Если вы раньше входили через Google, сбросьте пароль для своей Gmail-почты через кнопку «Забыли пароль?» на экране входа. Затем войдите по email и новому паролю.
Если аккаунта ещё нет, зарегистрируйтесь с Gmail-почтой — после подтверждения почты мы предложим задать пароль.
Что нового
Загружаю обновления...
Что нового
Загружаю обновления...
Работа найдется быстрее с подпискойКандидат найдётся быстрее с подпиской
Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
Factorial provides Business Management Software that helps small and medium-sized enterprises streamline company processes, automate workflows, centralize people data, and make better business decisions. Its customers are located across more than 60 countries.
задачи
Drive the security strategy for cloud environments and ensure security is built into the architecture from day one;
Lead the identification, assessment, and remediation of infrastructure vulnerabilities;
Maintain the infrastructure risk register and prioritize mitigation efforts based on business impact;
Implement and maintain hardening strategies across the infrastructure;
Monitor security alerts and incidents;
Conduct incident response and investigations to identify root causes within the infrastructure stack;
Develop and manage infrastructure security tooling, including CNAPP, CSPM, and vulnerability scanners;
Secure infrastructure and runners within CI/CD pipelines;
Partner with IT, DX, and SRE teams to integrate infrastructure security best practices and automate security controls;
Develop, maintain, and regularly update incident response plans and infrastructure security policies.
требования
5+ Years of experience in Infrastructure Security or Security Engineering;
Experience with cloud environments, including AWS or Azure;
Experience with Infrastructure as Code using Terraform;
Experience with containerization using Kubernetes;
Deep experience managing enterprise-grade vulnerability scanning and risk prioritization workflows;
Strong understanding of network security, OS hardening on Linux/Unix, and identity management with IAM;
Strong understanding of cyberattacks and threat actor Tactics, Techniques, and Procedures related to infrastructure and cloud escape;
Experience using and managing EDR, CNAPP, SIEM, and vulnerability management solutions such as Tenable, Qualys, or Wiz;
Proficiency in scripting and automation using Python, Bash, or similar languages;
Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent experience;
Nice to have: Industry certifications.
условия
Office-first, flexible approach with on-site work several days a week and remote work supported when appropriate;
80% On-site and 20% remote work;
Continuous training and learning based on individual needs;
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.
Про зарплаты
Анонимные данные по зарплатам и грейдам. Можно сверить вилку с рынком.
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.