F5 develops cybersecurity solutions that help organizations create, secure, and operate applications. Its security work protects consumers from fraud and enables companies to focus on innovation.
security engineer for cloud-hosted systems
подготовьтесь к отклику
ai-инструментыЧтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
задачи
- Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations;
- Leverage native Azure, GCP, and AWS cloud services to automate and improve security and control activities;
- Develop or implement open-source and third-party tools for detecting, preventing, and analyzing security threats;
- Perform technical security assessments of F5aaS products and enterprise cloud-hosted, virtual, and on-premise systems, including static and dynamic analysis and threat modeling;
- Review and test changes to services, applications, and networks for potential security impacts;
- Manage penetration and segmentation testing of F5 applications and networks;
- Review changes to and ongoing operations of enterprise environments and supporting systems for security and compliance impacts;
- Assist with detection and response efforts as a product-line subject matter expert;
- Propose new controls to Security Architecture and GRC;
- Build and implement new security controls, processes, and tools;
- Implement zero-trust and IAM security patterns with cloud-agnostic tooling;
- Collaborate with Architecture, Site Reliability Engineering, and Operations teams to develop and implement technical solutions and security standards;
- Configure industry-standard security testing and scanning tools for network scanning, code scanning, and posture management;
- Advise enterprise stakeholders on security best practices and secure design principles;
- Design, develop, administer, implement, and manage enterprise security tooling.
требования
- Experience working with high-availability enterprise production environments;
- Ability to script in multiple languages, including Go, Rust, Python, or Ruby, and build scripts for process improvement and automation;
- Baseline competency administering Microsoft Azure, AWS, GCP, or equivalent public cloud infrastructure;
- Extensive hands-on experience with security and networking architecture, networking protocols, network security design, wireless security, intrusion prevention and detection, and firewall architecture;
- Experience automating security testing and reporting outputs;
- Experience assessing and implementing technical security controls;
- Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code;
- Experience with network and application vulnerability and penetration testing tools;
- Strong written and verbal communication skills;
- Excellent interpersonal and relationship skills with a collaborative mindset;
- Strong self-directed work habits, initiative, drive, creativity, maturity, self-assurance, and professionalism;
- Agile, tactful, and proactive attitude with the ability to prioritize and escalate appropriately;
- B.S. or M.S. in Computer Science, Engineering, or a related field, or equivalent experience;
- 5 Years of progressive responsibility in a security organization;
- 2–6 Years of relevant security engineering or network security experience;
- Nice to have: Experience with Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker, HashiCorp Vault, Palo Alto, Cisco, Qualys, Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, or Git.
условия
- Warsaw, Mazowieckie, Poland.
навыки
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.