Posted in

Senior Security Engineer

Senior Security Engineer

CompanyJustworks
LocationNew York, NY, USA
Salary$167500 – $205000
TypeFull-Time
Degrees
Experience LevelSenior

Requirements

  • At least 5+ years experience in information security concepts, common technical security controls, and security architecture design principles, ideally in a SaaS environment
  • Solid experience with Secure-SDLC processes and DevSecOps, including secure design, threat modeling, vulnerability management, etc.
  • Familiar with secure coding practices and security scanning technologies
  • Extensive experience in security architecture, system design, and engineering scalable security solutions in a cloud-native (AWS) environment
  • Background as a software engineer, security architect, or security engineer with experience implementing DevSecOps
  • Hands-on technical expertise with depth in modern cloud-based security architecture and engineering in an AWS environment
  • Proven track record as a strong communicator
  • Strong analytical skills
  • Exceptional organizational skills

Responsibilities

  • Work with other security engineers on technical design reviews to evaluate existing security controls and identify opportunities to enhance the security posture of Justworks
  • Work with other security engineers to bring adequate security capabilities to Justworks
  • Provide technical and architectural guidance to product managers, product engineers, and corporate IT on digital security
  • Bring and implement security capabilities in AWS and for corporate. Work with the team to execute and deliver the roadmap
  • Develop security architecture, design, and coding standards across the Justworks applications and infrastructure to promote a standardized set of security requirements, aligning with internal policies and meeting external compliance requirements
  • Work collaboratively with the current product managers and staff engineers or future Enterprise Architecture team to design and implement enterprise security capabilities into solution architecture
  • Participates in major new product development projects to ensure that appropriate security controls are built into systems prior to production cutover
  • Drive process improvement and control implementation projects in coordination with the larger Digital Technology team at Justworks
  • Act as a cross-functional tools and services expert, working with engineering and risk teams to build security control requirements
  • Help Cyber Defense Operations triage incidents as need especially related to product security, application security and AWS security
  • Perform other related duties as assigned.

Preferred Qualifications

  • Technical experience with DevOps, Jira, and other agile automation tools
  • Ruby on Rails & Javascript
  • (Preferred) Security Certifications: CISSP, CISM, CRISC, GIAC, CCSP or CEH