Evaluate, design, and implement robust security systems
Shield our information assets (devices, networks, applications, data, users) from cyber threats and continuously fortify our security posture
Focus on reducing our attack surface and continuously improve our company security posture
Develop, modify, and implement security controls aligned with company policies and procedures that affect cybersecurity operations
Ensure compliance with applicable industry standards, frameworks, and regulations
Work hand-in-glove with Data Engineering, Analytics, and IT Operations to weave security and data governance best practices seamlessly into the software development life cycle
Evaluate company and vendor technology infrastructure security
Participate in disaster recovery and business continuity planning, reviews, and testing to continuously improve our organizational and operational resilience
As a key member of our Security Incident Response team, apply keen investigative skills and take swift action in resolving security alerts or breaches
Conduct penetration testing and vulnerability scanning on all company networks and applications
Requirements
Bachelor's degree in Computer Science, Information Security, Cybersecurity, Information Technology or related field
Strong technical background in software development with at least 4 years experience in cybersecurity engineering role working closely with software engineering, dev/ops, and/or cloud/networking/infrastructure teams
Experience designing, implementing, and managing layered security programs within cloud first architectures integrated with large third-party SaaS/ecommerce platforms
Experience working with tech stack/tools: Python, Snowflake, dbt, Fivetran, Kafka, Tableau, Git, Informatica, Kestra, Excel
Experience working with tech stack/tools: JS, PHP, PostgreSQL, Kubernetes, Kafka/Airflow, NeonDB, Cloudflare, Gitlab, Doppler
Experience securing applications built on cloud platforms (DigitalOcean, AWS, or GCP)
Deep understanding of key industry frameworks and controls including NIST CSF, CIS CSC, PCI-DSS, Cyber Defense Matrix, ISO 27001, and MITRE ATT&CK
Familiarity with a broad range of security tools and technologies including EDR, SIEM, SWG, CASB, DLP, & IDS/IPS
Top-notch analytical and problem-solving skills
Outstanding communication skills, both written and oral, along with a knack for building strong interpersonal connections