Enable job alerts via email!

Senior Product Security Engineer, Data & Insights Solutions

Tyler Technologies, Inc.

Lawrenceville (GA)

Remote

USD 127,000 - 135,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a Senior Product Security Engineer to enhance the security of its data solutions. This role involves conducting assessments, managing security incidents, and collaborating with teams to integrate security into development processes. You'll play a crucial part in ensuring compliance with various certifications and improving the overall security posture of the organization. If you're passionate about security and want to make a significant impact in a fast-paced environment, this opportunity is perfect for you. Join a team dedicated to transforming public service through data-driven solutions and innovative security practices.

Benefits

Competitive benefits
Health and wellness support
Flexible work environment

Qualifications

  • 3-5 years of security engineering experience with strong Python skills.
  • Expertise in security testing tools and cloud security principles.

Responsibilities

  • Conduct DAST assessments and collaborate with engineering for remediation.
  • Manage a bug bounty program and improve security practices.

Skills

Security Engineering
Agile Kanban
Communication Skills
Troubleshooting
Python Scripting
Incident Response
Cloud Security Principles
Vulnerability Analysis

Education

Bachelor's degree in Computer Science
Valued Certifications (e.g., CompTIA Security+)

Tools

Confluence
Jira
Teams
Burp Suite Pro
Nessus
AWS
Linux
GitHub Enterprise

Job description

Senior Product Security Engineer, Data & Insights Solutions

Tyler Technologies is seeking a passionate, talented Senior Product Security Engineer to support our Data and Insights (D&I) solutions on the Security team. This position is an exciting opportunity to influence the security posture of our D&I portfolio, augment our development processes with security-centric activities, and maintain our FedRAMP Moderate ATO. As a Senior Product Security Engineer, you will work in a fast-paced, results-driven environment with highly skilled and dedicated teams committed to transformational change.

The D&I solution serves as Tyler Technologies' central hub for data, reporting, analytics, and artificial intelligence capabilities. Our teams build and maintain the foundational services and solutions that enable data-driven innovation across Tyler's product portfolio. We empower teams throughout the organization to incorporate advanced analytics, AI, and data-driven features into their products, ultimately helping government agencies make better decisions and serve their communities more effectively. Team members contribute their expertise to reduce complexity, introduce innovative solutions, and advance Tyler's data-driven future.

Work with our transformative data solutions that help agencies address mission-critical outcomes. Our cloud-based data platform, open data solutions, and performance management solutions help agencies improve performance, transparency, and public engagement.

