Senior DevSecOps (Lead) Role
San Francisco, CA, USA
Applications have closed
Fluence
Fluence is a global market leader in energy storage products and services, and cloud-based software for renewables and storage assets.We are guided by our passion to transform the way we power our world. Achieving our goals requires creativity, diversity of ideas and backgrounds, and building trust to effect change and move with speed.
We are Leading Fluence currently has thousands of MW of energy storage projects operated or awarded worldwide in addition to the thousands of MW of projects managed by our trading platform—and we are growing every day.
We are Responsible Fluence is defined by its unwavering commitment to safety, quality, and integrity.
We are Agile We achieve our goals and meet our customer’s needs by cultivating curiosity, adaptability, and self-reflection in our teams.
We are Fun We value the diversity in thought and experience of our coworkers and customers. Through honest, forthcoming, and respectful communications we work to ensure that Fluence is an inclusive and welcoming environment for all.
This position will be within the Fluence Digital business unit, formed following Fluence’s acquisition of San Francisco-based start-up AMS. Fluence Digital’s IQ platform uses artificial intelligence, advanced price forecasting, portfolio optimization and market bidding to ensure energy storage and flexible generation assets are optimally participating in wholesale electricity markets.
ABOUT FLUENCE Fluence, a Siemens and AES company, is the global market leader in energy storage products, services, and digital applications. The Fluence IQ platform helps energy storage and renewable asset owners maximize revenue in wholesale electricity markets through AI-enabled optimized bidding software. Through our products and services, Fluence is helping customers around the world drive more resilient electric grids and a more sustainable future. ABOUT THE POSITION: Formed following Fluence’s acquisition of San Francisco-based start-up AMS, Fluence Digital’s software technology uses artificial intelligence, advanced price forecasting, and portfolio optimization to boost the financial and operational viability of energy storage and flexible generation assets. We achieve this primarily by interpreting market and telemetry data to optimize market bidding and other asset management settings in near real-time. We are looking for an experienced Senior DevSecOps Engineer to lead our Cybersecurity efforts here at Fluence Digital. You will be a guiding force in developing and enabling a robust security posture, define and manage compliance efforts, maintain identify and mitigate security flaws, evangelize best practices amongst our development teams, and contribute to the design and development of a secure, reliable, and scalable platform. This is a formative role where you will play an integral part in creating and implementing a successful strategy in securing our products and services. The role can be fully remote in US time zones, though Pacific time zone is preferred. Your home office will be Fluence Digital’s San Francisco office, with most of the team working remotely. You and colleagues may use the office at your discretion and personal preference. You will report to the Director of SRE & DevOps and will interact regularly with members of the Devops, Software Engineering, Data Science, Product, and Commercial teams. The role will grow over time as Fluence scales its SaaS products to new customers, new types of energy assets, and additional markets. What you’ll be doing: · Leading a small team of security engineers· Establishing and managing our security compliance standards and certification efforts. Enforcing policy adoption within our services and the organization· Working closely with the DevOps team to develop, implement and formalize security infrastructure and its features· Diving into our code with the developers and directly assisting in addressing security issues· Regularly identifying, evaluating, and addressing security vulnerabilities · Creating incident response capabilities to ensure business viability· Collecting, disseminating and improving upon metrics related to the detection, investigation, and response to issues· Balancing the principle of least privilege with maximum openness, transparency and minimum friction for developers· Providing thought leadership and technical expertise. Developing strategic initiatives to scale and upgrade the platform as well as your team· Ensuring a healthy and balanced working culture and assisting in the development of your cohorts' skillsets
What will our ideal candidate bring to Fluence?
