Information Security Engineer
This role supports the security posture and compliance of the client's SaaS and public cloud environments within the cybersecurity organization.
This position provides engineering and operational support for SaaS Security Posture Management (SSPM) tools, with specific focus on the Posture Management module, misconfiguration detection, and configuration drift monitoring.
This position ensures high-quality security outcomes through automation, effective policy development, collaboration with partners, and adherence to best practices for cloud and SaaS security.
Leverage deep expertise with automation to semi-automate Policy as Code development for monitoring SaaS application misconfigurations and configuration drift
Act as the subject matter expert (SME) for SSPM capabilities, roadmap features, and best practices
Enable, configure, and tune SSPM detection policies to align with security requirements
Transform security requirements and parameters into robust, automated policies within the SSPM platform
Collaborate closely with direct teammates, vendors, and partners to ensure successful policy development automation
Lead technical and engineering requirement gathering discussions and effectively design and develop complex solutions
Troubleshoot and resolve support escalation cases related to SSPM tools and integrations
Contribute to internal code repositories to continuously improve overall code quality for the team
Develop and maintain high-quality documentation for tools, processes, and policies
Train team members on utilizing the established PaC semi-automation tooling and approaches for policy development
Demonstrate strong self-motivation and adaptability while delivering results in a fast-paced environment with aggressive deadlines
Work effectively with virtual teams consisting of members across various U.S. and international locations
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 4+ years of intermediate to advanced experience with Python and automation
- 2+ years of practical experience and strong understanding of Azure and Google public cloud platforms, services, configurations, workloads, and hardening practices
- 1+ year of experience with SaaS Security Posture Management tools such as Obsidian Security or AppOmni
- Experience with extracting, transforming, and loading data via REST API endpoints
- Advanced experience with Python programming and automation
- Familiarity with CI/CD tools (GitHub Actions, GitLab CI, Jenkins, Azure DevOps)
- Strong verbal and written communication skills
- Proven ability to work independently, as well as strong interpersonal skills to work effectively within a team and with partners
- Strong analytical skills, proven critical thinking capabilities, and ability to solve complex problems with minimal direct oversight
- Intermediate to advanced experience working with Microsoft Office products (e.g., Word, Excel, PowerPoint, Visio, Outlook, MS Teams, SharePoint)
- Ability to handle multiple high-priority deliverables concurrently
- Ability to communicate confidentially, professionally, and effectively in both written and verbal formats with stakeholders and partners
- 1+ year experience working on teams practicing Agile Scrum or Kanban methodologies
- Experience working in a hybrid environment (3 days onsite / 2 days remote)
- Deep experience with Obsidian Security in an engineering or support role (a plus)
- Knowledge and understanding of DevSecOps and deployment automation to cloud environments (a plus)
- Expertise and experience with API-driven policy automation (a plus)
- Expertise and experience with Infrastructure as Code (IaC) and/or Policy as Code (PaC) concepts and tools (a plus)
- Expertise with automated testing (a plus)
- Intermediate to advanced experience with Kubernetes, preferably AKS or GKE (a plus)
- Familiarity with various cloud security and related risk frameworks (Cloud Security Alliance (CSA), CIS, NIST, etc.) (a plus)
- Experience with change and incident management practices in large enterprises (a plus)
- Security certifications such as Certified Information Systems Security Professional (CISSP), Global Information Assurance Certification (GIAC), CISA, CISM, CRISC, CCSK, or equivalent (a plus)
- Microsoft Azure and/or Google Cloud Certifications (a plus)