Match score not available

Information Security Engineer

72% Flex
Remote: 
Full Remote
Contract: 
Salary: 
110 - 115K yearly
Experience: 
Mid-level (2-5 years)
Work from: 

Offer summary

Qualifications:

Domain expertise in multiple security areas, Experience with compliance and security tooling.

Key responsabilities:

  • Lead incident response efforts
  • Analyze security tools and logs
  • Design and implement automation for continuous assessment
Appriss Retail logo
Appriss Retail SME https://apprissretail.com/
501 - 1000 Employees
See more Appriss Retail offers

Job description

Logo Jobgether

Your missions

About Appriss Retail

Appriss Retail provides real-time decisions and active risk monitoring to enable our customers to maximize profitability while managing risk. Our solutions are continually adapting to changing market conditions.

We bring 20+ years of retail data science expertise and experience. We serve a global base of leading commerce partners, representing 1/3 of all US omnichannel retail sales activity across 150,000 retail locations across specialty, apparel, department store, hard goods, big box, grocery, pharmacy, and hospitality businesses in 45 countries on six continents.

The company provides compelling, relevant, and profitable collective intelligence to operations, finance, marketing, and loss prevention. Appriss Retail’s performance-improvement solutions yield measurable results with significant return on investment.

About The Role

Appriss Retail is seeking an Information Security Engineer to help implement, measure, and monitor security standards across our services. You will validate the security of services, discover, and address security issues, and build automation to ensure our services remain secure. The Information Security Engineer will teach and mentor Security Team members, sharing their experience and knowledge.

The Information Security Engineer will be the subject matter expert for internal security tooling, partnering with engineering teams to continue to demonstrate the effectiveness of our control mechanisms and inform requirements for measuring and monitoring security.

What You'll Do

  • Lead and assist the security incident handling efforts in response to detected events, and coordinate with other stakeholders to drive remediation to completion.
  • Participate in daily incident response stand ups and provide ongoing operational support.
  • Apply analytical and creative skills while analyzing the output of the security tools and logs generated by systems throughout the enterprise.
  • Monitor developments in Information Security, penetration testing, and intrusion detection to continually assess the Appriss Retail environment.
  • Document operational procedures and participate in incident response investigations.
  • Design and implement continuous assessment automation that helps teams maintain insight into the integrity of their development, deployment, monitoring, and response processes.
  • Manage/Build the rules and dashboards, alerting infrastructure used to respond to security and/or configuration issues
  • Assist with external audits (SOC2 and ISO) in gathering supporting technical evidence to show compliance through automated tooling.
  • Support the expansion and growth of Security Operations Program: integrating new tooling and documenting processes to enhance the effectiveness of the Operations team. Maintain / document / improve; playbooks, processes, and guidelines to be used within the Security Operations Team.

What Success Looks Like…

You will analyze, design and implement workflows and tooling that integrates with multiple systems, services and platforms. Internal security control mechanisms are documented and measured to demonstrate compliance with regulatory and customer requirements.

In 3 months…

  • Prepare and present detailed, written technical information describing security controls for internal and external audiences.
  • Configure and maintain daily log correlation tools and alerts.
  • Contribute to user access and identity access management initiatives.
  • Participating and actively working investigations with the ops team.
  • Pick up on-call rotations.

In 6 months…

  • Integrate multiple 3rd party tools and native cloud services to meet cyber security requirements.
  • Deliver security training and outreach to internal development teams.
  • Perform vulnerability analysis and mitigation planning/operations.
  • Perform web application security testing utilizing automated methods.
  • Understand and be able to describe the function of core products and services.

In 12 months…

  • Work closely with engineering teams to create comprehensive security tooling and functional improvements at scale.
  • Make recommendations for improving security controls within the environment.
  • Independently hunt for behavioral anomalies, unauthorized access, misconfigurations, or reconnaissance activity.
  • Perform web application security testing utilizing manual methods.
  • Partner with engineering teams to coordinate and prioritize work.

Qualifications

  • Domain expertise in at least 4 of: security architecture and engineering, communication and network security, identity, and access management (IAM), security assessment and testing, cryptography, and software development security.
  • Experience in performing and/or participating in technical assessments in direct support of a major compliance effort (e.g. FedRAMP, SOC1, SOC 2, HITRUST, or ISO)
  • 3+ years of experience with security tooling - endpoint protection, firewalls, IDS/IPS systems, SIEMs, and vulnerability scanners.
  • 3+ years of experience with cloud computing environments.
  • Advanced knowledge of scripting languages (PowerShell, Python, Bash, etc.).
  • Working knowledge of container computing concepts.
  • A work environment that is conducive to high quality virtual interactions. This includes being able to work from a quiet space with minimal interruptions or distractions and a strong internet connection.
  • The ability to travel periodically for work.
  • A high level of judgment, analytical ability, and creativity in investigating problems that require original and innovative solutions.
  • Experience working in a fast-paced, high-growth, rapidly changing work environment.

Benefits

Appriss Retail offers competitive benefits including medical, dental, and vision coverage. We offer an immediate vesting 401(k) plan with employer matching, unlimited paid time off for salaried employees, and well-being support including gym reimbursements, a subscription to Calm – Meditation and Sleep app, and paid leave for new parents and family care. As a hybrid global community, we also offer a remote work-first environment empowering our people to work wherever suits their lifestyle.

The Pay Range For This Role Is

110,000 - 115,000 USD per year(Remote - United States)

Required profile

Experience

Level of experience: Mid-level (2-5 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Soft Skills

  • Mentorship
  • Analytical Thinking
  • Creativity
  • Judgment

Go Premium: Access the World's Largest Selection of Remote Jobs!

  • Largest Inventory: Dive into the world's largest remote job inventory. More than half of these opportunities can't be found on standard platforms.
  • Personalized Matches: Our AI-driven algorithms ensure you find job listings perfectly matched to your skills and preferences.
  • Application fast-lane: Discover positions where you rank in the TOP 5% of applicants, and get personally introduced to recruiters with Jobgether.
  • Try out our Premium Benefits with a 7-Day FREE TRIAL.
    No obligations. Cancel anytime.
Upgrade to Premium

Find more Security Engineer jobs