- 7+ years cloud focused SecOps experience (IDS, IPS, SIEM, etc); NetSec a plus
- Has led a small team
- Self-driven – able to take the reins, be self-motivated and autonomous
- Excellent communication skills, both written and verbal. Presentation experience to all levels, and able to write clear policies, procedures, and reports
- Specific experience in setting and driving organizational cybersecurity policies
- Professional experience and familiarity with OWASP Top 10 application vulnerabilities, cryptography and key management, PKI, TLS/SSL, DDoS detection and mitigation, authentication, authorization, and application security
- Experience with SSO, SAML, AD and IAM Federation
- Expertise on centralizing metrics, monitoring, and auditing capabilities
- Experience in Cybersecurity Incident management, investigations, and reporting
- Experience with penetration tests, vulnerability scanning, testing, analysis, and remediation
- Strong Expertise in AWS cloud infrastructure, ABAC/RBAC structures, and multi-account organizations
- Strong familiarity and compliance experience with certification and data governance requirements (e.g. SOC2, ISO 27001, CCPA/CPRA, GDPR, et al)
- In-depth knowledge of Kubernetes and Terraform
- Experience supporting Internet-facing SaaS B2B services.
- Development background in a CI/CD environment preferred
- BS degree in Computer Science or related technical field or equivalent technical experience preferred
- Kubernetes
- Terraform
- AWS (VPC, EC2, EKS, S3, RDS, Aurora, GuardDuty, WAF, ELB/ALB, Lambda)
- Postgres
- CircleCI
- Datadog
- Python
- Kotlin
- Okta
- Auth0
Technology Stack
Fluence IS AN EQUAL OPPORTUNITY EMPLOYER and fully subscribes to the principles of Equal Employment Opportunity to ensure that all applicants and employees are considered for hire, promotion, and job status without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, marital or familial status.
Tags: AES Agile Application security Artificial Intelligence Audits AWS CCPA CI/CD CircleCI Cloud Compliance Computer Science Cryptography DDoS DevOps DevSecOps EC2 GDPR Governance IAM IDS Incident response IPS ISO 27001 Kotlin Kubernetes Lambda Monitoring OWASP PKI PostgreSQL Python S3 SaaS SAML SecOps SIEM SOC 2 SSO Strategy Terraform TLS Vulnerabilities
Perks/benefits: Career development Flex hours Startup environment Unlimited paid time off
More jobs like this
Explore more InfoSec/Cybersecurity career opportunities
Find open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Analysis, Cryptography, Digital Forensics and Cyber Security in general, filtered by job title or popular skill, toolset and products used.
- Open Information Security Specialist jobs
- Open Information Security Officer jobs
- Open Staff Product Security Engineer jobs
- Open IT Security Engineer jobs
- Open Head of Information Security jobs
- Open Senior Security Operations Engineer jobs
- Open Senior SOC Analyst jobs
- Open Security Consultant jobs
- Open Senior Information Security Analyst jobs
- Open Lead Security Engineer jobs
- Open Information System Security Officer (ISSO) jobs
- Open Cybersecurity Analyst jobs
- Open Infrastructure Security Engineer jobs
- Open Staff Application Security Engineer jobs
- Open Senior Penetration Tester jobs
- Open Sr. Security Engineer jobs
- Open Senior Information Security Engineer jobs
- Open Senior Infrastructure Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Senior Cybersecurity Engineer jobs
- Open IT Security Analyst jobs
- Open Offensive Security Engineer jobs
- Open Senior Security Analyst jobs
- Open Senior Air Defense/BMD Subject Matter Expert jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open GCP-related jobs
- Open Governance-related jobs
- Open Network security-related jobs
- Open Risk assessment-related jobs
- Open SaaS-related jobs
- Open Forensics-related jobs
- Open ISO 27001-related jobs
- Open Malware-related jobs
- Open Java-related jobs
- Open Vulnerability management-related jobs
- Open IDS-related jobs
- Open DevOps-related jobs
- Open Threat intelligence-related jobs
- Open Cryptography-related jobs
- Open Analytics-related jobs
- Open CISM-related jobs
- Open Kubernetes-related jobs
- Open DevSecOps-related jobs
- Open APIs-related jobs
- Open PowerShell-related jobs
- Open IAM-related jobs
- Open TCP/IP-related jobs
- Open CISA-related jobs