About the vacancy
Contentful ищет инженера по безопасности для защиты облачной инфраструктуры, корпоративных систем, SaaS-сервисов и сторонних поставщиков. Роль включает развитие средств защиты, автоматизацию контролей, управление уязвимостями и участие в расследовании инцидентов.
Responsibilities
- Lead initiatives and partner with teams to embed practical security safeguards and champion a security-first mindset across the business.
- Lead security assessments and remediation for enterprise cloud environments, internal systems, and third-party systems to proactively identify and address risk.
- Support vulnerability management by identifying, tracking, and partnering with teams to drive remediation of security issues.
- Develop and maintain security solutions through custom development and effective tool management to enhance efficiency and operational effectiveness.
- Leverage industry standards to develop hardening requirements and monitoring mechanisms that enforce and strengthen security of systems and environments.
- Drive security and monitoring enhancements across enterprise cloud and SaaS workloads, platforms, and supporting infrastructure.
- Participate actively in incident investigations through independent analysis, contributing to findings, root cause analysis, and remediation efforts.
- Build and automate security controls to scale access reviews, evidence collection, and compliance activities.
- Research and evaluate emerging threats, vulnerabilities, and security technologies to keep defenses up to date.
- Advance identity and access management controls across enterprise systems, including least privilege, just-in-time access, conditional access, and zero trust.
- Enhance and automate controls to assess, manage, and secure third-party SaaS systems and vendors.
Requirements
- 4+ years of security engineering, DevSecOps, or equivalent experience.
- Ability to support on call for occasional off-hours incident response efforts.
- Hands-on expertise with AWS architecture, services, and security features.
- Additional exposure to Cloudflare, GCP, and/or Azure is valued.
- Proficiency in Python to build and maintain security tools.