Senior Engineer, Cloud and System Security
The job responsibilities outlined in this document are not exhaustive and may evolve over time and be reviewed according to business needs.
ROLE DESCRIPTION SUMMARY
In this position you will be directly accountable for translating advanced security requirements into comprehensive effective and efficient technical security concepts. You will lead and advise project and BizDevOps teams to deliver solutions that are resilient against advanced threats. You will autonomously lead and deliver complex cyber security implementation projects and design, implement and automate advanced cloud, system and application security controls leveraging best of breed and cloud native state of the art security technologies.
PRIMARY RESPONSIBILITIES / KEY RESULT AREAS
COMPETENCIES
QUALIFICATIONS & EXPERIENCE
Degree in Computer Science and a minimum of 10 years industry related experience in large heterogeneous environments
Sound, hands-on knowledge of and experience with managing system related security risks, including the assessment of system security risks, specification of security requirements, the definition of security concepts, secure system design, implementation of security controls, specification of secure configuration standards, assessment of security controls and vulnerabilities
Knowledge of:
MS Azure, Office 365, Azure Information Protection, Security Center, Cloud App Security, Microsoft Defender for O365, Defender for Identities, Intune, Conditional Access, Identity Protection, Application Gateway, Security and Compliance,
Azure DevOps
Operating Systems (MS Windows 10, Windows Server 201x and Linux), Citrix, VMWare, VDI, WVD, containers and applications, including a clear understanding of their vulnerabilities and how to securely design and implement them
Automation using common scripting languages and interfaces including Powershell, Python, Terraform, JSON, SOAP, RestAPI, etc
Identity and Access Management and Strong Authentication Systems, including Azure AD, Active Directory, Kerberos, SSO, SAML, OAuth
MITRE ATT&CK framework for Enterprise and Cloud, attacker techniques and how to mitigate them in complex environments
Public Key Infrastructure including HSM (e.g., Public Certificate Management, Internal Certificate Management, …)
Privileged Access Management and password vault solutions
Malware protection, Enterprise Detection and Response and Host-based Intrusion Prevention Systems
Security standards, best practices and guidelines (e.g., NIST SP-800 series, DISA STIGs, CIS)
Vulnerability, compliance and patch management solutions for complex, heterogeneous systems
Relevant product and general security certifications (e.g., Microsoft Azure, O365, CompTIA Cloud, GCWN, GCED, GCUX, GISP, GPEN, CISSP, CEH) and knowledge of the satellite industry are a plus
Solid knowledge of cyber security threats, vulnerabilities, security technologies, controls and best practices
OTHER KEY REQUIREMENTS / COMMENTS
SES is an Equal Opportunity and Affirmative Action Employer
SES and its Affiliated Companies are committed to providing fair and equal employment opportunities to all. We are an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.
For more information on SES, click here.