Staff Security Engineer, Cloud Infrastructure
Bellevue, WA; San Francisco, CA
Flexport
Cut costs, automate workflows, reliably move goods, go carbon-neutral, and improve your supply chain from end to end. It all starts here.About Flexport:
At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be more of it. We’re shaping the future of a $8.6T industry with solutions powered by innovative technology and exceptional people. Today, companies of all sizes—from emerging brands to Fortune 500s—use Flexport technology to move more than $19B of merchandise across 112 countries a year.
The recent global supply chain crisis has put Flexport center stage as we continue to play a pivotal role in how goods move around the world. At a valuation of $8 billion, we’re experiencing record growth and are proud to have the support of the best investors in the game who believe in our mission, solutions and people. Ready to tackle global challenges that impact business, society, and the environment? Come join us.
Enable Flexport to become the most trusted company in global trade.
The opportunity:
Flexport is looking for a Staff Security Engineer to help Flexport establish itself as the most trusted company in the global trade ecosystem. As a Staff Security Engineer, Cloud Infrastructure, you will be responsible for enabling visibility across our cloud environments, deploying and managing commercial security tools, building integrations, automation and custom tools to bridge gaps, as well as building security guardrails into our cloud infrastructure deployment pipelines.
You will:
- Partner with engineering, infrastructure, and security teams to develop, deploy, and maintain secure cloud architectures aligned to internal standards and current best practices.
- Implement monitoring capabilities that enable continuous asset inventory and posture assessment across cloud operating environments.
- Deploy and manage secret and privileged access management technologies to enable secure access, application of least privilege principle and accountability for change/configuration management.
- Design and implement Identity and Access Management capabilities in close partnership with our Engineering and Product teams.
- Implement and administer security technology controls (WAF, RASP, DDoS, anti-malware, forensics, IDS, DLP, CSPM) across cloud infrastructure.
- Identify areas of improvement and implement automation where possible.
- Integrate cloud applications, infrastructure, and security tools with SIEM/SOAR platforms that consolidate visibility across the environment for continuous monitoring, incident detection, analysis, forensic artifact collection, containment, eradication, and recovery.
- Assess data flows across the cloud environment to identify process weaknesses or technology gaps that could result in privacy or security breaches.
- Participate in security incident response, red team and penetration testing exercises, bug bounty response, and audit support.
- Prepare reports, presentations, and newsletter items for communicating with management and teams across the company.
- Create a culture of transparency, information sharing, and collaboration through the development of excellent documentation, mentoring of junior team members, and living Flexport’s values.
- Act as a mentor for more junior team members and continuously share knowledge to help others grow in the field.
You should have:
- Strong interpersonal and communications skills
- Bachelor's degree in Computer Science or a related field
- 8+ years of progressive security experience in a fast-paced global environment.
- 4+ years of experience with major IaaS and PaaS cloud platforms and best practices for monitoring and securing such environments.
- Experience with container technologies, and software-oriented architecture.
- Experience with DevOps and SaaS environments.
- Experience with IaC implementation and challenges.
- Experience with IAM, secrets and privileged access management, and PKI.
- Experience with SIEM and security orchestration technologies.
- Experience with cloud environments AWS, Azure, GCP
- Experience automating security tasks in languages such as Go, JavaScript, Python, or Ruby.
- Excellence in problem-solving, strategic thinking, and collaboration with cross-functional teams.
- A "compliance first" attitude to keep our regulators happy and enthusiastic about Flexport since we operate in a heavily regulated industry.
Worried about not having any logistics experience?
Don’t be! Our mission is to make global commerce so easy there will be more of it. That’s why it’s important to bring people from diverse backgrounds and experiences together with our industry veterans to help move the global logistics industry forward.
We know this industry is complex. That’s why we invest in education starting day one with Flexport Academy, a one week intensive onboarding program designed specifically to set every new Flexport employee up for success.
The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Our salary ranges are determined by role, level, and location. Within the range displayed, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education and / or training. The US base salary range for this position: (exclusive of bonus, equity and benefits.)$221,484—$246,094 USDAt Flexport, our ability to fulfill our mission of making global commerce easy and accessible relies on having a diverse, dedicated and engaged workforce. That is why Flexport is committed to creating and nurturing an environment where anyone can be their authentic self. All qualified applicants will receive consideration for employment regardless of race, color, religion, sex, national origin, age, physical and mental disability, health status, marital and family status, sexual orientation, gender identity and expression, military and veteran status, and any other characteristic protected by applicable law.
Tags: Automation AWS Azure Cloud Compliance Computer Science CSPM DDoS DevOps Forensics GCP IaaS IAM IDS Incident response JavaScript Malware Monitoring PaaS Pentesting PKI Privacy Python Red team Ruby SaaS SIEM SOAR
Perks/benefits: Career development Equity Health care Salary bonus Transparency
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Manager Pentest H/F jobs
- Open Product Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Cybersecurity Analyst jobs
- Open Chief Information Security Officer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Penetration Tester jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open Sr. Security Engineer jobs
- Open Security Researcher jobs
- Open Security Operations Analyst jobs
- Open Cybersecurity Specialist jobs
- Open IT Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Application security-related jobs
- Open Agile-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open Forensics-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security Clearance-related jobs
- Open CEH-related jobs
- Open IDS-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs