drjobs Senior Product Security Engineer

Senior Product Security Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Frisco, TX - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

About The Role

The SoFi Product Security team assists and partners with engineering product and design organizations. Our mission is to secure the products and services delivered to our members and customers. We deploy bestinclass Product Security practices compliance frameworks and design patterns by collaborating with product owners engineers and executives. The mission is core to SoFis value Put our members interest first.

As a product security engineer you will be responsible for the endtoend tooling of our software security stack supporting the development of SoFis platforms products and services. You will work in conjunction with Application security engineers development and product teams to bake security controls into the software development lifecycle. This role is pivotal to building security with agility and helping SoFi scale.

The ideal candidate will be highly collaborative balancing the right level of security with business objectives and working to creatively solve complex Product Security related problems in an agile environment.

What youll do:

  • Deploy product security tools like SAST DAST IAST SCA etc to help uncover security issues early in the software development lifecycle.
  • Build secure integrations following the SDLC process with various internal and external tools to create agile software security solutions.
  • Keep security tools and deployments up to date. Ensure regular patching and upgrades and smooth running of tools.
  • Help review development lifecycle integration with security tools and triage / debug any integration issues.
  • Manage cloud security and WAF solutions to ensure SoFis infrastructure is secure.
  • Participate in proof of concept to evaluate security solutions and services to help strengthen SoFis products against advanced Cybersecurity attacks.
  • Work closely with security operations and application security engineers to review security gaps and develop mitigation strategies.
  • Help with automation to support compliance with various regulatory and industry standards requirements.

What youll need:

  • Proficiency with programming languages automation tooling and API integrations
  • Demonstrate deep understanding of Docker Kubernetes and CI/CD pipelines
  • Good understanding of cloud services AWS and WellArchitected Framework security pillar
  • Proficiency in managing services using Infrastructure as Code (IaC) such as Terraform and Helm/Kustomize/ArgoCD
  • Knowledge of network and webrelated protocols (e.g. TCP/IP UDP IPSEC HTTP HTTPS DNS routing protocols)
  • Service Mesh/Istio microsegmentation and network security
  • Ability to prioritize between and execute on multiple work streams
  • Written and verbal skills for communicating security concepts and solutions
  • Secure software development lifecycle / Shift Left



Preferred Qualifications:

  • Bachelors degree in Computer Science or equivalent from a fully accredited college or university
  • 4 years experience in DevOps and Cloud/Infrastructure engineering
  • Experience with cloudnative products and an indepth understanding of microservice topologies and implementations
  • 4 years of experience with cloud technologies
  • Ability to manage relationships with other business units external vendors and stakeholders when IT security risks are present and system or process changes must be made to mitigate risk
  • Familiarity with AWS and atscale services
  • Knowledge of CI/CD application development and testing tools
  • Ability to work in a fastpaced and Agile development environment
  • Work and play well with others; SoFi is a collaborative environment

Nice to have:

  • AWS Certified Security / Solution Architect
  • Any CNCF Cloud Native Certifications
  • Masters or PhD in Computer Science or Engineering
  • Financial services experience

Required Experience:

Senior IC

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.