
Sr Information Security Engineer - Remote
- Eden Prairie, MN
- $89,900-160,600 per year
- Permanent
- Full-time
- Perform gap analysis of security and compliance controls, assess the risks, prioritize, and propose remediation plans
- Research, propose, and implement technical controls in partnership with other Security and Engineering teams that address existing gaps in security, proactively defend against upcoming threats, and enforce the organization's security policies
- Develop reusable security tooling that helps improve the throughput of teams while maintaining a consistent level of confidence in the system security
- Remediate security configurations and address root issues
- Implement automated, proactive security checks into the CI/CD pipelines
- Ensure appropriate network and access controls are in place and actively monitored
- Continuously improve monitoring and reporting of security and compliance issues, providing clear actions for teams to proactively remediate issues
- Monitor the security and compliance posture of the organization
- Develop, document, and communicate security standards and procedures across the engineering teams
- Advise on secure architecture best practices and design patterns
- Provide security guidance to engineers and data scientists, and champions good security hygiene.
- Support security incident response as necessary
- Participate in regulatory and compliance activities as necessary
- Leverage enterprise-approved AI tools to enhance productivity and innovation by streamlining workflows and automating repetitive tasks. Evaluate emerging trends to drive continuous improvement and strategic innovation.
- Bachelor's degree in computer science, cybersecurity, information security, a similar technical field, or equivalent professional experience can substitute for a degree
- 6+ years of experience in software development with focus on the Security
- 3+ years of development experience in IaC using Terraform
- 2+ years of experience with a scripting language like Python
- Experience with public cloud service providers (e.g. Amazon AWS, Microsoft Azure)
- Familiarity with industry standard frameworks (e.g. NIST CSF)
- Basic understanding of networking components and architectures