Staff Security Engineer, Cloud Platform

United States

Applications have closed

Aware

Aware transforms digital conversation data from Slack, Teams, Zoom and more into real-time insights that uncover risk and deliver organizational intelligence, at scale.

View company page

Aware is a collaboration intelligence platform that identifies and reduces risk, maintains compliance, and uncovers new business insights from conversations at scale. Consolidate, enrich, search, and manage data across tools like Slack, WorkJam, Teams and Zoom for immediate visibility across the organization. Aware’s comprehensive platform solves common challenges that legal, compliance, information security and IT departments face when rolling out collaboration, including archiving, monitoring, organization insights, DLP, eDiscovery, retention and legal holds. Aware is a Microsoft Gold Partner, Slack eDiscovery and compliance partner and a Workplace from Meta integration partner.

Aware is looking to add our first Staff Security Engineer focused on our cloud platform and internal software development practices in regard to security. In this role you will define and implement how Aware provides our engineers with broadly scoped and in-depth security assessment of our services and infrastructure. You’ll have the freedom to define these engagements to best test the defensive security practices at Aware. In this position, you will work closely with our Chief Architect, CTO, InfoSec team, and other leaders to leverage the team’s knowledge, skillset, and ongoing collaboration with engineers. The ideal candidate will have experience starting, or being an early part of, a Red Team. In this role you’ll not only need to be creative and thorough in the attacks you perform, but also in helping drive the remediation strategies with teams across the company. 

Responsibilities

  • Perform technical security assessments, code audits and design reviews. 
  • Develop technical solutions to help mitigate security vulnerabilities. 
  • Advocate security and secure practices throughout Aware Engineering 
  • Conduct assessments to identify current and new attack vectors against Aware products and services. 
  • Help run our pen-testing and offensive security exercises as well as our bug bounty program. 
  • Designing and implementing security controls in multi-cloud environments 
  • Mentoring other team members 
  • Consulting with leadership on cloud security architecture decisions that will affect Aware products at large 
  • Assisting engineering in the deployment of services and applications and creating a secure-by-default environment

Requirements

  • 8+ years of proven experience working in a software developer role, of which 3 years must have been as part of a Security team working on a Cloud SaaS product 
  • Good understanding of at least two of Linux/Unix/Mac based systems security, AWS security, Cloud SaaS Security, and web application security 
  • You haveoperated and have an in-depth understanding of cloud infrastructure platforms, (AWS, GCP, Azure) 
  • You possess strong security fundamentals and have solid threat modeling and security architecture skills 
  • Experience writing performant, maintainable, testable code in at least one of the following: C#, Python, Go, Rust 
  • You have experience working with data at scale and real time processing. (e.g. Kafka, Kinesis, etc.) 
  • BS, MS or PhD in CS, Math, Physics, or equivalent real-world experience 
  • Attention to detail and a passion for correctness 
  • The ability to make hard prioritization decisions 
  • Strong interpersonal skills and curiosity to learn 
  • The ability to collaborate across functions 
  • The ability to make hard prioritization decisions 
Aware serves some of the largest enterprises in the world, in doing so we can provide them insights into their diversity and inclusion efforts. Because of this, Aware strives to cultivate its own diverse culture so we can better understand those we serve. If you share our values and enthusiasm for making companies better, you’ll find a home at Aware.


Disclaimer: The duties and responsibilities described are not a comprehensive list and that additional tasks may be assigned to the employee from time to time.


A FEW PERKS OF WORKING FOR AWARE
      Company Equity
      100% paid monthly health insurance for you and your family
      401K match
      Tuition Reimbursement
      Open vacation policy
      Fully stocked kitchen with drinks, goodies and balanced snacks at HQ
      Flexible/Remote working options 
      Cross-functional, open learning environment

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Audits AWS Azure C Cloud Compliance GCP Kafka Linux Monitoring Offensive security PhD Physics Python Red team Rust SaaS Security assessment UNIX Vulnerabilities

Perks/benefits: 401(k) matching Career development Equity Flex hours Flex vacation Snacks / Drinks

Region: North America
Country: United States
Job stats:  7  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.