The Senior Security Engineer II for Data Security will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape.
Primary Duties:- Working cross functionally to design, build, and operate solutions that continuously improve and automate our security capabilities
- Leveraging data to understand trends, metrics, and opportunities to improve our security posture and then helping execute on those opportunities with stakeholders
- Leading and enhancing incident / issues response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents / issues
- Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures
- Mentoring and coaching more junior engineers or analysts
Minimum Qualifications:- BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 10 years security domain experience without degree.
- 6+ years of experience in deploying and supporting Data Protection Technologies in a Cloud Native environment.
Preferred Knowledge, Skills, and/or Abilities:- Knowledge of health-tech systems, like Electronic Health Records, Clinical data, PHI, etc, direct experience preferred.
- Experience in designing and implementing Data Security Controls in multi-cloud and hybrid environments.
- Extensive experience identifying, evaluating and triaging data protection related events with DLP, DSPM methodologies and tools.
- Experience implementing and maintaining data protection tools ensuring optimal configuration and performance.
- Experience with managing policies for data loss prevention (DLP) and detection, including scanning and identifying sensitive data across systems.
- Proficient in conducting data discovery and classification initiatives, ensuring sensitive information is adequately protected.
- Experience working with tools such as Forcepoint DLP, Symantec DLP, Zscaler, Netskope CASB, DSPM tools such as Cyera, Laminar, BigID etc.
- Certifications such as Security+, CISSP etc. preferred.
- 4+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long-term business value
- Experience with health-tech systems, like Electronic Health Records, Clinical data, etc preferred.