Collaborate with the Third‑Party Risk Management team and the business to evaluate new applications and services, assess security controls, and ensure alignment with enterprise security requirements.
Collaborate with IT teams to enforce security standards that enable secure technology solutions.
Provide security guidance with a holistic view of how security configuration changes impact Security Operations, GRC compliance requirements, and Security Engineering workflows and tooling.
Evaluate proposed application and platform configuration changes from business and Security Engineering teams, analyze their impact on the security posture and architectural standards, and make recommendations.
Support cross-functional adoption of security controls for IaaS/PaaS/SaaS, including reference architectures and guardrails.
Deliver security guidance related to creating and deploying network security controls such as firewall access control lists (ACLs).
Assess changes in the external threat landscape using threat intelligence and collaborate with technology teams to guide the implementation of appropriate defensive controls.
Teach, lead, and influence IT and security teams to incorporate security into enterprise and client-facing projects and applications.
Assist in developing enterprise security standards aligned to industry frameworks (e.g. CIS Critical Security Controls), and partner with the business to ensure controls are clearly understood and effectively applied across technologies and use cases.
Partner with the Cyber Security Product team to evaluate security tools to ensure they meet business needs, security requirements, and architectural standards. This includes assessing integration with existing systems and presenting clear, actionable recommendations to stakeholders.
Use workflow automation platforms to streamline processes, reduce manual effort, and improve operational efficiency.
Requirements
Bachelor's degree in cyber security, information technology or a similar discipline, or relevant work experience
10+ years of combined hands-on experience in at least 2 of the following areas: Windows, Linux/Unix server engineering, Cloud engineering, preferably AWS
Configuration of security tooling such as EDR/XDR, IDS/IPS, SIEM, PAM, CSPM, DLP
Experience in security architecture, security engineering or similar discipline
Technical knowledge of networking concepts such as DNS, DHCP, VLANs, CIDR Ranges, Proxies, firewalls, and load balancers
Good working knowledge of software development standards and SDLC concepts
Ability to work in large global environments spanning multiple time zones
Must be available for infrequent international and domestic travel
Must be able to effectively communicate with technical and non-technical professionals.
Tech Stack
AWS
Cloud
Cyber Security
DNS
Firewalls
Linux
SDLC
Unix
Benefits
Medical, vision, dental and mental health benefits for you and your family, with access to a health care concierge, and Flexible or Health Savings Accounts (FSA or HSA)
Free concert tickets, generous paid time off including paid holidays, sick time, and personal days
401(k) program with company match, stock reimbursement program
New parent programs including caregiver leave and baby bonuses, plus fertility, adoption, foster, or surrogacy support
Career and skill development programs with School of Live, tuition reimbursement, and student loan repayment