Product Security Engineer
4 days ago
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.
Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.
Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.
Overall Purpose
This position consults with Project Management, Product Management, Product Development and Engineering teams to enable them to build and enhance security in EWS products and Services in line with EWS and industry standards. This position is highly technical and will lead Product Security efforts in maturing our product security program, mentor others and be a hands-on partner to our product teams to deliver innovative and secure products to our customers.
Essential Functions
- Completes the Identification, measurement, control and minimization of security risks to information systems across a broad range of disciplines including application and host security
- Develops and implements repeatable application security architecture patterns working with internal and external partners to ensure that systems are placed within the relevant security zones based on the data they house and their purpose.
- Contributes to the development of Early Warning security policy and procedures.
- Develop Threat Models, design and develop Security architectures and publish reference architecture/patterns implementations for Products and drive companywide adoptions
- Supports Product and Stakeholder teams efforts in building Cloud Native applications by implementing and engineering Cloud Security and Microservices Security best practices and industry standards
- Document and present risks and security issues that could impact the confidentiality, integrity and/or availability of the business (both internally and externally) by assisting in documentation, tracking and creating solutions for mitigation.
- Develop reference engineering implementations of Security patterns and Security Guardrails into Software frameworks and technology stack.
- Support and implement Security technology and security control design proof of concepts and implementations.
- Contribute and further integration of Secure Development lifecycle into product implementation and engineering efforts.
- Evaluates all product business cases including functional and security specs to ensure security standards are met.
- Support efforts with Product Development and Engineering teams to perform security analysis on all internally developed products and services.
- Participates in the development of EWS DevSecOps security strategy and posture by designing, advocating and helping build secure-by-default CI/CD pipelines and processes
- Identifies opportunities for automation, develop and build integrations for security automated scans and establishes patterns for product and infrastructure automated security
- Builds and maintains automation in and improvements in the build and deployment pipelines that are part of Continuous Integration (CI) and Continuous Deployment (CD)
- Provide support and technical guidance and foster a collective understanding of secure development and deployment of products and infrastructure
- Assists in the implementation of DevSecOps methodologies while addressing requirements and orchestrating security impact.
- Implements, tests, and supports the development of CI/CD pipelines in Gitlab, Harness and deployment of cloud native configuration management solutions using 3rd party tools
- Works with architecture teams to ensure that all newly developed and legacy applications and infrastructure implementations are in line with security policy and are compliance to the required frameworks (ISO, PCI, OWASP, NIST 800-53, etc.)
- Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
- Education and experience typically obtained through completion of a Bachelor's degree in Computer Science, Engineering, Math or Physical Science
- A minimum of 4 or more years of related experience
- Combined 3 years of application security, Security Architecture, Consulting, related IT or Information Security experience.
- Application development and/or Software Security background.
- Experience in Threat Modeling and control implementation.
- Exposure to Agile SDLC process
- Advanced knowledge of operating system, application, network, and database security architectures
- Experience in designing security for Cloud hosted products and containerized workloads
- Knowledge of Security Integration into CI/CD and experience in driving CI/CD adaptation for Security controls
- Hands-on experience with a diverse range of cloud security technologies and access management, Kubernetes, mitigation, encryption technologies, security information, threat management and infrastructure as code (IaC).
- Demonstrate advanced understanding in the field of Information Security in terms of both concepts and technology.
- Able to work with both technical and business stakeholder to design solutions that bring optimal security posture to products and infrastructure.
- Working knowledge of one or more general purpose programming/script languages including but not limited to Java, C/C++ and Python.
Preferred Qualifications
- Hands-on experience with DevSecOps tools like Gitlab, Github, Ansible, Packer and Harness
- Hands-on experience with DevOps and cybersecurity domains like vulnerability management and system hardening compliance in hybrid cloud and on-prem environment.
- CEH/CPT, or CISSP or CSSLP Certification and one of GWEB, GCSAC (GIAC Cloud Security and DevSecOps Automation), CKS (Kubernetes Security Specialist), AWS Cloud practitioner, Solutions Architect or Security Specialist or recognized Application Security certification
- Familiarity and experience with Security tools for SAST, Composition analysis and runtime testing.