Location

Remote | Seattle, Washington

Responsibilities
  • Conduct bi-weekly DAST assessments against our production environments. Investigate and report results. Collaborate with engineering for awareness and remediation. Develop and execute a DAST improvement plan inclusive of tool migration and automation inclusion.
  • Coordinate, reproduce, and validate reported security findings from clients, cross-team researchers, and third-party penetration testers.
  • Monitor and investigate inbound application and infrastructure security alerts.
  • Manage an active bug bounty program. Develop and execute an improvement plan that elevates researcher interaction and general program involvement.
  • Assume primary responsibility for control families that contribute to our FedRAMP Moderate, SOC2, GDPR, HIPAA, and CJIS certifications. Responsibility includes continuous improvements and auditing, evidence collection and submission, interview participation, internal security reviews, and tabletop exercises.
  • Participate in security strategy and planning, including team vision, roadmaps, and increment planning.
  • Coach and collaborate with team members to normalize and measure, through a maturity model, security best practices.
  • Participate in engineering team meetings, facilitating secure design through instrumenting threat modeling.
  • Investigate, document, and resolve security incidents (IRP and ISCP) and provide analysis to senior leadership.
  • Stay informed about emerging security trends and technologies. Create and deliver security training and awareness programs for developers, testers, and other stakeholders.
Qualifications
Soft Skills
  • Strong organization and prioritization skills. A proven ability to react positively and decisively to change.
  • Superior verbal and written communication skills, with the ability to communicate complex technical solutions to non-technical audiences.
  • Deadline-driven, team-oriented, be a self-starter, have great people skills, a strong work ethic, and be enthusiastic and ambitious.
  • Flexible. Able to independently manage multiple efforts simultaneously while maintaining professionalism under pressure.
  • A passion for improving the client experience and a track record of successful interactions with internal/external clients.
  • Excellent troubleshooting skills.
  • A technical leader with the ability to inspire and support peers.
Tools and Technology
  • 3-5 years of security engineering experience.
  • Working experience in Agile Kanban development methodologies.
  • Expertise in collaboration and prioritization using Confluence, Jira, and Teams.
  • In-depth knowledge of common web application vulnerabilities, such as OWASP Top Ten (e.g., SQL injection, XSS, CSRF).
  • Proficiency with a wide range of security testing tools, including but not limited to vulnerability scanners (e.g., Nessus, Qualys), web application scanners (e.g., Burp Suite Pro, Invicti, OWASP ZAP), and penetration testing frameworks (e.g., Metasploit).
  • Familiarity with implementing and managing multiple NIST 800-53 control families: Access Control, Audit and Accountability, Configuration Management, Identification and Authentication, System and Information Integrity.
  • Strong Python scripting skills and GitHub Enterprise experience.
  • Experience with static application security testing (SAST), security information and event management (SIEM) systems, and intrusion detection/prevention systems (IDS/IPS).
  • Understanding of network and information security best practices.
  • Experience with Linux, Ubuntu, AWS, Red Hat.
  • Familiarity in one or more: threat analysis, security automation, penetration testing, incident response, IAM, bug bounty programs, third-party vendor management.
  • Working experience in cloud log management solutions (e.g., Sumo Logic).
  • Experience securing cloud environments with an understanding of cloud security infrastructure and cloud security principles.
  • Understanding of DevOps and continuous integration/continuous delivery (CI/CD) pipelines and how to integrate security into the DevOps process.
  • Understanding of attack vectors for cloud environments.
  • Knowledge of encryption algorithms, certificate management, and cryptographic protocols.
  • Required to undergo and satisfactorily pass a fingerprint background check in accordance with CJIS requirements.
Other
  • Bachelor's degree in Computer Science, Engineering, Mathematics, Information Systems, or a related field preferred.
  • Valued Certifications: CompTIA Security+, CompTIA Cybersecurity Analyst (CySA+), AWS Professional, AWS Security.
Candidates with less experience directly applicable to this position will be considered. You belong here! Not everyone checks every single box, and we encourage you to apply.
State-Specific Salary Range Disclosure Requirements

Salary will generally fall between $127,416 - $135,000 before adjustment for geographic differences. Recruiter can confirm if position is incentive eligible.

Taking Care of You & Your Family

Your health and well-being are important to us. That’s why we invest in our team members by offering competitive benefits to support their health and financial wellness.

Tyler is subject to regulations, guidelines, and/or client requirements relating to the qualifications of Tyler personnel performing certain client work. Because of the nature of this position, it is a requirement that the candidate can successfully pass a federal background check at the time an offer is extended and over the course of employment with Tyler.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Software Engineer - Data & Insights

Tyler Technologies

Atlanta

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant

Senior Data Engineer

Tyler Technologies

Yarmouth

Remote

USD 93,000 - 135,000

4 days ago
Be an early applicant

Senior Data Engineer

Tyler Technologies

Town of Texas

Remote

USD 93,000 - 135,000

4 days ago
Be an early applicant

Senior Data Engineer

Tyler Technologies

Washington

Remote

USD 93,000 - 135,000

4 days ago
Be an early applicant

Sr. Data Scientist

Tekfortune Inc

Jersey City

Remote

USD 90,000 - 150,000

Yesterday
Be an early applicant

Senior Software Engineer - Data & Insights

Tyler Technologies

Phoenix

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant

Senior Software Engineer - Data & Insights

Tyler Technologies

Louisville

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant

Senior Software Engineer - Data & Insights

Tyler Technologies

Boston

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant

Senior Software Engineer - Data & Insights

Tyler Technologies

Washington

Remote

USD 90,000 - 150,000

4 days ago
Be an early applicant