Staff Cloud/Infrastructure Security Engineer
Posted on 2/1/2024
Bill.com

1,001-5,000 employees

Bill payment platform for businesses
Company Overview
Bill.com's mission is to make it simple to connect and do business. The company makes paper-based manual transaction processing obsolete by transforming how customers manage their cash inflows and outflows, creating efficiencies and freeing customers to run their businesses.
Fintech

Company Stage

N/A

Total Funding

$2B

Founded

2006

Headquarters

San Jose, California

Growth & Insights
Headcount

6 month growth

-2%

1 year growth

4%

2 year growth

7%
Locations
San Jose, CA, USA
Experience Level
Entry
Junior
Mid
Senior
Expert
Desired Skills
Python
Management
Operating Systems
AWS
Splunk
Linux/Unix
CategoriesNew
IT & Security
DevOps & Infrastructure
Software Engineering
Requirements
  • Minimum 7+ years of experience in Information Security
  • At least 3 years of experience in Cloud Security and enterprise infrastructure security
  • Experience with AWS IAM, Security Group management, AWS well architected framework
  • Experience with Splunk and Cribl Infrastructure and query languages
  • Knowledge of Qualys/Nessus
  • Good understanding of network security, infrastructure security, identity and access management, and operating systems
  • Experience with WAF rules and bot detection via Cloud tools
  • Strong Linux skills
  • Experience in physical, virtual and public cloud data center environments
  • Experience with zero trust network access implementations
  • Python/Shell Scripting experience preferred
Responsibilities
  • Protecting internal and external facing applications/API of bill.com
  • Identifying, tracking and mitigating security vulnerabilities in applications and infrastructure
  • Collaborating with the Security Operations Center on engineering tasks related to security
  • Cloud Security Design, Implementation and Security controls Management
  • Harden Cloud Infrastructure by introducing secure design defaults and security features endpoints & tooling
  • Maintaining and enhancing the enterprise security log analysis and Security Information Event Management (SIEM) System
  • Developing and sustaining an efficient Vulnerability Management Process
  • Building WAF rules and bot detection via Cloud tools
  • Implementing zero trust network access
Desired Qualifications
  • AWS Certification