Staff Security Engineer
McLean, Virginia
ā ļø We'll shut down after Aug 1st - try fooš¦ for all jobs in tech ā ļø
ID.me
ID.me Wallet simplifies how individuals discover and access benefits and services through a single login and verified identity.Company Overview
ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. OverĀ 140 millionĀ users experience streamlined login and identity verification with ID.me atĀ 20 federalĀ agencies,Ā 44 state government agencies, andĀ 66 healthcareĀ organizations. More thanĀ 600 consumer brandsĀ use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.meās technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to āNo Identity Left Behindā to enable all people to have a secure digital identity. To learn more, visitĀ https://network.id.me/.
Role Overview
ID.me is looking for a Staff Security Engineer to add to our growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem.Ā
We are seeking a talented Staff Security Engineer who enjoys the challenges of combining software and systems engineering to design, build, run, and automate distributed, fault-tolerant security solutions at scale.Ā As a Staff Security Engineer, you will lead the design and development of scalable security solutions that realize/execute the strategies across the entire Security Program (i.e., SecOPs, Data Protection, CloudFlare, Privileged Access Management, IAM, etc.).Ā Ā
The Staff Security Engineer will also have the opportunity to provide thought leadership, research, and innovation on a broad scale.
This is a fully onsite position in one of our hub locations (Mountain View CA or McLean VA).
Responsibilities
- Implement, manage, and improve CloudFlare capabilities, (WAF, VPN, DNS, etc.), via Terraform, Github, and Github Actions.
- Implement security solutions in GCP via Terraform and Python and JavaScript coding.
- Implement CloudFlare Workers via requisite coding languages.
- Integrate solutions with Okta, and support triage and troubleshooting.
- Build integrations with Google SecOPs SIEM, and define queries as needed.
- Build integrations with ConductorOne IGA solution, including workflow and policy implementation within the tool.
- Improve GCP and AWS security posture, via hands-on skills in one or more of these CSPs, including hands-on skills scripting with one or more of the associated API layers.
- Leverage deep Jira knowledge and experience to define and deliver Sprints with Scrum Master and Product Owner, as well as ticket handling within SLAs.
- Continuously improve Change Management processes, guidelines, and documentation across security tools/services to ensure reliability, efficiency (e.g., increased automation via Open Policy Agents), and compliance.
- Measure and report on reliability, efficiency, and compliance of security tool/service operations.
- Ensure security controls are optimized for ease of use by both security operators and end users.
- Dig deep into complex problems either lacking a clear approach or with a high degree of execution risk and find an appropriate path forward.
- Maintain many of the essential cross-team and cross-functional relationships necessary for the team's success.
- Define standards and best practices for the team and the security organization.
Basic Qualifications
- 7+ years of experience in security engineering, systems engineering, software engineering, or SRE roles.
- Current hands on experience with GCP or AWS
- 2+ years of experience dedicated to Cloud Site Reliability Engineering and related roles.
- 5+ years of current and hands on experience in scripting or software development (i.e. Python, Ruby, Go).
- 5+ years of current and hands-on experience with infrastructure-as-code and CI/CD (e.g. Terraform, Github, etc.).
Preferred QualificationsĀ
The qualifications below are preferred. We encourage candidates to apply if they satisfy some, but not all of the qualifications.
- Hands-on CloudFlare skills and experience.Strong hands-on Jira skills and experience.Strong hands-on Okta skills and experience.
- Experience in Linux/Unix administration and solid networking knowledge.
- Possess a breadth of engineering skills with an interest in service reliability, automation, monitoring, and capacity planning.
- Strong written and verbal communication skills, especially in technical contexts.
- GCP or AWS Professional level certification
Ā Ideal candidate will thrive in the following culture:
- Must have a sense of urgency, delivering solutions with velocity and high quality.
- Must agree that 90% completion equates to 5% completion, with focus of defining goal-posts, and ruthlessly āclearing their plateā and completing the job at hand.
- Ability to move strategic work efforts forward while fielding adhoc requests.
- Must be a team player with a strong, self-managing work ethic.
- Must be able to learn quickly, representing <1.5% delay relative to an expert in an area you require learning and support.
ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.
Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.
ID.me participates in E-Verify.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index š°
Tags: APIs Automation AWS CCPA CI/CD Cloud Cloudflare Compliance DNS GCP GitHub IAM JavaScript Jira Linux Monitoring NIST Okta Privacy Python Ruby Scripting Scrum SecOps SIEM SLAs Terraform UNIX VPN
Perks/benefits: Career development Medical leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.