Mapbox is the leading real-time location platform for a new generation of location-aware businesses. They are seeking a Staff Cloud Security Engineer to join their Security & Compliance team, responsible for helping engineers build secure systems and conducting security reviews and assessments.
Responsibilities:
- Conduct AWS security reviews (deep dive into our AWS environment to validate security best practices are being followed)
- Make security improvements recommendations and work with our production support teams to implement security improvement in AWS
- Partner with the Lead Security Architect in fixing custom-built security tools bots
- Conduct in-depth security reviews of application code, working closely with developers to code securely from the outset and address issues early during coding and testing phases
- Partner with internal product teams to implement a secure-by-default design into their own products
Requirements:
- Bachelor's or higher degree in Computer Science or similar
- 5+ years of experience in product or application security and related software engineering roles
- Experience with AWS services like GuardDuty, CloudTrail log review, IAM, Security Groups, CloudFront, CloudFormation, S3, ECS, Lambda, DynamoDB and RDS
- Proficiency in a programming language (e.g. Python, JavaScript or Node.js or TypeScript), testing practices, and documentation
- Subject matter expertise in security best practices and the ability to quickly make correct risk assessments that prioritize the overall benefit to the company
- Additional experience with AWS services like API Gateway, CodeBuild, VPCs, Inspector, Advanced Shield, Athena, and Glue
- Strong proficiency in a programming language (e.g. JavaScript or Node.js or Python), testing practices, and thorough documentation
- Experience with SOC 2, GDPR, and ISO 9001 or ISO 27001 compliance standards a plus