Strong engineering experience in 2 or more areas: cloud security, network security, endpoint security, application security, security architecture, incident response, IAM, SIEM, SOAR, threat intelligence, mobile device security, vulnerability management, data protection solutions, security analysis, and/or anomaly detections. Knowledge of regulatory requirements (i.e., PCI, HIPAA, GLBA, SOX) and security frameworks (e.g., NIST CSF, OWASP, CSA cloud control matrix, MITRE etc.)Working knowledge of application security concepts, static/dynamic security analysis, software composition analysis, secrets management, WAF, RASP and related tools.