- In depth knowledge with public cloud architecture, such as GCP, AWS and Azure, and virtualization technologies, such as Kubernetes, VMware and OpenStack
- Experience with defining and implementing security reference architectures and standards
- In depth knowledge of threat model, network security, cryptography, authentication and authorization
- Experience with automation tools and methodologies associated with DevOps and CI/CD pipelines
- Experience with enterprise architecture and partnering cross functionally
- Ability to establish priorities, work independently and proceed with objectives
- Experience with implementing common security frameworks and controls in highly automated environments, especially in CI/CD environments
Physical Requirements
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.
The pay scale for this position USD per year is: $135,000 - $150,000.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.
Additionally, candidates are eligible for a discretionary bonus, and benefits.
#Dice
#LI-NF1
Some of the Ways We Prioritize Your Health and Happiness
- Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
- 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
- Paid Time Off - Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
- 12 weeks of Paid Parental Leave
- Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
And SO much more We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.
-
Product Engineer
7 days ago
Scottsdale, United States NPDS Product Services, LLC Full timeLOCATED IN SCOTTSDALE - NORTH PHOENIXWANTED - JOB CONTRACTOR - PRODUCT DESIGN ENGINEER - SOLIDWORKS CADREMOTE WORK and or IN-OFFICE WORK Available*** PLEASE READ AD FULLY BEFORE APPLYING ***_____________We Design Products, for all industries and markets.This is a long-term job contract opportunity, for making the needed product designs we require.You must...
-
Product Engineer
7 days ago
Scottsdale, United States NPDS Product Services, LLC Full timeLOCATED IN SCOTTSDALE - NORTH PHOENIXWANTED - JOB CONTRACTOR - PRODUCT DESIGN ENGINEER - SOLIDWORKS CADREMOTE WORK and or IN-OFFICE WORK Available*** PLEASE READ AD FULLY BEFORE APPLYING ***_____________We Design Products, for all industries and markets.This is a long-term job contract opportunity, for making the needed product designs we require.You must...
-
Product Security Specialist
3 weeks ago
Scottsdale, Arizona, United States Early Warning Services, LLC Full timeEarly Warning Services, LLC is a leading provider of payment processing solutions. We're seeking a highly skilled Product Security Specialist to join our team. This individual will be responsible for ensuring the development of secure products and services that meet the needs of our clients.Job Description:Collaborate with cross-functional teams to design...
-
IT Security Engineer
7 days ago
Scottsdale, United States Plexus Worldwide Full timePlexus WorldwideClean wellness products and supplements to support weight loss, nutrition, skincare, and more. Plexus Worldwide - Founded in gut health. Experts in microbiome.We’re hiring an Information Technology Security Engineer III!About the positionResponsible for penetration testing a variety of environments based on methodical adherence to...
-
Application Security Engineer
2 weeks ago
Scottsdale, Arizona, United States Early Warning Services, LLC Full timeEarly Warning Services, LLC is a leading provider of payment processing solutions. We're seeking a highly skilled Application Security Engineer to join our team. This individual will be responsible for designing and developing secure applications that protect our clients' sensitive information.Job Description:Design and develop secure applications that meet...
-
Senior Cloud Security Engineer
2 days ago
Scottsdale, United States Axway Full timeSenior Cloud Security EngineerJob ID 2024-7806Category Technical/EngineeringJob LocationUS-AZ-ScottsdaleOverviewOverview: The Axway Cloud Security team is seeking a new Senior Cloud Security Engineer ithat will be critical to delivering secure cloud services to customers in government, banking, financial services, healthcare, life sciences, manufacturing,...
-
Senior Cloud Security Engineer
4 weeks ago
Scottsdale, United States Axway Software SA Full timeOverview Overview: The Axway Cloud Security team is seeking a new Senior Cloud Security Engineer ithat will be critical to delivering secure cloud services to customers in government, banking, financial services, healthcare, life sciences, manufacturing, and other security-conscious industries. Responsibilities Responsibilties: The Cloud Security...
-
Senior Security Engineer
3 weeks ago
Scottsdale, United States SMI IMAGING LLC Full timeDescription Join the fastest growing outpatient radiology practice in the Nation - SimonMed Imaging! Our commitment to excellence and improving patient care paired with the best-in-class technology allows us to be an industry leader in the constantly evolving health care environment. Secure your spot now and take advantage of a unique career opportunity to...
-
Senior Cloud Security Engineer
2 months ago
Scottsdale, United States Axway Software SA Full timeOverview In 2024, we are pursuing our ambitions to continue to enable organizations' digital transformation. We are looking for our new Cloud Security Engineer to join Axway's family. Are you ready? Join us now!! Together, we can. Together, we will. Axway is an enterprise integration company that's been around for over 20 years to digitally transform...
