Sr. Security Engineer

Denver, CO

Applications have closed

TrackVia

Optimize your task management and automate processes with TrackVia's custom apps. Streamline operations and gain real-time insights.

View company page

About Us:

TrackVia offers the most-trusted app building platform for anyone looking for a better way to work. TrackVia gives businesspeople and IT experts the ability to easily build and integrate apps to track, manage, and automate processes in days, not weeks. Our customers make lasting and substantial improvements to their business using TrackVia’s bullet-proof cloud-based technology — and they love getting the industry’s best customer experience every step of the way.

We are looking for an experienced Sr. Security Engineer to supplement our InfoSec team as we continue to automate and improve our security program.

The Sr. Security Engineer leads integration and automation efforts across the security program.  This role will have significant input to our security orchestration and automated response (SOAR) capabilities.  The position is highly collaborative and requires excellent communication, project management, and teamwork. 

The Sr. Security Engineer reports to the Director, Information Security.  The position is fully remote with occasional travel corporate HQ in Denver, Colorado.  

Responsibilities

  • Security Engineering:
    • Serve as lead technical resource for assigned security tools and services.
    • Lead detection engineering efforts.
    • Lead engineer for SOAR strategy and implementation.
    • Participate in security event investigation and/or incident response.
    • Support security metrics through automated testing of security controls.
    • Contribute to information security planning, e.g., strategy, architecture, standards.
    • Support compliance efforts by producing artifacts from security tools and services.
    • Contribute to the professional development of Security Analysts and Security Engineers.
  • Partnership:
    • Collaborate with Operations on cloud environment and customer data security.
    • Collaborate with IT on corporate network, endpoint, and corporate data security.
    • Collaborate with HR to create a culture of security awareness.
  • Continuous Education:
    • Maintain awareness and knowledge of emerging security threats and vulnerabilities.
    • Maintain awareness and knowledge of AWS services and cloud security best practices.
    • Maintain awareness and knowledge of major information security frameworks/guidance, e.g., CSA Controls Matrix, NIST CSF, FedRAMP.

Requirements

  • An attitude of “Problems are opportunities!” and “Manual work is tech debt!”
    • A passion for process improvement, efficiency, and automation.
  • Strong integration and automation skills via REST APIs and microservices.
    • 3 - 5 years of development and/or automation experience, preferably with Python.
    • Experience with open-source or commercial integration platforms.  Experience with Workato is a plus.
    • Experience with CI/CD pipelines and version control.  Experience with GitLab is a plus.
  • Strong networking and Linux security skills.
  • Experience with open-source or commercial SIEM, IDS/IPS, and vulnerability scanning solutions.
  • Experience with open-source or commercial Security Orchestration and Incident Response (SOAR) solutions.
  • Experience working in AWS environments.  AWS sysadmin experience a plus.
  • Excellent critical thinking and problem-solving skills.  You can contribute to spirited, yet professional, debate.
  • Self-managed.  Excellent planning, and time management skills.
  • Experience working within Agile and Kanban frameworks.
  • Education:
    • Bachelor’s degree in Computer Science, Computer Information Systems, Information Assurance, or related.  
    • Relevant security certifications, e.g., CISM, CASP+, CISSP, GSEC.
  • A strong interest in information security as a career field and related continuous education.
  • U.S citizenship is required.  Sponsorship is not available.

Differentiators

  • Experience as a DevOps engineer.
  • Experience with Docker and Kubernetes.
  • Experience with security compliance audits, e.g., SOC2, HIPAA, FISMA, FedRAMP.
  • PMI Citizen Developer Foundations or higher Certification.
  • Experience with Low/No-Code solutions.

 

Salary & Benefits

  • The salary range for this position is $120,000 - $150,000
  • We cover 100% medical, dental, and vision benefits
  • We understand you have a life outside of work and have an unlimited, flexible time-off policy
  • We provide competitive paid parental leave for all new parents after 6 months
  • We made Built in Colorado’s Best Small Companies to Work For list, Denver Business Journal’s Largest Denver-area Tech Employers list, and Outside Magazine’s 50 Best Places to Work list
  • You will have the opportunity to challenge yourself and have a high degree of responsibility and impact
  • Your daily tasks will change often and give you many opportunities to grow your professional and technical skillset and advance your career

Education & Training

  • Hands-on low-code application development training via TrackVia University.
  • Sponsorship for Project Management Institute’s (PMI) Citizen Developer certification program.
  • Security and/or compliance certification and continuing education assistance.

Work location is flexible if approved by TrackVia except that position may not be performed remotely from the state of California.

Applicants with disabilities may contact Human Resources via telephone or e-mail and arrange for accommodations with the application process. Please contact us at hr@trackvia.com or (720) 625-3415.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. TrackVia EEO Policy Statement.

Tags: Agile APIs Audits Automation AWS CASP+ CI/CD CISM CISSP Cloud Compliance Computer Science DevOps Docker FedRAMP FISMA GSEC HIPAA IDS Incident response IPS Kanban Kubernetes Linux Microservices NIST Python SIEM SOAR SOC 2 Strategy Vulnerabilities

Perks/benefits: Career development Competitive pay Flex hours Flex vacation Health care Medical leave Parental leave Unlimited paid time off

Region: North America
Job stats:  12  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.