Enable job alerts via email!

Security Engineer

Instructure, Inc.

United States

Remote

USD 100,000 - 185,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as a Security Engineer, where you'll play a pivotal role in safeguarding educational institutions' data. You'll design and implement security tooling, ensuring compliance with industry standards while collaborating with cross-functional teams to address vulnerabilities. This dynamic role offers the chance to work in a supportive environment that values innovation and teamwork. With a competitive salary and excellent benefits, this position is perfect for those looking to make a significant impact in the security domain.

Benefits

Competitive salary
401k
Medical insurance
Dental insurance
Disability insurance
Life insurance
Tuition reimbursement
Paid time off
Flexible work schedules
LifeStyle Spending Account

Qualifications

  • 3+ years of experience in a security engineering role.
  • Proficiency in securing cloud environments like AWS.
  • Hands-on experience with security tools and vulnerability scanners.

Responsibilities

  • Design and maintain security tooling for SaaS platforms.
  • Collaborate with teams to identify and address vulnerabilities.
  • Manage CI/CD pipeline controls for security enforcement.

Skills

Problem-solving
Critical-thinking
Security engineering
Cloud security (AWS)
DevSecOps
Static code analysis
Vulnerability scanning
Networking
Secure application development

Education

Bachelor's degree in Computer Science or related field

Tools

Snyk
GitHub Actions
Splunk
Docker
Kubernetes

Job description

At Instructure, we empower people to grow and succeed by creating intuitive products that simplify learning, facilitate meaningful relationships, and inspire innovation. We are revolutionizing how educational institutions manage and access their data to enhance teaching and learning. As a key contributor to the Security organization, you'll be focused on engineering initiatives across all of Instructure's products and services.

As a Security Engineer, you will be responsible for designing, implementing, and maintaining security tooling to protect our SaaS platform. You will also work closely with cross-functional teams to identify and address vulnerabilities, implement best practices, and ensure compliance with industry standards. This role is critical in upholding the trust of our customers and partners.

What you will be doing:
  1. Infrastructure Security
  2. Ensure secure configurations of cloud environments (e.g., AWS).
  3. Develop and maintain infrastructure-as-code (IaC) security practices.
  4. Design, implement, deploy, and maintain security tooling.
  5. Oversight and management of CNAPP platforms.
  6. Responsible for deployment, management, and maintenance of zerotrust platform(s) and supporting an overall zerotrust architecture and culture.
  7. Application Security:
  8. Using static code analysis and dependency vulnerability scanning tools (e.g., Snyk) to identify and remediate vulnerabilities in application code.
  9. Management of CI/CD pipeline controls using Git (GitHub Actions) for enforcement of security controls.
  10. Collaborate with developers to identify and mitigate vulnerabilities in the software development lifecycle (SDLC).
  11. Perform code reviews and provide guidance on secure coding practices.
  12. Manage third-party dependency packages and container images for security and patching processes.
  13. Perform vulnerability prioritization analysis based on severity and impact.
  14. Perform testing and validation of application vulnerability patches.
  15. Security Operations:
  16. Help build, maintain, and improve Security Orchestration and Automated Response (SOAR) practices to auto-remediate and enrich security events.
  17. Responsible for building security alerts based on relevant Indicators of Compromise (IoC) using log aggregation tools (Splunk, Observe, Sumologic).
  18. Participate in investigations and incident response activities, including being part of the incident response team, investigating alerts, and working with cross-functional teams to resolve active attacks or potential threats.
Qualifications:
  • Ability to work effectively on a remote team in a collaborative, fast-paced, and dynamic environment.
  • Strong communication skills, with the ability to convey technical concepts to both technical and non-technical stakeholders.
  • A polite, professional demeanor and a commitment to fostering a positive and respectful workplace.
Required Experience & Skills:
  • Excellent problem-solving and critical-thinking skills.
  • Willingness to learn on the job and work outside of your comfort zone.
  • 3+ years of experience in a security engineering role or similar application engineering role.
  • Proficiency in securing cloud environments (AWS).
  • Strong familiarity with DevSecOps and CI/CD pipeline security.
  • Hands-on experience with security tools such as vulnerability scanners and static code analysis tools.
  • Understanding of OWASP Top 10 and secure application development principles.
  • Working understanding of networking, encryption, authentication protocols, and secure application development.
Preferred Skills & Experience:
  • Fluency in development languages like Java, JavaScript, Ruby, Ruby on Rails, etc.
  • Certifications such as CISSP, CEH, OSCP, or AWS Security Specialty.
  • Experience with container security (e.g., Docker, Kubernetes).
  • Knowledge of scripting languages (e.g., Python, Bash) for automation.
  • Knowledge of security frameworks (e.g., NIST, OWASP, CIS Benchmarks).
  • Contributions to open-source projects.
  • Hands-on experience with security tools such as SIEM, IDS/IPS, firewalls, and vulnerability scanners.
Get in on all the awesome at Instructure.
  • Competitive salary and 401k.
  • Medical, dental, disability, and life insurance.
  • HSA program, vision, voluntary life, and AD&D.
  • Tuition reimbursement.
  • Paid time off, 11 paid holidays, and flexible work schedules.
  • LifeStyle Spending Account.
$100,000 - $185,000 a year
Depending on experience.

We’ve always believed in hiring the most awesome people and treating them right. We know that the more diverse we are, the more diverse our ideas will be, and when we openly welcome those ideas, our environment is better and our business is stronger.

All Instructure employees are required to successfully pass a background check upon being hired.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Offensive Security Engineer

Employers Holdings

Remote

USD 80 000 - 115 000

4 days ago
Be an early applicant

Offensive Security Engineer

Plurilock

Remote

USD 90 000 - 110 000

5 days ago
Be an early applicant

Staff Security Engineer

Cadence

Remote

USD 180 000 - 220 000

6 days ago
Be an early applicant

Senior Mobility Security Engineer

DMI (Digital Management, LLC)

Remote

USD 100 000 - 130 000

6 days ago
Be an early applicant

Software Product Security Engineer

Mindware INC

Remote

USD 110 000 - 234 000

5 days ago
Be an early applicant

Senior IT Security Engineer Remote - United States

Logix Federal Credit Union

Colorado

Remote

USD 110 000 - 130 000

5 days ago
Be an early applicant

Principal Security Engineer

Upstart

Remote

USD 182 000 - 253 000

Today
Be an early applicant

Senior Security Engineer

Bluesight

Remote

USD 110 000 - 130 000

12 days ago

Application Security Engineer

Pennylane

Remote

USD 125 000 - 259 000

14 days ago