Job Description
Responsibilities
-
- Work highly independently, with multiple stakeholders outside of the formal management structure;
- Write good quality policies, procedures and technical documentation;
- Nurture security awareness in the organization, produce material to support this, and relate this to the current threat landscape;
- Be familiar with risks introduced to organization by third parties, and processes to mitigate these;
- Take a risk-based approach to all facets of information security;
- Have a “finger on the pulse” of current challenges and exploits in the ecosystem;
- Be an active participant in a truly world class global security organization.
Requirements
-
- Code (or script) in at least one modern application development or utility language;
- Use Source Code Management and Document Management Systems to organize business function tasks and publish relevant material;
- Be a competent Linux user;
- Know how to build, run and deploy secure Docker containers;
- Be aware of how containers and microservices are configured, and can be secured and orchestrated, in particular using Kubernetes;
- Use open source tooling to programmatically test and verify the safety and integrity of bespoke software;
- Analyze data sets and produce reports using basic tools (e.g. SQL, POSIX stream processing tools, spreadsheets, ODBC, Python);
- Understand principles around secure Identity Management and Authentication;
- Understand the implementation of secure messaging systems in the context of privacy awareness, including GPG and encrypted instant messaging;
- Have a good basic comprehension of computer networks, the Internet, and supporting systems such as web servers and proxies;
- Understand DNS, SSL/ TLS, and how traffic on IP networks establishes end-to-end security and trust.
To apply for this job please visit jobs.lever.co.