ABOUT THE ROLE:
We are seeking a highly motivated and experienced DevSecOps Engineer with a strong background in Microsoft Azure, security protocols, Software Development Life Cycle (SDLC), security policy development and adherence, and incident monitoring and response. In this role, you will work as part of a team to ensure the security of our cloud infrastructure and systems, as well as implement and maintain security policies and procedures. The ideal candidate will have a strong background in software development and security and experience automating security and CI/CD processes. If you are a driven, detail-oriented professional with a passion for securing cloud infrastructure and systems, we would like to hear from you.
ABOUT SECURESAVE WWW.SECURESAVE.COM:
We are on a mission to help people feel and be more financially secure. We believe the secret to making this reality is to ensure that everyone has an emergency savings account (ESA) and the support they need when the unexpected occurs. We are a team of highly experienced fintech professionals, backed by leading VCs and co-founded by one of the world's most recognizable personal finance experts, Suze Orman. With SecureSave, individuals get the world's first purpose-built emergency savings account, developed from the ground up. We work with employers of all sizes to develop a new type of workplace savings program focused on emergency savings --much like an HSA or 401K, but for short-term emergency savings.
WHAT YOU'LL DO DAY-TO-DAY:
- Design, implement, and maintain security protocols and policies in line with industry best practices and company standards.
- Integrate security into the SDLC and ensure adherence to security guidelines and practices.
- Monitor security incidents and respond promptly and effectively to potential threats or breaches.
- Collaborate with cross-functional teams, including development, compliance, and operations to ensure that applications are secure and comply with security standards.
- Manage and configure Microsoft Azure services, including virtual machines, serverless infrastructure, storage accounts, and network security groups.
- Implement and enforce technical controls that meet or exceed policies.
- Conduct security assessments, risk assessments, and penetration testing.
- Stay up-to-date with emerging security threats and technologies, and make recommendations for security improvements .
WHAT WE'RE LOOKING FOR:
- Experiences in configuring, deploying and monitoring applications in an Azure cloud environment.
- Strong Microsoft Azure experience, including expertise in Azure virtual machines, storage accounts, network security groups, Azure DevOps, GitHub Actions.
- Extensive experience with security protocols, such as SSL/TLS, IPsec, and others.
- Proven experience with security policy development and adherence, incident monitoring and response, and security assessments and risk assessments.
- Strong understanding of the SDLC, including software development, testing, and deployment processes.
- Up-to-date on security knowledge and vulnerability assessment such as Static/Dynamic Application Security Testing (SAST/DAST).
- Experience with vulnerability management and penetration testing tools.
- Strong communication, problem-solving, and analytical skills.
- Passionate about using automation to improve efficiency and reduce (manual) mistakes. Proficiency in at least one programming language for the purpose of automation.
COMPETENCIES:
- Exceptional verbal and written communication skills.
- Strong analytical and problem-solving skills.
- Ability to work independently with minimal supervision.
- Interpersonal skills to manage both up and down.
- Ability to prioritize effectively.
- Coachable and eager to learn.
- Ability to thrive in a work-from-home environment.
SALARY AND BENEFITS
- $120,000-$140,000 per year
- 100% remote-first/only work environment
- Company-sponsored group medical, dental, vision, life, and disability insurance and a confidential, 3rd-party Employee Assistance Program
- Emergency Savings Account with company matching
- 401k plan
- Self-managed paid-time off
- Paid New Parent Leave
- A one-time $1,000 home office allowance
- Reimbursement of approved business expenses