Senior Security Engineer
Secops, Threat Hunting, Vuln Mgmt, Iam, Incident
Confirmed live in the last 24 hours
Locations
Remote • United States
Experience Level
Entry
Junior
Mid
Senior
Expert
Desired Skills
AWS
Management
REST APIs
Ruby
Python
TCP/IP
Requirements
- At least 5+ years of multifaceted defensive and offensive security experience in an enterprise Saas-based company
- Strong technical knowledge and deep experience in security logging and monitoring, vulnerability assessment, risk-based analysis, and vulnerability mitigation
- A skilled security expert, who can build tools and processes to incorporate threat intelligence from the ground up and automate threat hunting
- Hands-on experience designing and deploying security controls across all security domains such as access management, data protection, vulnerability management, incident response and management, application security, network security, preventive, detective, and offensive security solutions
- Capable of leveraging programming and/or scripting languages to solve practical day-to-day security challenges (Python, Go, Ruby)
- Operational experience with AWS security solutions (e.g Inspector, Guarduty, Detective, Security Hub, Advanced Shield)
- Strong understanding of encryption technologies (e.g TLS, HMAC, RSA, AES, PKI)
- Strong understanding of Web-related technologies (e.g HTTP, SOAP, REST, TCP / IP)
- Experience conducting or managing incident response for organizations, investigating targeted threats
- Experience and knowledge of common penetration testing techniques, application security vulnerabilities, OWASP Top 10, SANS 25, CWE, etc
- Ability to work autonomously in a fast-paced, cross-functional environment, and comfortable with ambiguity
- Bachelor's or Master's degree in computer science or equivalent experience
- Information security professional certifications are a plus (CLSSP, CISSP, CISA, GSSP, GSEC, etc.)
- Outstanding interpersonal and communication skills; ability to communicate information successfully internally and externally and to drive multi-functional alignment and action
- Code samples, papers, presentations, vulnerability disclosure reports (or anything else that demonstrates your competence)
Responsibilities
- You will bolster and develop our defensive security capabilities, identifying advanced threats to Workato, developing and implementing countermeasures
- Responding to incidents and conducting investigations as events happen through analyzing logs and various other sources
- Engineer and automate custom detection and response capabilities to combat malicious and/or unwanted behaviors within the environment
- Stay up to date with Tactics, Techniques, and Procedures (TTPs) that may apply to Workato and define and implement mitigation techniques to improve our overall risk posture
- Conduct in-depth vulnerability assessments and security auditing of assets
- Develop and improve processes for incident detection and the execution of countermeasures
- Contribute to the creation and upkeep of runbooks to handle security incidents
- Administer security configuration for threat management platforms for large-scale environments including security orchestration, automation, and response (SOAR) and security information and event management (SIEM) tools
- Contribute and showcase Workato as a SOAR platform used within Workato's Security Operations
- Provide guidance on security architecture for threat detection and response systems used as a part of the overall security operations
- Consult with our security compliance team during security audits to demonstrate our technical security capabilities
- Collaborate with Product Management and Development team members to enhance our Security program
- Take part in the Security Operations on-call rotation, including leading all incident response efforts and documentation during your rotation
Cloud integration software company
Company Overview
Workato's mission is to enable companies to tap into the growth mindset and transform their organization with Workato. Wrokato is moved by innovation — a passion to create the best possible way and the drive to continue to make it better.
Benefits
- Flexible working arrangements
- EAP
- Health insurance
- Stock options
- Professional development
- PTO
- Company events & recreation time
Company Core Values
- Prioritize customers
- Win together
- Act now
- Think ahead
- Better each other
- Go offbeat
- Have fun