Security Engineer

Santa Ana, California, United States

Applications have closed

Collectors

Helping collectors to pursue their passion.

View company page

Collectors has hundreds of active domains that are leveraged by card, coin, video game, and general collectors worldwide. Every quarter we grade, authenticate, and sell millions of high-value, record-setting collectibles, so we’re looking for a security expert who can architect and implement systems that monitor the darkness to keep our ecosystem safe. We're the leader in third-party authentication and grading services for high-value collectibles including trading cards (Professional Sports Authenticator), coins (Professional Coin Grading Services), video games (Wata), event tickets, autographs, and memorabilia, and with your help we can continue to grow rapidly.

The security team is responsible for and committed to securing all things within Collectors. From our customers, to our code, and everything in between, the security team is involved in all aspects of the business to protect our ecosystem.

We are looking for a Security Engineer to join our growing security team, working to secure all aspects of our technology, including our services, tooling, and infrastructure. This role will play a critical part in improving the overall security posture at Collectors. 

This is a flexible, hybrid remote role based out of Santa Ana, CA.

What You’ll Do:

  • Work closely with teams across the organization, particularly Information Technology (IT), Compliance, and Legal to implement proactive security measures.
  • Work alongside the security architect to provide technical expertise for security and compliance tool selection, process definition, automation creation and staff training.
  • Utilize DevOps skillet (Ansible, Terraform, Docker, Kubernetes) to deploy and maintain core security tooling (open source and commercial).
  • Regularly auditing public cloud infrastructure, identifying findings, and tracking efforts to remediation.
  • Partnering with key business functions to determine business requirements and inform Security and Compliance needs.
  • Responsible for the building, improvement efforts, and maintenance of security tooling and platforms.
  • Engaging in selection, development, customization, and deployment of critical applications, including CRM, HRIS, Finance/Accounting, Collaboration, Productivity Management, etc.
  • Working closely with the Security Operations Manager and other team leadership members to deliver on requirements and report on progress.
  • Contributing to the development of best practices within our Security team including IAM policies, networking policies, auditing and logging standards.
  • Continually improving and optimizing operational efficiency through process improvement and automation.

Who You Are:

We view this section as a guide, not a checklist. We encourage you to apply even if you don’t satisfy every single bullet on this list!

  • 3+ years of relevant experience, with at least two of those years in a security specific role focused on cloud security or DevOps practices.
  • Ability to thrive in a high-growth, fast-paced, and dynamic environment.
  • Experience applying a risk-based approach decision making
  • Experience with DevOps (Ansible, Terraform, Docker, Kubernetes, etc.)
  • Experience with observability, telemetry, monitoring, logging platforms.
  • Hands-on technical expertise - scripting and/or programming languages, databases, etc. Experience with infrastructure as code (E.g. terraform is a plus!)
  • Capable of leveraging Python to solve practical day-to-day security challenges
  • Knowledge of Identity and Access Management (IAM) principals, and policy application
  • Strong knowledge of systems administration, including security, networking, monitoring/alerting, etc
  • Thorough understanding of networking and system administration
  • Experience with security frameworks such as ISO, CSA and PCI.

Candidates must be authorized to work in the United States. 

Reasons To Join Us: 

  • Health Insurance: All full-time employees are eligible to enroll in Medical, Dental, and Vision 
  • 401(K) Matching Plan: We are proud to offer a competitive 401k matching plan to our employees to support their future financial goals 
  • Vacation: All full-time employees are eligible for flexible paid vacation 
  • Holiday Pay: All regular, full-time employees are eligible for nine company paid holidays 
  • Employee Discounts: Employees receive discounts on select grading services for approved submissions 
  • Flexible Hours: Many of our teams offer flexible schedules with varying shifts and will work with you to accommodate your needs 
  • Fun Working Environment: Our team members are invited to participate in celebrations, holiday events, and team building activities

Roles advertised as remote eligible are not open to applicants in Colorado and may not be performed in Colorado.

Collectors may use e-verify to validate your ability to work legally in the United States.   For your knowledge, the states we will be using e-verify are the 6 states we operate in that require E-verify: Alabama, Arizona, Georgia, North Carolina, Tennessee, and Utah.

We are aware that there are instances where individuals are receiving job offers that fraudulently allege to be from Collectors or one of our business units. This type of fraud can be carried out through false websites, through fake e-mails claiming to be from the company or through social media. We never ask for personal information such as your bank account, Social Security numbers or National IDs, nor do we send or request payments for the purchase of business-related equipment. If you suspect fraud, please reach out to jobs@collectors.com.

About Collectors 

Collectors is the leading provider of value-added services to the collectible’s markets. We authenticate and grade collectible coins, trading cards, video games, event tickets, autographs, and memorabilia through our subsidiaries, which include Professional Sports Authenticators (PSA), Professional Coin Grading Services (PCGS), Certified Coin Exchange (CCE), Wata, Card Ladder, Collectors Corner, Set Registry, Collectors.com, and the Long Beach Expo collectibles trade show. Since our founding in 1986, we have graded and authenticated more than 80 million items. We employ over 1,000 people across our Santa Ana, CA headquarters, New Jersey, Seattle, Hong Kong, Paris, Shanghai and Tokyo. For more information, visit http://www.collectors.com.

We are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity or expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or other class protected by applicable law. We believe that a team that represents a variety of backgrounds, perspectives, and skills will better service the diverse community of collectors we support.

If you require an accommodation to apply or interview with us due to a disability or special need, please email people@collectors.com. 

If you are based in California, you can read information for California residents linked here

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Ansible Audits Automation Cloud Compliance DevOps Docker Finance IAM IDS Kubernetes Monitoring Open Source Python Scripting Terraform

Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flex vacation Health care Insurance Startup environment Team events

Region: North America
Country: United States
Job stats:  10  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.