Sr Security Engineer
On-siteDublin, Leinster, Ireland or Tel Aviv, Tel Aviv, Israel
Job Summary
Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations. Leverage native Azure, GCP, and AWS cloud services to automate security and control activities. Develop or implement open-source/third-party tools for threat detection, prevention, and analysis. Perform technical security assessments against F5aaS products and enterprise systems, including static/dynamic analysis and threat modeling. Manage penetration and segmentation testing of applications and networks. Review changes to services and networks for security and compliance impacts. Assist in detection and response efforts as a product line subject matter expert. Propose new controls to Security Architecture and GRC, and build new security controls, processes, and tools. Implement zero-trust and IAM security patterns with cloud agnostic tooling. Collaborate with Architecture, Site Reliability Engineering, and Operations teams to develop technical solutions and security standards. Configure industry standard security testing and scanning tools. Advise enterprise stakeholders on security best practices and secure design principles. Implement, design, develop, administer, and manage enterprise security tooling.
Required Qualifications
- B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience
- 5 years of progressive responsibility in a security organization
- 2-6 years of relevant security engineering or network security experience
- Ability to script in multiples languages (Go, Rust, Python, Ruby, etc.) and experience building scripts for process improvements and automation
- Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure
- Technical knowledge and extensive hands-on experience with security and networking architecture, networking protocols, network security design, wireless security, intrusion prevention/detection, and firewall architecture
- Experience automating security testing and reporting outputs
- Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker Hashicorp Vault, Palo Alto, Cisco, Qualys)
- Experience assessing and implementing technical security controls
- Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git)
- Experience with network and application vulnerability and penetration testing tools
- Strong written and verbal communication skills
- Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism
- Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate
- Willingness to innovate and learn new technologies
- Excellent interpersonal and relationship skills with a collaborative mindset
- Hybrid: Employees within 30 commutable miles of an F5 office are required to work from the office a minimum of 30 business days per quarter
Desired Qualifications
- Experience working with high-availability enterprise production environments
- Strong written and verbal communication skills
- Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism
- Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate
- Willingness to innovate and learn new technologies
- Excellent interpersonal and relationship skills with a collaborative mindset
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.