Back to Search
Join our remote team as a seasoned Senior Security Engineer!
In this capacity, you'll take charge of formulating and executing security best practices within both architectural frameworks and code. The role involves collaborating closely with multifunctional teams to pinpoint and address potential security voids associated with authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more. This role provides a distinctive chance to influence and propel security outcomes in a competitive and ever-evolving industry landscape.
Responsibilities
- Forge and deploy security best practices in both architecture and code
- Spot and rectify potential security voids tied to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, etc.
- Collaborate intimately with multifunctional teams to propel security outcomes
- Conceptualize and execute effective threat modeling strategies for vulnerability identification
- Take the lead on engineering responses to externally identified threats and vulnerabilities
- Ensure adherence to pertinent security regulations and standards
- Create and update security documentation, encompassing technical specifications and test scenarios
- Continuously assess and enhance security metrics to pinpoint areas for improvement
- Stay abreast of emerging security trends, threats, and technologies to maintain a competitive advantage
- Serve as a subject matter expert on security-related matters
Requirements
- Accumulate 3+ years of experience in security engineering or analogous roles
- Demonstrate a track record in devising and implementing security best practices within architecture and code
- Exhibit the ability to guide engineering responses to externally identified threats and vulnerabilities
- Possess experience collaborating with teams to identify and address potential security voids tied to authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more
- Command full-stack knowledge of IT infrastructure, spanning AWS cloud services, IP networks, applications, databases, and operating systems
- Familiarity and hands-on expertise with Docker, ECS, Kubernetes, and container security
- Extensive involvement with embedded software development and architectures, security protocols, applied cryptography, and security standards
- A profound understanding of the TCP/IP protocol stack and major protocols
- Operational knowledge of one or more general-purpose programming/script languages, encompassing Java, C/C++, C#, Python, JavaScript, PowerShell
- Possess exceptional English communication skills, both written and verbal, to facilitate global collaboration
Nice to have
- Hands-on experience with Metasploit and QRadar
- Knowledge of SSL/TLS protocols and their applications
- Familiarity with secure SDLC methodologies
- Previous exposure to security tools and platforms such as Nessus, Burp Suite, and Nmap
Benefits
- International projects with top brands
- Work with global teams of highly skilled, diverse peers
- Healthcare benefits
- Employee financial programs
- Paid time off and sick leave
- Upskilling, reskilling and certification courses
- Unlimited access to the LinkedIn Learning library and 22,000+ courses
- Global career opportunities
- Volunteer and community involvement opportunities
- EPAM Employee Groups
- Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn