Back to Search
We're in search of a seasoned Senior Security Engineer ready to become a key player in our remote team.
In this capacity, your focus will be on crafting and deploying security best practices across architecture and code. Your collaborative efforts with cross-functional teams will pinpoint and address potential security vulnerabilities, spanning areas like authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more. This role presents a distinct opportunity to influence and steer security outcomes in a fast-paced and competitive industry.
Responsibilities
- Craft and implement security best practices in architecture and code
- Identify and rectify potential security vulnerabilities encompassing authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, etc.
- Collaborate closely with cross-functional teams to achieve security goals
- Devise and implement effective threat modeling strategies to uncover vulnerabilities
- Take the lead in engineering solutions for externally identified threats and vulnerabilities
- Ensure adherence to relevant security regulations and standards
- Generate and upkeep security documentation, comprising technical specifications and test scenarios
- Regularly assess security metrics to pinpoint areas for enhancement
- Stay abreast of emerging security trends, threats, and technologies to stay competitively positioned
- Serve as a subject matter expert on security-related matters
Requirements
- Accumulate 3+ years of experience in security engineering or analogous roles
- Demonstrate proven expertise in designing and executing security best practices in architecture and code
- Possess the ability to lead engineering responses to externally identified threats and vulnerabilities
- Show experience collaborating with teams to identify and address potential security vulnerabilities, spanning authentication, authorization, network segmentation, encryption, container configuration, bastion host setup, and more
- Hold comprehensive knowledge of IT infrastructure, covering AWS cloud services, IP networks, applications, databases, and operating systems
- Demonstrate proficiency with Docker, ECS, Kubernetes, and container security
- Possess extensive experience in embedded software development and architectures, security protocols, applied cryptography, and security standards
- Exhibit a profound understanding of the TCP/IP protocol stack and major protocols
- Demonstrate working knowledge of one or more general-purpose programming/script languages, including Java, C/C++, C#, Python, JavaScript, PowerShell
- Showcase excellent English communication skills, both written and verbal, for effective global collaboration
Nice to have
- Possess experience with Metasploit and QRadar
- Demonstrate knowledge of SSL/TLS protocols and applications
- Familiarity with secure SDLC methodologies
- Show experience with security tools and platforms such as Nessus, Burp Suite, and Nmap
Benefits
- International projects with top brands
- Work with global teams of highly skilled, diverse peers
- Healthcare benefits
- Employee financial programs
- Paid time off and sick leave
- Upskilling, reskilling and certification courses
- Unlimited access to the LinkedIn Learning library and 22,000+ courses
- Global career opportunities
- Volunteer and community involvement opportunities
- EPAM Employee Groups
- Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn