Position Overview:
We are seeking a highly skilled and passionate Security Engineer to join our team. This role is pivotal in ensuring the security and reliability of our infrastructure across private and public clouds data centers and applications. The ideal candidate will have a strong background in Linux security concepts network security zoning and infrastructure as code with a deep commitment to implementing security within a DevOps framework.
Key Responsibilities:
- Design implement and manage security solutions to safeguard infrastructure and applications.
- Apply Linux and Windows CIS benchmarks and hardening techniques across environments.
- Develop and maintain security practices within private and public cloud infrastructures including AWS GCP and private clouds like VMware OpenStack and OpenShift.
- Utilize security scanning tools such as Qualys Tenable and Rapid7 for vulnerability management.
- Implement and manage privileged access management solutions such as CyberArk.
- Manage and secure directory services like Active Directory and LDAP.
- Collaborate with DevOps teams to integrate security into CI/CD pipelines using tools like GitHub and Jenkins.
- Design and enforce network segmentation and virtualization strategies to enhance data center security.
- Configure and manage monitoring and logging solutions including Splunk Prometheus InfluxDB and Elasticsearch for proactive threat detection.
- Drive the adoption of GitOps Terraform and Ansible for automated and secure infrastructure management.
- Work in a 24x7 production environment ensuring high availability and reliability of systems.
- Evaluate security products and collaborate with vendors to select the bestfit solutions for organizational needs.
- Contribute to agile development processes by delivering security features and improvements.
- Maintain a strong understanding of network technologies including firewalls routing and switching.
- Leverage ACI or other softwaredefined data center architectures to optimize security practices.
Qualifications:
- Solid understanding of Linux security concepts and best practices.
- Experience with data center network security zoning and segmentation.
- Expertise in cloud infrastructure and Infrastructure as Code (IaC).
- Familiarity with security tools such as Qualys Tenable and Rapid7.
- Handson experience with privileged access management tools (e.g. CyberArk).
- Knowledge of directory services such as Active Directory and LDAP.
- Proficiency in using CI/CD tools (e.g. GitHub Jenkins).
- Strong understanding of network technologies including firewalls routing and switching.
- Experience deploying applications and managing infrastructure in public and private cloud environments.
- Familiarity with monitoring and logging tools (e.g. Splunk Prometheus Elasticsearch).
- Knowledge of automation tools like Terraform and Ansible and GitOps methodologies.
- Exposure to Application Centric Infrastructure (ACI) or other softwaredefined data center architectures is a plus.
Note :
Only W2 (USC GC)