Senior Security Engineer
Company: Cambridge Mobile Telematics
Location: Somerville
Posted on: May 14, 2022
|
|
Job Description:
Cambridge Mobile Telematics (CMT) is on a mission to make the
world's roads and drivers safer. Our first product launched in 2012
and pioneered mobile usage-based insurance. Since then, CMT has
become the world's leading telematics and analytics provider for
insurers, rideshares, personal safety providers, and automakers,
providing telematics services for 80 enterprise programs in 20
countries. Powered by mobile sensing, artificial intelligence, and
behavioral science, we measure driving quality, incentivize safer
driving, assist users in crashes in real time, and improve the
safety for millions of drivers every day around the world.We are
seeking a senior level Security Engineer who will focus on the
building and maturing our security and compliance infrastructure.
This person will work closely with our other team members, as well
as our Compliance, SRE, Engineering and Product teams to develop
security best practices as we build, deploy, and maintain secure
products across CMT.Responsibilities:Triage, manage and resolve
security and compliance alerts raised by our security monitoring
platform (Lacework)Resolve any escalated security access requests
raised by our front line security engineers on behalf of internal
end usersResolve requests from issues raised from other
organizations, both internal and external, where Security
Engineering assistance is neededFollowing the onboarding period,
participate in the 24x7x365 on-call rotationDevelop, execute, and
track the performance of security metricsDevelop & manage the
automation pipelines to provide automated account & security
production deploymentsTroubleshoot, and maintain the security
infrastructure of our production infrastructureAssist with the
development and enforcement of companywide security policies,
procedures, and best practicesManage and monitor our
SAST/DAST/SCA/OSS tools and their remediation effortsImplement and
manage attack surface management tools, such as web application
firewallsHelp with onboarding other team members onto platforms
managed by our teamAssist other members of the Security Engineering
team with planned project workComplete any additional tasks that
may ariseRequirements:Bachelors or Masters preferred with 5+ years
in a Product/SAAS Security, IT Security or IT Systems
Administration roleExtensive knowledge of security management
systems - preferably Lacework & SumologicExtensive knowledge of AWS
services - AWS Certification preferredGood technical knowledge of
content filtering, firewalls (WAF), authentication systems and
notification systemsGood knowledge and experience working with
Linux operating systemsGood understanding of source control
concepts - preferably Bitbucket & GithubGood experience working
with infrastructure as code - preferably TerraformGood programming
skills in at least one programming language - preferably PowerShell
& PythonGood previous experience with pipeline automation -
preferably Jenkins & CodePipelineGood experience with configuration
and compliance systems - preferably TurbotGood experience with
Software Development Application Security systems - preferably
Qualys & VeracodeGood experience with security focused code review
tools - preferably Synopsys & WhitesourceGood understanding of
security/compliance/privacy frameworks and standards - preferably
NIST/ISO/CSF/CISCompensation:Competitive salary based on skills and
experienceEquity in the form of RSUs or stock optionsComprehensive
benefits (Medical, Dental, Vision, matching 401k)Life insurance
(Basic & AD&D)Unlimited Paid Time Off (Vacation, sick days &
public holidays)Parental leaveShort-term & long-term disabilityWork
from home depending on role and responsibilitiesFlexible scheduling
options depending on role and responsibilitiesAdditional Perks:Feel
great working to solve a serious problem (improving road
safety)Have fun at our frequent team outingsVolunteer at local
organizations Extensive wellness program including gym memberships,
fitness reimbursement, and a comprehensive employee assistant
programCMT will do all that is possible to support our employees
and create a positive work environment for all!Commitment to
Diversity and Inclusion:At CMT, we are intensifying our commitment
to provide opportunities and career growth to the underrepresented.
We are focused on creating an inclusive work environment that
encourages a diversity of background and thought to produce the
best products and services within our industry.CMT is an equal
opportunity employer and strives to create an inclusive and diverse
environment that enriches our employees' lives in and outside of
work. We do not discriminate on the basis of race, religion, color,
national origin, gender, sexual orientation, age, marital status,
veteran status or disability state.CMT is headquartered in
Cambridge MA. To learn more, visit www.cmtelematics.com and follow
us on Twitter @cmtelematics.
Keywords: Cambridge Mobile Telematics, Somerville , Senior Security Engineer, Engineering , Somerville, Massachusetts
Click
here to apply!
|