Job description
Harnessing the Power of Data, Together.
The world’s leading enterprises are using Solace’s event streaming and management platform to transform their organizations by harnessing the power of events.
The more quickly an enterprise can get information about events to where it needs to be, the more effectively a business can react to opportunities and improve the customer experience. That’s where an event broker (modern messaging-oriented-middleware) comes in.
Help Us, Help Them, Help You.
By joining our first-class team, you will be helping leading enterprises, including common household brands we all know and love, reach their full potential in this real-time, digital world.
The next time you drive a luxury vehicle, do some online banking, fly in a plane, or order some furniture online, you could be getting a better experience as a direct result of our technology, and your hard work. Wouldn’t that be great!?
Overview
This position is for a DevSecOps Engineer. In this role you will be responsible for the cyber security of Solace Cloud, our market-leading SaaS offering, across leading cloud providers and platforms such as Amazon Web Services, Microsoft Azure, Google Cloud Platform, Kubernetes, etc. AMAZING!
Are You Someone Who Is…
- Ready to roll up their sleeves and get creative.
- Excited about the data-driven future.
- Passionate about details and dedicated to making our products the best in the world.
- Eager to tackle the next generation of challenges and make an impact.
- A committed team player who likes to win!
Does this sound like you? Check out the description of the role below and if it’s a fit, apply along with your resume and include any additional links you think might be relevant (LinkedIn, your portfolio, etc)!
The Right Person Will:
- Contribute to Solace Cloud’s security engineering & compliance practices
- Provide security engineering input to programs throughout the lifecycle to ensure systems & software meet security standards
- Use various cloud providers services and features to secure the production environment
- Conduct architecture and code reviews
- Participate in production readiness assessments
- Help implementing a shift left security mindset and practice in the organization and educate the software engineering teams on the security best practices
- Maintains current knowledge of OWASP and SANS Security Vulnerabilities and remediations
- Review and triage results of automated penetration testing and perform manual penetration testing on our cloud services
- Participate maintaining compliance with security standards such as ISO 27001 and SOC II through review and improvements of the controls
- Respond to customer and field team questions on security
- Prevent Cyber Security Incidents by implement monitoring, detection solutions, and analysis of potential intrusions in cloud environment
- Be on-call escalation path and provide 24x7 off-hours support from time to time
Required skills:
- Expert in Cloud Networking and Cybersecurity
- Hands-on experience with public cloud providers (AWS, Azure, GCP) security services & features
- Experience implementing certificate and key management systems to enable encryption on cloud platforms
- Experience in configuration management of key management systems such as Vault
- Experience in automating the response to commonly observed security incidents
- A strong understanding of IAM, role-based access controls, network security, and means of isolating environments within cloud infrastructure
- Good understanding of standard methods and patterns for authentication and identity management
- Hands-on experience with cloud monitoring tools like Datadog & CloudWatch
- Experience using penetration and static analysis tools
- Experience with Linux Operating System
- Experience securing containers and Kubernetes
- Have a demonstrated ability to resolve incidents of complex cloud-based environments
- Demonstrate understanding of OWASP and SANS Security vulnerabilities and remediations
- Strong programming skills in at least one of the following languages: Python, Java, JavaScript, Groovy, Golang, etc.
Desirable Skills:
- Hands-on experience with securing micro-service architecture
- Experience with compliance standards such as SoC II, ISO 27001, GDPR
- One or more of the following certifications: AWS Security Specialty, CompTIA Security +, CPTE - Certified Penetration Testing Engineer, CEH - Certified Ethical Hacker
Why You’ll Want to Join Us at Solace
- We have an awesome team! You’ll get to work with some of the smartest individuals in the business
- We believe in work-life balance and believe it’s important to love what you do
- We have adopted a hybrid work model to create an inclusive working environment for everyone
- Our training programs are top-notch (LinkedIn Learning, Mentorship program, Solace Academy)
- We like to brag about our stellar customer lineup!
- We are social – we like to keep things simple and fun!
- We are one of the top-ranked employers on Glassdoor
- We have a sense of humour and make cool videos on cool topics like MITT and this!
Not sure you meet all the requirements? We still want to hear from you — we know experience comes in all forms, so don't let that hold you back from applying!
We believe that diversity in all of its forms drives innovation and growth, both in business and in life. This is why we strive to create an enriching and safe workplace where you can be who you are. It is only because of you that we can be us.
If you want to do the best work of your career and feel supported every step of the way, we encourage you to join us.
We thank all candidates for their interest, however, only those selected to continue in the selection process will be contacted. Solace welcomes and encourages applications from people with disabilities.
Accommodations are available on request for candidates taking part in all aspects of the selection process.
About Solace
CEO: Denis King
Revenue: Unknown / Non-Applicable
Size: 201 to 500 Employees
Type: Company - Private
Website: https://www.solace.com/
Year Founded: 2001