Summary
Join GFiber's security engineering team as a Senior Security Engineer to architect and build the future of the company's security. You will create automated, scalable, and resilient security solutions for cloud, identity, network, and endpoint infrastructure. This role requires a builder's mindset, deep expertise in at least one core security domain, and broad knowledge across others. You will design, build, and deploy security controls, automate security processes, partner with engineering and IT teams, own the security of your core domain, and develop detection and response capabilities. The position offers a competitive salary and benefits package.
Requirements
- Bachelor's degree in a technical field or equivalent practical experience
- 7 years of hands-on experience in a security engineering role
- Experience in one of the following security specializations: Expertise in modern Endpoint Detection and Response (EDR/XDR) platforms, coupled with proven experience in server hardening (e.g., CIS Benchmarks) and driving the full vulnerability management lifecycle
- Expertise in architecting and managing modern Identity and Access Management (IAM) solutions, including core services like SSO/MFA, federation (SAML/OIDC), and automated lifecycle management (SCIM)
- Demonstrated proficiency in a scripting language (e.g., Python, Go) for the purpose of automation and building security tools
- Hands-on experience with Infrastructure as Code (e.g., Terraform, Ansible)
Responsibilities
- Design, build, and deploy security controls across our cloud and corporate infrastructure using an infrastructure-as-code approach
- Automate security processes, alerts, and workflows using Python or Go to scale our capabilities and eliminate manual work
- Partner with engineering and IT teams in architecture reviews to serve as a security subject matter expert, embedding security into their designs from the start
- Own the security of your core domain while actively contributing to the overall security of the entire ecosystem
- Develop and deploy detection and response capabilities to identify and eradicate threats across our environment
Preferred Qualifications
- Demonstrated, hands-on experience securing production workloads in a public cloud environment
- Experience with network and network security fundamentals (e.g., TCP/IP, DNS, routing, firewall principles)
- Experience with securing common operating systems (Linux, Windows) and the principles of endpoint protection (e.g., EDR, hardening)
- Deep understanding of modern identity protocols and standards (e.g., SAML, OIDC, SCIM)
- Experience thriving in a fast-paced environment where you are responsible for building systems from scratch
- Ability to articulate complex technical concepts to both technical and non-technical audiences
Benefits
Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.