-
Senior Security Engineer
3 weeks ago
Scottsdale, Arizona, United States Top Secret Clearance Jobs Full timeAbout the OpportunityThis Senior Security Engineer position requires a highly skilled professional with Top Secret Clearance to work in Scottsdale, AZ. The ideal candidate will have a strong background in information assurance and excellent communication skills.ResponsibilitiesDevelop and implement security policies and procedures to protect sensitive...
-
Sr. Systems Engineer
5 days ago
Scottsdale, United States GeoLogics Corporation Full timePosition: Sr. Systems Engineer (Contract)Location: Scottsdale, AZPay: Up to $88.45 per hourClearance Requirement:A government issued active Secret clearance is required at the time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information.Due to the...
-
Senior Security Testing Engineer
3 weeks ago
Scottsdale, Arizona, United States Early Warning Services, LLC Full timeAre you a skilled security expert looking for a new challenge? Early Warning Services, LLC is seeking a Senior Security Testing Engineer to join our team. In this role, you will be responsible for performing advanced security testing and penetration exercises to identify vulnerabilities in our systems and applications.Key ResponsibilitiesPerform internal and...
-
Chief Security Engineering Architect
3 weeks ago
Scottsdale, Arizona, United States Vaco Full timeJob SummaryWe are seeking a seasoned Cybersecurity Engineer to join our team in Arizona. As a key member of our engineering department, you will play a crucial role in designing and implementing robust security measures to protect our applications.Key ResponsibilitiesSecurity Automation: Develop and maintain security automation tools that integrate with...
-
Secure IT Systems Engineer
2 days ago
Scottsdale, Arizona, United States IMPACT Technology Recruiting Full timeIMPACT Technology Recruiting is seeking a highly motivated and experienced Senior Information Security Engineer to join our team on a contract-to-hire basis.The ideal candidate will possess a minimum of 5+ years of experience in information technology and hands-on expertise with security tools, including reverse proxies, intrusion prevention, malware...
-
Security Software Engineer
4 weeks ago
Scottsdale, United States Vaco Full timeAre you someone who thrives in a fast-paced environment to build, deploy, and maintain cutting-edge security tooling? If so, Vaco is working with an Arizona based client to fill this important Security Engineer position that will support the application side of the business. In this role, you will play a crucial role in integrating scanning and monitoring...
-
Commercial Security Systems Sales Executive
3 weeks ago
Scottsdale, Arizona, United States Enterprise Security, Inc. Full timeAbout UsEnterprise Security, Inc. was founded in 2000 and has been serving local and national clients as a true commercial security systems integrator. With corporate offices in Yorba Linda, CA, regional offices in Tempe and Tucson, AZ, and strategic partners nationwide, we strive to deliver quality products and services.Salary RangeThe estimated annual...
-
Scottsdale, United States Top Secret Clearance Jobs Full timeAbout the job Systems Engineer with ACTIVE Secret Security Clearance (US Citizenship REQUIRED) Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. TITLE: Systems Engineer with ACTIVE Secret Security Clearance (US Citizenship REQUIRED)...
-
Enterprise Security Systems Account Executive
3 weeks ago
Scottsdale, Arizona, United States Enterprise Security, Inc. Full timeJob OverviewWe are seeking a skilled Enterprise Security Systems Account Executive to join our team. The ideal candidate will be responsible for generating new business through various sales and business development activities, including prospecting, presenting company products and services to customers, and resolving customer inquiries and complaints.
-
Senior Principal Systems Engineer
5 days ago
Scottsdale, United States GeoLogics Corporation Full timeRole:Senior Principal Systems EngineerLocation:Scottsdale AZ 85257Required Clearance:TS/SCI Active ClearanceW2 Hourly Contract with Limited BenefitsSalary:$80.00 - $113.50 per hr DOEDescription:GeoLogics is currently seeking a Senior Principal Systems Engineerwith an activeTS/SCI Clearancein Scottsdale AZto participate in requirements analysis and...
-
Senior Information Security Engineer
2 weeks ago
Scottsdale, United States Staffing Science Full timeThis role is in Scottsdale AZ and is hyrbid on site, so must be local and willing to go into an office 5 days per week.As a Senior IT Security Engineer, you'll play a crucial role in safeguarding our systems and ensuring compliance with industry best practices. This individual will take ownership of our security tools stack, ensuring it remains current,...