Back to Search
Join our remote team as a seasoned Senior Security Engineer, where your expertise will play a pivotal role.
In this position, you'll take charge of formulating and implementing security best practices within architecture and code. Collaborating closely with diverse teams, your focus will be on pinpointing and addressing potential security vulnerabilities related to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more. This role provides a distinctive chance to influence and propel security initiatives within a vibrant and competitive industry.
Responsibilities
- Craft and apply security best practices within architecture and code
- Uncover and rectify potential security vulnerabilities related to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, etc.
- Collaborate closely with cross-functional teams to steer security initiatives
- Devise and execute effective approaches for threat modeling to identify vulnerabilities
- Lead engineering responses to externally identified threats and vulnerabilities
- Ensure adherence to pertinent security regulations and standards
- Create and update security documentation, encompassing technical specifications and test scenarios
- Regularly assess and enhance security metrics, identifying areas for improvement
- Stay abreast of evolving security trends, threats, and technologies to stay competitive
- Serve as a subject matter expert on security-related matters
Requirements
- Accumulate 3+ years of experience in security engineering or equivalent roles
- Demonstrate a track record of designing and implementing security best practices within architecture and code
- Possess the ability to lead engineering responses to externally identified threats and vulnerabilities
- Have experience collaborating with teams to identify and address potential security vulnerabilities related to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more
- Exhibit full-stack knowledge of IT infrastructure, encompassing AWS cloud services, IP networks, applications, databases, and operating systems
- Showcase proficiency and hands-on skills with Docker, ECS, Kubernetes, and container security
- Display extensive experience in embedded software development, architectures, security protocols, applied cryptography, and security standards
- Exhibit a deep understanding of the TCP/IP protocol stack and major protocols
- Demonstrate working knowledge of one or more general-purpose programming/script languages, including Java, C/C++, C#, Python, JavaScript, PowerShell
- Possess excellent English communication skills, both written and verbal, to facilitate effective global collaboration
Nice to have
- Bring experience with Metasploit and QRadar
- Demonstrate knowledge of SSL/TLS protocols and applications
- Show familiarity with secure SDLC methodologies
- Possess experience with security tools and platforms such as Nessus, Burp Suite, and Nmap
Benefits
- International projects with top brands
- Work with global teams of highly skilled, diverse peers
- Healthcare benefits
- Employee financial programs
- Paid time off and sick leave
- Upskilling, reskilling and certification courses
- Unlimited access to the LinkedIn Learning library and 22,000+ courses
- Global career opportunities
- Volunteer and community involvement opportunities
- EPAM Employee Groups
- Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn