Lead, Infrastructure Security Engineer
$133,600–$220,400 year
On-siteNewark, New Jersey, United States
Job Summary
Create, code, and support solutions to automate infrastructure and security components, including database management and destruction. Provide consumable services to development teams for database monitoring and partner on implementation. Ensure product security throughout the lifecycle by integrating new features and updates. Collaborate with product owners and tech leads to define feature stories and deliver robust solutions. Automate unit and integration tests while solving problems and adding value through automation. Develop corporate platform standards based on cost, capability, and capacity requirements. Apply infrastructure fundamentals to AWS/Azure/Windows/Linux databases and use Python, Shell, SQL, and Terraform frameworks. Manage database configuration compliance, vulnerability management, and CIS benchmarking. Support privileged access reporting, infrastructure health checks, patching, and disaster recovery.
Required Qualifications
- Bachelor of Computer Science or Engineering or experience in related fields
- Ability to mentor others with minimal guidance
- Experience with agile development methodologies and Test-Driven Development (TDD)
- Knowledge of business concepts, tools and processes that are needed for making sound decisions in the context of the company's business
- Ability to learn new skills and knowledge on an on-going basis through self-initiative and tackling challenges
- Excellent problem solving, communication and collaboration skills
- Advanced experience and/or expertise with several of the following: Applied Security Experience
- Experience working with distributed systems across different operating systems and databases, both cloud and on-premises
- Applied experience with IBM Guardium / Imperva DAM and Vulnerability Assessment (VA)
- Knowledge of various DBMS (MSSQL, Oracle, DB2, PostgreSQL, Redshift, Couchbase, MongoDB, Hadoop) and Cloud DB (Aurora PostgreSQL, Amazon DynamoDB, Document DB, Redshift, RDS, Azure SQL, Cosmos DB, snowflake Capella etc.)
- Familiarity with hybrid cloud environments
- Understanding of hardware, virtual machines, networking, and protocols
- Basic risk management, auditing, and compliance knowledge
- Programming Languages: Python, Shell/Power scripting, SQL, Modern languages
- Frameworks: Ansible, CloudFormation, Terraform
- Infrastructure fundamentals
- Linux / UNIX
- Operating Systems: File Permissions, Network Configuration, Services, Process Manipulation
- Database Fundamentals: Schemas, Tables, Permissions, SQL, Security
- Networking, TCP/IP and other common Communication Protocols: OSI Model, 3 Way Handshake, Stateful vs Stateless, Proxy Firewall
- Containers: Docker, Kubernetes
- Application Programming Interfaces (API): Consumption & Development
- Test/Quality capabilities & methodologies (functional & nonfunctional) and associated tooling including quality automation
- Infrastructure & Cloud Security best practices including DevSecOps
- Dev Ops Tools & Practices: awareness, understanding of DevOps automation tools, practices & capabilities (continuous integration & continuous delivery)
- Software Development Life Cycle (SDLC): Development and Design Fundamentals including SDLC and coding standards
- Cloud Computing: Understanding and knowledge (of 1 or more): AWS, Azure or GCP
Desired Qualifications
- IBM Guardium / Imperva DAM and Vulnerability Assessment (VA) (certification is a plus)
- IBM Guardium / Imperva DAM and Vulnerability Assessment (VA)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.