TL;DR
Application and Cloud Security Engineer: Managing and implementing technical solutions for platform security, establishing security standards, and building secure frameworks. Focus on securing cloud infrastructure, responding to threats, and ensuring compliance with business objectives and regulatory requirements like FERPA, SOC 2 Type 2, and ISO.
Location: Based in Lincoln or Omaha, or remote within the US.
Salary: $93,000–$155,000 USD
Company
hirify.global supports the lifelong impact sports can have by providing products that help coaches and athletes capture video, analyze data, and share highlights globally.
What you will do
- Secure hirify.global's cloud infrastructure by providing advisory and implementation services for security controls.
- Respond to security threats as part of the 24/7 incident response program, from identification to resolution.
- Collaborate with technology and business groups to develop enterprise cloud security standards.
- Champion compliance with FERPA, SOC 2 Type 2, and ISO standards.
- Act as a Subject Matter Expert, establishing security standards and building reusable, secure frameworks.
- Drive innovation through proof-of-concept engagements and adoption of forward-thinking platforms.
Requirements
- 2–5 years of experience managing vulnerabilities and a deep understanding of modern cloud-based attack techniques.
- Proficiency in operating and troubleshooting cloud-based services, ideally AWS.
- Experience integrating security into the application lifecycle.
- Ability to effectively document and present complex security principles to both technical and non-technical stakeholders.
- Accountability and organization to prioritize multiple projects simultaneously in a fast-paced environment.
- Pragmatic approach to prioritize, express tradeoffs, and generate buy-in for solutions aligned with organizational risk tolerance.
Nice to have
- Information security certifications (such as ISC2, ISACA, SANS or AWS).
- Experience operating in a DevOps model and a basic understanding of SecDevOps or Secure SDLC.
- Familiarity with C#, MongoDB, React, and .NET Core.
- Familiarity with ISO 27001 or SOC 2 control frameworks.
Culture & Benefits
- Flexible work-life harmony with flexible vacation, holidays, meeting-free days, and remote options.
- Autonomy in work within an open and honest culture.
- Encouragement for career growth with professional development resources.
- Provided tech stack and hardware for success in office or remotely.
- Support for mental and physical health through EAP, ERGs, and fitness partner.
- Comprehensive medical insurance (vision, dental, fertility, family forming) and 401(K) match up to 4%.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →