS, and experience securing them

Experience with Identity Management, authentication and SSO methods, LDAP, Active Directory, OpenID, OAuth, and Role Based Access Control

Experience with data encryption and knowledge of encryption algorithms

System administration experience including Linux, network and database administration

Expertise in scripting using shell scripts, Python, Perl or similar languages

Knowledge of risk assessment tools, technologies, and methods

Experience with Software Composition Analysis and Vulnerability Assessment

Experience in designing, implementing, configuring, and managing security by using firewalls, network monitoring tools, intrusion detection systems, anti-virus software, authentication systems, log management systems, content filtering, etc.

Experience with SAST and DAST tools and integrating them into DevSecOps

Experience with code reviews using OWASP Top 10 and MITRE CWE Top 25 and training team on secure coding methodologies

Experience with ISO27001 and SOC2 compliance, audit and certification, and with other industry guidelines, regulations and standards such as NIST, DISA, CPRA, GDPR, etc.

Ability to collaborate effectively with fellow team members

Strong written and verbal communication skills

How to Stand Out

Experience configuring and monitoring security and data protection in Cloud systems using provider tools such as those provided by AWS, Azure and GCP

Security certifications such as CISSP, CISA, CISM, CEH, or similar

Knowledge of data protection and disaster recovery, and experience with related technologies and methods

Understanding of tactics used by APT and other threat groups, and knowledge of computer forensic tools

Experience in Developing a SecureDevOps for an AI/ML product

Self motivated and self managed

You are someone that others enjoy working with due to your positive attitude and technical competence

Pragmatic approach to solving problems and collaboration

Open-minded, passionate, but not ideological

Biased towards automation and ensuring “it just works”

Team-first attitude motivated by helping team members succeed

Benefits

Excellent health insurance benefits

Stock options

401(K)

Company sponsored lunch

Friday socials

#J-18808-Ljbffr



  • Santa Clara, United States NVIDIA Full time

    NVIDIA is looking for a Security Engineer who is passionate about security automation, software development and a professional who is looking to take on new challenges. We are looking for an experienced security engineer to join our corporate Security Operations team responsible for actively developing scripts, playbooks, and software to automate a variety...


  • Santa Clara, United States Percipient.ai Full time

    Founded in 2017, percipient.ai utilizes state-of-the-art research in Computer Vision, Artificial Intelligence, and Deep Learning to develop cutting-edge tools that bridge the gap between AI and human understanding. We pride ourselves in maintaining an inclusive and collaborative work environment that enables each individual to grow while having a...


  • Santa Clara, United States NVIDIA Full time

    NVIDIA is looking for a Security Engineer who is passionate about security automation, software development and a professional who is looking to take on new challenges. We are looking for an experienced security engineer to join our corporate Security Operations team responsible for actively developing scripts, playbooks, and software to automate a variety...


  • Santa Clara, United States NVIDIA Full time

    We are looking for a Senior Security Software Engineer. NVIDIA is looking for an outstanding security engineer with HashiCorp Vault or similar platform experience to craft, validate, and guide implementations and integrations. The candidate is encouraged to: define problems & deliver highly innovative solutions that lead to significant differentiation in the...


  • Santa Clara, United States Palo Alto Networks Full time

    Palo Alto Networks Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO’s, Head of Infrastructure, Network Security Engineers, Cloud... View company page At Palo Alto Networks everything starts and ends with our mission: Being the...


  • Santa Clara, United States NVIDIA Full time

    Senior Security Architect - Hardware page is loaded Senior Security Architect - Hardware Apply locations US, CA, Santa Clara US, TX, Austin US, OR, Hillsboro US, NC, Durham US, WA, Redmond time type Full time posted on Posted 2 Days Ago job requisition id JR1979668 We are now looking for a Senior Hardware Security Architect: NVIDIA is seeking an experienced...


  • Santa Clara, California, United States tapwage Full time

    We are now looking for a Senior Hardware Security Architect - GPU Security Verification:NVIDIA is seeking a Senior Hardware Security engineer to architect, design, validate, and guide implementation of HW security for its GPU products with a focus on security verification. You are expected to take a strong, hands-on approach to ensuring secure development...


  • Santa Clara, United States Palo Alto Networks Full time

    Job Description Your Career Palo Alto Networks Next-Gen Firewall / Cloud Security test engineering team is looking for a seasoned and accomplished Senior Manager with experience in Networking, Cloud and/or Firewall Security technologies. You will be part of a world-class software test engineering team that works on qualifying various ground-breaking...


