Full-Time

Principal Secdevops Engineer

Posted on 10/15/2024

Procore Technologies

Procore Technologies

1,001-5,000 employees

Construction management software for project efficiency

Industrial & Manufacturing
Enterprise Software

Senior, Expert

Austin, TX, USA

Position can be based in Austin, TX office; remote candidates will be considered.

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
Packer
Kubernetes
Puppet
Ruby on Rails
Postgres
Docker
AWS
Cryptography
Terraform
Nginx
Ansible
Snowflake
Requirements
  • BS degree in Computer Science, a similar technical field of study, or equivalent practical experience is required; MS or Ph.D. degree in Computer Science or a related field is preferred
  • 8+ years of experience in Software Engineering with at least 5 years of experience building security products and internal security tools
  • Experience with conducting threat assessments and building threat models
  • Differential Privacy techniques as they apply to access to sensitive data, anonymization and sharing
  • Thorough understanding of vulnerability classes (OWASP), how they can be exploited
  • Knowledge of cryptography, including symmetric and asymmetric ciphers, hash functions, PKI, and certificates. Application of cryptography to software engineering problems, such as secrets management, authentication, and data masking, and tokenization.
  • Understanding of open standards such as OAuth2, OIDC, SAML, and TLS
  • Familiarity of data privacy laws such as GDPR and CCPA and related data security requirements
  • Deep background and experience in: AWS services (EC2, ELB, RDS, KMS, Cloudfront, Secrets Manager, Route53, S3, Lambda) and orchestration tools, IAM implementation, Linux Systems, Hashicorp Technologies (Consul, Terraform, Vault, Packer), Containers (Docker, Kubernetes) and Container Management (Istio, EKS, Secrets management), Config Management (Puppet, Ansible, Salt), Endpoint host protection technologies (Prismacloud, Crowdstrike, Falco), WAF technologies (Cloudflare), Security Observability and analytics (ELK, Elastic), Networking protocol knowledge (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
  • Basic project management skills, experience creating application documentation, and demonstrated ability to train other team members
  • Experience creating engineering as-built diagrams and data flow diagrams to describe engineered product
  • Technical Certifications are a plus (GIAC, OCSP, CISSP, AWS Security Specialty, Solutions Architect, etc)
Responsibilities
  • Apply suitable design patterns to manage the privacy and security of customer data within our production environment
  • Understand the security and general architectural vision of Procore 2.0
  • Be a technical security mentor for the Security Engineering team, as well as an influencer of the Cloud Runtime Engineering team
  • Work closely with Security Architecture, Product, Cloud Runtime Engineering, and Legal
  • Work across Terraform, Ruby on Rails, Apache, Nginx, Snowflake, data Analytics, PostgreSQL, AWS tech stacks

Procore Technologies offers construction management software that streamlines various stages of construction projects, including preconstruction and project management. The platform features tools for bid management, estimating, quality and safety management, and Building Information Modeling (BIM), which improve communication and visibility between teams. Unlike its competitors, Procore provides a comprehensive all-in-one solution along with personalized support services tailored to clients' needs. The company's goal is to be a trusted partner for construction professionals worldwide, helping them complete projects efficiently and effectively.

Company Stage

IPO

Total Funding

$552.3M

Headquarters

Carpinteria, California

Founded

2003

Growth & Insights
Headcount

6 month growth

7%

1 year growth

14%

2 year growth

14%
Simplify Jobs

Simplify's Take

What believers are saying

  • Integration with FYLD shows 12% productivity gains, enhancing field and back-office connectivity.
  • Procore AI Solutions focus on leveraging AI to improve construction management efficiency.
  • $17.10 million investment by LMR Partners LLP reflects strong investor confidence.

What critics are saying

  • Oracle's lawsuit for alleged trade secret theft could lead to legal expenses and reputational damage.
  • Expansion into MENA may face regional regulatory and market entry challenges.
  • Procore AI Solutions may face scrutiny over data privacy and security concerns.

What makes Procore Technologies unique

  • Procore offers a comprehensive suite covering all construction stages, from preconstruction to closeout.
  • The platform integrates AI solutions like Procore Agents, Insights, and Copilot for efficiency.
  • Procore's global reach includes over 1,000,000 projects in 125 countries, showcasing its scalability.

Help us improve and share your feedback! Did you find this helpful?

INACTIVE