Sorry, this listing is no longer accepting applications. Don’t worry, we have more awesome opportunities and internships for you.

Security Engineer

Oblong Industries

Security Engineer

Los Angeles, CA
Full Time
Paid
  • Responsibilities

    Job Description

    The Mezzanine team is looking for a Security Engineer to keep our core product, Mezzanine and its appliances and cloud services, secure. This is a high-impact role in charge of writing new security related code, auditing existing code and architectures for security flaws, and reviewing new features for security and privacy. You will work with the Mezzanine team to secure the system, but will also collaborate closely with many parts of the organization and occasionally interact with customers. Clear communications skills are crucial for this role. This position is located in Los Angeles, CA or Boston, MA. 

    RESPONSIBILITIES:

    • Develop production-quality code while applying security best practices
    • Architect and develop security requirements for Mezzanine and our cloud services
    • Improve and maintain current Mezzanine security policies and communicate them to other parts of the company
    • Keep up-to-date with software vulnerabilities, especially third-party security updates. Provide recommendations and implement fixes for them
    • Introduce automated security scans into our CI/CD pipelines
  • Qualifications

    Qualifications

    BASIC QUALIFICATIONS:

    • 2+ years of professional experience delivering production-quality code
    • Proficiency in Ruby, Python, or Golang
    • Working knowledge of REST APIs and web application frameworks
    • Experience finding and mitigating OWASP Top 10
    • Good understanding of cryptography (symmetric and asymmetric ciphers) and secure protocols (TLS, SRTP)
    • Comfortable programming in a Linux environment
    • Excellent written and verbal communications
    • Passion for learning new technologies

    NICE TO HAVE:

    • Experience with vulnerability scanning tools like Metasploit, Nessus, Qualys, or equivalent
    • Knowledge of containerization technology and container orchestration system (Kubernetes, Docker)
    • Experience with WAF, integrating and monitoring IDS, incident response protocols, and other cloud security tools
    • DOD 8570 compliant certification such as CISSP, CISM, CISA, or equivalent
    • Participation in CTF, Red/Blue team exercises, security bounties

    To apply, include a short note about you and why you're interested in this job and a bundle of or pointer to some code or tutorial text you’ve written. 

    Additional Information

    BENEFITS AND PERKS:

    • Competitive compensation package 
    • Fully covered medical, dental, and vision insurance
    • Unlimited PTO policy
    • 401K plan
    • Opt in lunch program available 3 days/week
    • Located in the Downtown Los Angeles Arts District

    All your information will be kept confidential according to EEO guidelines.