drjobs Security Engineer III

Security Engineer III

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Plantation, FL - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Our Opportunity:

Chewy is seeking a DevSecOps Engineer II to join our established technology team in Plantation FL or Boston MA. Our mission is to be the most trusted and convenient destination for pet parents and partners and our Information Security team plays a meaningful role in supporting that vision by protecting the confidentiality integrity and availability of our data. In this role you will help secure Chewys public cloud environments by developing and integrating security tools writing scripts and automation to support cloud security objectives and implementing scalable solutions that align with our security standards. The ideal candidate will contribute to key security initiatives while adopting Chewys culture of innovation #ThinkBig and simplicity #KeepItSimple!

What Youll Do:

  • Lead application and infrastructure as code scanning toolset and integrations with CI/CD pipelines.
  • Provide security mentorship and risk management through design and code reviews of services running on our public clouds.
  • Collaborate with Site Reliability Engineering Vulnerability Management and Security Operations teams to achieve shared security goals.
  • Evaluate and analyze threats vulnerabilities and security risks in AWS and GCP.
  • Drive shiftleft security strategy and automate security testing across public clouds and development environments.
  • Develop and report DevSecOps metrics to collaborators.
  • Design implement and supervise security tooling and systems.
  • Ensure applications and infrastructure deployed to public clouds meet performance privacy and security requirements.

What Youll Need:

  • Bachelors degree or higher in Computer Science Computer Information Systems or similar; or equivalent experience.
  • Ability to write functional Terraform or equivalent infrastructure as code language or scripting language
  • Experience with Groovy for Jenkins pipeline file development.
  • Experience leading AWS native security services: Guard Duty Security Hub Trust Advisor Organization Delegated Administrator IAM KMS.
  • Experience running GCP native security services: Security Command Center IAM Google Cloud Storage Logs and Log Sinks.
  • Solid understanding of common technical controls across security domains (logical access configuration management security operations etc.
  • Excellent analytical and problemsolving skills with the ability to identify mitigate and communicate risks effectively to partners.
  • Experience deploying Cloud Security Posture Management (CSPM) platform technologies on public clouds.
  • Experience with public cloud container technologies such as ECS EKS GKE etc.
  • Ability to balance multiple priorities at a given time.
  • Must be team oriented and have a customer first approach.

Bonus (if applicable):

  • Ability to extend the functionality of existing tools and platforms with APIs by writing software.
  • Experience handling commercial security tools and platforms.
  • Knowledge of Open Policy Agent Rego.
  • Understanding of Git and GitOps concepts.
  • Experience drafting architecture diagrams and identifying requirements to securely deploy services in public clouds and communicate those requirements to business partners.
  • Experience working in a fast paced ecommerce environment.
  • Experience investigating security incidents in public clouds (AWS Google.

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.