Full-Time

Principal Secdevops Engineer

Confirmed live in the last 24 hours

Procore Technologies

Procore Technologies

1,001-5,000 employees

Construction management software for project efficiency

Industrial & Manufacturing
Enterprise Software

Senior, Expert

Austin, TX, USA

Remote candidates will be considered.

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
Packer
Kubernetes
Puppet
Ruby on Rails
Postgres
Docker
AWS
Cryptography
Terraform
Nginx
Ansible
Snowflake
Requirements
  • BS degree in Computer Science, a similar technical field of study, or equivalent practical experience is required; MS or Ph.D. degree in Computer Science or a related field is preferred
  • 8+ years of experience in Software Engineering with at least 5 years of experience building security products and internal security tools
  • Experience with conducting threat assessments and building threat models
  • Differential Privacy techniques as they apply to access to sensitive data, anonymization and sharing
  • Thorough understanding of vulnerability classes (OWASP), how they can be exploited
  • Knowledge of cryptography, including symmetric and asymmetric ciphers, hash functions, PKI, and certificates. Application of cryptography to software engineering problems, such as secrets management, authentication, and data masking, and tokenization.
  • Understanding of open standards such as OAuth2, OIDC, SAML, and TLS
  • Familiarity of data privacy laws such as GDPR and CCPA and related data security requirements
  • Deep background and experience in: AWS services (EC2, ELB, RDS, KMS, Cloudfront, Secrets Manager, Route53, S3, Lambda) and orchestration tools, IAM implementation, Linux Systems, Hashicorp Technologies (Consul, Terraform, Vault, Packer), Containers (Docker, Kubernetes) and Container Management (Istio, EKS, Secrets management), Config Management (Puppet, Ansible, Salt), Endpoint host protection technologies (Prismacloud, Crowdstrike, Falco), WAF technologies (Cloudflare), Security Observability and analytics (ELK, Elastic), Networking protocol knowledge (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
  • Basic project management skills, experience creating application documentation, and demonstrated ability to train other team members
  • Experience creating engineering as-built diagrams and data flow diagrams to describe engineered product
  • Technical Certifications are a plus (GIAC, OCSP, CISSP, AWS Security Specialty, Solutions Architect, etc)
Responsibilities
  • Apply suitable design patterns to manage the privacy and security of customer data within our production environment
  • Understand the security and general architectural vision of Procore 2.0
  • Be a technical security mentor for the Security Engineering team, as well as an influencer of the Cloud Runtime Engineering team
  • Work closely with Security Architecture, Product, Cloud Runtime Engineering, and Legal
  • Work across Terraform, Ruby on Rails, Apache, Nginx, Snowflake, data Analytics, PostgreSQL, AWS tech stacks

Procore Technologies provides construction management software that helps improve the efficiency of construction projects. Its platform includes tools for various stages of construction, such as prequalification, bid management, estimating, quality and safety management, design coordination, and Building Information Modeling (BIM). This software allows construction teams to manage projects more effectively by enhancing communication and visibility between field and office operations. Procore stands out from competitors by offering a comprehensive suite of tools in one platform and providing tailored training and support to meet the specific needs of different clients. The company's goal is to help construction professionals deliver projects on time and within budget while fostering a diverse and inclusive work environment.

Company Stage

IPO

Total Funding

$552.3M

Headquarters

Carpinteria, California

Founded

2003

Growth & Insights
Headcount

6 month growth

7%

1 year growth

13%

2 year growth

14%
Simplify Jobs

Simplify's Take

What believers are saying

  • Procore's global reach, with over 1,000,000 projects completed in 125 countries, demonstrates its strong market presence and reliability.
  • The company's strategic partnerships, such as with Goldman-Sachs for construction payments, enhance its service offerings and operational efficiency.
  • Significant investments from firms like Richelieu Gestion SA and CenterBook Partners LP indicate strong financial backing and growth potential.

What critics are saying

  • The construction management software market is highly competitive, requiring Procore to continuously innovate to maintain its market position.
  • The complexity of achieving FedRAMP authorization could delay Procore's entry into the federal market, impacting potential revenue streams.

What makes Procore Technologies unique

  • Procore's all-in-one construction management platform covers every stage of the construction lifecycle, from preconstruction to closeout, unlike competitors who may focus on specific phases.
  • The company's commitment to FedRAMP authorization sets it apart by ensuring the highest standards of security and data compliance for federal customers.
  • Procore's extensive support resources, including tailored training and a community forum, provide a personalized approach that enhances client satisfaction and platform utilization.

Help us improve and share your feedback! Did you find this helpful?