Senior Security Engineer
Company | True Anomaly |
---|---|
Location | Long Beach, CA, USA, Washington, DC, USA, Colorado Springs, CO, USA, Denver, CO, USA |
Salary | $140000 – $200000 |
Type | Full-Time |
Degrees | Bachelor’s |
Experience Level | Senior |
Requirements
- Bachelor’s degree in Computer Science, Information Security, or equivalent professional experience.
- Minimum of 6 years of experience in information security, with a focus on security engineering.
- Proficiency with security tools and technologies such as SIEM, IDS/IPS, vulnerability scanners, and endpoint protection.
- Deep understanding of common vulnerabilities and how to exploit them.
- Strong understanding of cloud security principles and best practices.
- Excellent analytical, problem-solving, and communication skills.
- Working knowledge of at least one programming language such as Python, Elixir, C, Rust.
- Ability to work independently and collaboratively in a fast-paced environment.
Responsibilities
- Conduct regular security assessments, vulnerability scans, and risk assessments to identify and mitigate potential threats.
- Provide subject matter expertise for application and product security.
- Participate in an on-call rotation for security events.
- Support the deployment of Public Key Infrastructure and NDR/network monitoring.
- Provide vendor recommendations and implementation guidance for management of cloud and on-premise assets.
- Identify deficiencies in the current security program and fill them.
- Collaborate with cross-functional teams to ensure security measures are integrated into the system development lifecycle.
- Monitor and analyze security logs from various sources (e.g., SIEMs, IDS/IPS) to identify suspicious activities and respond to security incidents.
- Assist in the development and maintenance of security policies, procedures, and guidelines.
- Stay updated with the latest security trends, threats, and technology solutions.
- Provide support to internal stakeholders on compliance and security best practices.
- Participate in change management and change review board, identifying risks in implementation process.
Preferred Qualifications
- Experience with cloud platforms such as Azure, AWS, or Google Cloud.
- Familiarity with DevSecOps and security operations practices and tools.
- Experience working at a startup and/or in the defense industry.
- Active TS/SCI clearance.
- One or more identified CVEs or vulnerability writeups.