Senior Infrastructure Security Engineer
Seattle
We are looking for an inspired and motivated technical contributor to join the DigitalOcean Security Organization as an Infrastructure Security Engineer. Reporting to the Infrastructure Security Manager, the Infrastructure Security Engineer will be a key member of DigitalOcean’s security team, charged with playing an integral part in improving the security posture of DigitalOcean. You will lead projects, architect, and build security tooling from the ground up. Use your engineering skills to create new and innovative ways to increase the security surrounding our production and corporate infrastructure.
What You’ll Do:
- Establishing an understanding of DigitalOcean’s production and corporate environments, from applications to infrastructure, keeping up-to-date with material changes and future directions
- Building and maintaining state-of-the-art tooling to keep DigitalOcean’s infrastructure and corporate environments safe from external attack and insider threat
- Partnering closely with the other technical teams within the Security Organization and across our engineering and infrastructure functions to harden accounts, platforms, and service structures to combat intrusions, hijackings, and potential compromises
- Engineering approaches to harvest security relevant events, converting that data into actionable intelligence, and collaborating with other technical teams to act on it
- Consistently improving security as the company scales, driving continuous improvement through data collection and correlation, being mindful that security should be an efficiency enabler for the business - not a detractor
- Advocating for Security Best Practices: you will encourage and guide teams in the adoption of security best practices
- Help administer our security infrastructure, including secrets management and vulnerability scanning solutions.
- Contribute to the deployment and management of zero trust network access solutions to enhance network security.
What We’ll Expect From You:
- Broad network security experience in high-volume production environments, including audits of network security configurations, identifying and addressing vulnerabilities or misconfigurations
- Experience automating security tooling, alerting, and remediation workflows especially security event enrichment, reduction, and correlation
- Vulnerability Management experience, focused on prioritizing known vulnerabilities for remediation at scale and classifying previously unknown vulnerabilities
- Strong understanding of Linux systems, services, and deployment models (eg, Ubuntu)
- Experience engineering and maintaining Identity and Access management systems (eg, OpenLDAP, Okta, VPN or Zero Trust)
- Clear written and verbal communication skills to include: technical writing, presenting, coaching, mentoring
- Bonus: Experience in one or more of the following areas:
- Endpoint Intrusion Detection, Response, and Remediation, open source or commercial
- …
This job isn't fresh anymore!
Search Fresh JobsJob Profile
Access to LinkedIn Learning Career development Cutting-edge technology Employee Assistance Program Employee Stock Purchase Program Equity Compensation Flexible time off High-performance organization Innovative work environment Opportunity for growth Upward trajectory
Tasks- Advocate for security best practices
- Build security tooling
- Improve security posture
- Lead projects
- Manage vulnerabilities
AI Ansible Automation Bash Benefits Chef Coaching Communication Compensation Configuration as Code Data processing pipelines Elastic Endpoint detection and response GitHub GitHub Actions Identity and Access Management Infrastructure Infrastructure Security Kafka Linux Mentoring Network security Organization Organizational Performance Python Reporting Salt Scripting Secrets management Security Security Best Practices Technical Writing Terraform Training Ubuntu Verbal communication Vulnerability Management Vulnerability Scanning Zero-Trust
Experience5 years
Education TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9