Job Details

ID #15679166
State California
City Glendale
Job type Permanent
Salary USD TBD TBD
Source DISQO
Showed 2021-06-21
Date 2021-06-20
Deadline 2021-08-19
Category Et cetera
Create resume

Senior Security Engineer, IAM

California, Glendale, 91201 Glendale USA

Vacancy expired!

DISQO is changing the way that the world's largest brands, agencies and consumer intelligence companies get to know their consumers. We've built the first identity-based platform that combines consumer attitudes and behaviors together to power the most accurate and predictive insights solutions for our customers, and we do all of that with the willing participation of our consumers and without using outdated technologies like third-party cookies. We help our customers get a cross-platform view into consumer sentiment, measure advertising effectiveness, analyze consumer purchase journeys, and ultimately grow their brands.

Our mission at DISQO is to engage people to share their opinions and behaviors openly to help our customers make the right decisions. With over one million active members sharing their attitudes and behaviors, DISQO is looking to expand, improve and create world-class applications for people to openly share their data for research.

Check out the DISQO Developer Blog for the latest from our DISQOTECH team.

This is a great opportunity to join a fun, exciting & highly motivated team and upgrade your skills while creating real impact. We use a modern tech stack and cloud infrastructure. We are not only looking for work experience, but rather the willingness to step up to challenges and the ability to learn quickly.

We believe the best software is written and managed by small teams that know how to make the impossible possible. We use agile software development techniques and modern tools to focus our efforts on solving our business goals. We use OKR's to track everything we do. We deliver early and often. We obsess over our code, architecture, and infrastructure. And we believe that these practices lead to higher quality products.

What you will do:
    • Leverage your IAM fundamentals and understanding of the identity lifecycle to build and enhance systems that control, limit and continuously audit the integrity our identity plane
    • Work to build, maintain and continuously enrich the quality of our security telemetry, working to improve our threat data using a combination of off-the-shelf technologies and custom engineering.
    • Perform security reviews and threat assessments on an as-needed basis to ensure the upkeep and maintenance of our security posture
    • Identify, verify and contain and remediate threats: serve as Incident commander security incidents, ensuring that potential issues are identified, classified, contained and documented in accordance with InfoSec policies.
    • Drive detailed RCA in the wake of incidents, ensuring a level of analysis that ensures both a deep understanding of the incident, it's content, and the controls and remediation that will prevent it from recurring.
    • Act as a model of InfoSec practices, integrity and transparency, evangelizing the use of cryptography, data handling, threat awareness and operational security.

What you bring to the table:
    • Broad understanding of multiple knowledge domains, including IAM, vulnerability management, threat detection, incident response and orchestration-based automation and response.
    • 7 years progressive experience in a combination of security, software and platform engineering, including
    • 3 years developing security services or tooling with a modern, high-level language (python, golang)
    • 2 years working on common auth protocols and frameworks (OpenID Connect, Oauth, Saml, Kerberos, Claims
    • 2 years working on threat, vuln, fraud or compliance ideally building or supporting cross-functional mitigation programs
    • A background that involves creating a layered security perimeter in the context of a cloud- and container-based microservices
    • Experience supporting (or building) a security operations function in startup environments, ideally serving as incident commander for security incidents
    • Knowledge of networking fundamentals, including TCP/IP, OSI stack model, L2, L3 and L7 fundamentals and raw packet analysis. Fluency with common cryptographic modalities the ability to perform common cryptographic tasks using public key cryptography, certificates and gpg
    • Experience using tools like Splunk, Guard Duty and Qualys to develop and manage threat telemetry
    • One industry-recognized security certification (CEH, CISSP, CCSP, CISA) or the willingness to secure one within six months
    • A foundational belief that security succeeds to the extent that it empowers that your mission instead saying "no, you cannot" is to say "yes, here is how"
    • Agile DNA

#dice

Perks & Benefits:

• 100% covered Medical/Dental/Vision for employee, 80% for dependents

• Equity

• Unlimited Vacation

• Flexible work hours

• Catered lunches 3x a week

• Stocked pantry

• Happy Hours

• Onsite Fitness Program

• Discounted Gym Membership

• Quarterly Offsites

• 401K

• Life Insurance

• FSA

• Paid Maternity/Paternity leave

• Disability Insurance

• Travel Assistance Program

• 24/7 Counseling Services offered to employees

DISQO is an equal opportunity employer. Discovery, innovation, and growth are possible when we open ourselves to new possibilities, perspectives, and approaches. That's why, at DISQO, we welcome, support, and empower individuals from diverse backgrounds. Exceptional teams are rooted in extraordinary people, each with a unique story and a compelling set of skills. DISQO does not discriminate against employees based on race, color, religion, sex, national origin, gender identity or expression, age, disability, pregnancy (including childbirth, breastfeeding, or related medical condition), genetic information, protected military or veteran status, sexual orientation, or any other characteristic protected by applicable federal, state or local laws.

Recruiting firms that submit resumes to DISQO without first entering into a written contract will not be entitled to any compensation on candidates referred by that firm.

Vacancy expired!

Subscribe Report job