Contribute to product design and development by suggesting and implementing security features and mitigations
Perform security reviews and develop mitigation plans
Triage, assess, address reported security vulnerabilities
Evaluate security of existing code
Advocate customer trust and evangelize security within organization
Report possible threats or software issues
Research weaknesses and find ways to counter them
Find cost-effective solutions to cybersecurity problems
Understand software, hardware and internet needs while adjusting them according to our business environment
Develop best practices and security standards for the organization
Test company software, firmware and firewalls
Assist fellow employees with cybersecurity, software, hardware or IT needs
5+ years of experience in software engineering, or a closely related field
2+ years of experience in security engineering or a closely related field
Solid knowledge and understanding of web security (experience with OAuth, OpenID Connect, Typescript, GoLang, ReactJS is a plus)
Familiarity with native security best practices is a plus
Ability to dive in, navigate, and understand relevant codebase and technologies
Comfortable working in a fast-paced environment
Excellent communication skills
Certifications such as CISSP, GSEC, CEH or CISM desired
An understanding of best practices and how to implement them at a business-wide level
At least 2 years' experience in the cybersecurity industry
Public Trust security clearance, or a willingness to obtain one
Critical thinking skills and the ability to solve problems as they arise
Ability to use Docker (either dockerfile or supporting the infrastructure)
Ability to use GCP Network and Network Infrastructure Topology
Ability to use one or more orchestrator (container management) tools such as Kubernetes, Nomad, Openshift
Experience in GCP or more cloud provider such as AWS, Azure
Ability to Bash scripting and doing automation task
Well versed on GIT and Docker
Have programming background is plus