  • Santa Clara, United States Ampcus Full time

    Your Impact Communicate with the customer(s), sales teams, peers, engineering and support teams as appropriate Understand the customer environment, requirements, and security roadmap to implement the appropriate security solution Configure, implement, and maintain Security Operating Platform Optimize and migrate policies and objects from the existing...


  • Santa Clara, United States Ampcus Full time

    Job Title: Network Security Engineer Location: Remote Duration: Months with highly possible extension Your Impact Migrate customers from legacy firewall technologies to PAN platforms Build custom security policies and application signatures, configured for our client’s needs Take every opportunity to maintain proficiency and increase the level of...


  • Santa Monica, United States The Chemical Engineer Full time

    Join our team as a Senior Process Engineer in Process Development, where you'll be responsible for supporting the development of a clinical manufacturing process of engineered T cells with patient-derived neo-antigen specific TCRs. Additionally, this role evaluates process and technology improvements, is critical to process understanding and process...


  • Santa Clara, United States Telenav Full time

    Do you dream of what cars of the future will look like when you combine them with connectivity, a smartphone, and cloud services? Can you imagine uniting those dreams with a company that has the skills and relationships to make that a reality? If so, Telenav wants you! At Telenav, we believe the car is at the beginning of a massive innovation wave that...


  • Santa Clara, United States NVIDIA Full time

    We are now looking for a Senior Hardware Security Architect:NVIDIA is seeking an experienced hardware security architect interested in a chance to define, craft, and guide implementation of security architecture for our innovative SoCs and GPUs. You will be expected to take a strong hands-on role, working with diverse teams across both NVIDIA and external...


  • Santa Clara, United States Motion Recruitment Full time

    This cybersecurity company in the Bay Area provides optimized access and real time security for people, devices, and data. They help customers reduce risk, accelerate performance, and get visibility into any cloud, web, and private application activity.  They are looking to bring on a Senior Staff/Principal Software Engineer for a full time, remote...


  • Santa Clara, United States Pure Storage Full time

    Company Overview: BE PART OF BUILDING THE FUTURE. What do NASA and emerging space companies have in common with COVID vaccine R&D teams or with Roblox and the Metaverse? The answer is data, -- all fast moving, fast growing industries rely on data for a competitive edge in their industries. And the most advanced companies are realizing the full data advantage...


  • Santa Monica, CA, United States The Chemical Engineer Full time

    Join our team as a Senior Process Engineer in Process Development, where you'll be responsible for supporting the development of a clinical manufacturing process of engineered T cells with patient-derived neo-antigen specific TCRs. Additionally, this role evaluates process and technology improvements, is critical to process understanding and process...

  • Security Engineer

    5 days ago


    Santa Clara, United States NVIDIA Full time

    NVIDIA has been transforming computer graphics, PC gaming, and accelerated computing for more than 25 years. It’s a unique legacy of innovation that’s fueled by great technology—and amazing people. Today, we’re tapping into the unlimited potential of AI to define the next era of computing. An era in which our GPU acts as the brains of computers,...


  • Santa Clara, United States Palo Alto Networks Full time

    Senior Hardware Sustaining Engineer (NetSec) Palo Alto Networks Implement Zero Trust, Secure your Network, Cloud workloads, Hybrid Workforce, Leverage Threat Intelligence & Security Consulting. Cybersecurity Services & Education for CISO’s, Head of Infrastructure, Network Security Engineers, Cloud... View company page At Palo Alto Networks everything...


  • Santa Clara, United States Arista Networks, Inc. Full time

    Company Description Arista Networks was founded to pioneer and deliver software driven cloud networking solutions for large data center storage and computing environments. Arista’s award-winning platforms, ranging in Ethernet speeds from 10 to 400 gigabits per second, redefine scalability, agility and resilience. Arista has shipped more than 20 million...

  • Web Security Engineer

    2 weeks ago


    Santa Clara, United States Dice Full time

    Position Title: Web Security Engineer Location: Santa Clara, CA/Orange County, CA/Los Angeles, CA Full Time!! Responsibilities Implement secure coding practices throughout the software development lifecycle to protect against vulnerabilities and threats, following guidelines such as the OWASP Top 10. Provide training and support to the rest of the marketing...