Jobs and Careers
TH

Information Security Engineer, FedRAMP

ThousandEyes, Inc.
United Statesfull_timeVerifiedPosted 5 Mar 2024
💰 $201,400/yr($121,600/yr$201,400/yr)

About the role

Who We Are

The name ThousandEyes was born from two big ideas: the power to see things not ordinarily possible and the ability to collect insights from a multitude of vantage points. As the world continues its digital transformation and relies more on cloud services and the Internet, the “network,” which is now both public and private, has become a black box our customers cannot see or understand.  

Our Internet and cloud intelligence platform delivers the only collectively powered real-time view of the Internet and private networks, cloud, and SaaS platforms, helping enterprises and service providers identify problems before they impact revenue, damage brand reputation, or halt employee productivity. 

In August 2020, Cisco Systems completed the acquisition of ThousandEyes, which now forms the ThousandEyes Business Unit within the Cisco Networking Business Group and is the Network Assurance solution for Cisco across the Cisco Networking Cloud and Cisco Security Cloud. ThousandEyes is also a foundational component of Cisco’s growing Full-Stack Observability (“FSO”) business. 

About The Role

ThousandEyes is seeking an exceptional information security engineer with strong project management skills to support our Information Security and Privacy Risk Management function. This is a combination of project/program management and risk analysis: a hands-on role that requires experience and expertise managing projects and processes related to security of networks, systems and applications. The Information Security Risk Management team is responsible for managing and mitigating risks faced by ThousandEyes to protect its systems, services and data. Our scope includes everything from customer applications to enterprise services that support our business operations. We work cross-functionally with internal teams providing security consulting services while driving new program initiatives. You should be strongly driven and excited about learning new processes. You will be collaborating with ThousandEyes’ project teams to ensure the success of the information security risk management program. We are looking for an information security engineer / project manager that will be aggressive in following up on tasks, achieving deadlines, and holding resource owners accountable to risk remediation plans. The security engineer role will be highly engaged with all aspects of the risk assessment process. A successful candidate will need strong project management fundamentals and excellent communication skills. 

What You’ll Do

  • Analyze vulnerabilities to determine risk, and remediation and/or mitigation steps

  • Track remediation tasks, engage with systems/services owners and stakeholders to ensure vulnerability management compliance

  • Investigate and report threats or software issues, recommend  and drive remediation

  • Assist with enterprise-wide risk assessment processes and specifically with application security assessments

  • Coordinate cross-functional team meetings to remediate previously identified security risks and close out pending action plans

  • Proactively assess potential areas of risk and opportunities of vulnerability in the network

  • Interact with internal and external customers on security-related projects and operational tasks

  • The individual must have a strong background in Python, shell scripting, and database knowledge. He/she/they must possess strong organizational skills, be action oriented, results driven, and work with minimal direction.

Qualifications

  • The successful applicant will be performing work in FedRAMP Moderate or FedRAMP High environments, and therefore, must be a U.S. Person (i.e. U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee). This position may also perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil.

  • 5 to 7 years of experience in the Information Security or related domain[s]

  • BS or MS degree in Computer Science (or equivalent)

  • Practical use and implementation of information security principles and practices; Understanding of IT methodologies, such as the software development lifecycle, secure infrastructure as code and related operations

  • Familiar with vulnerability management tools

  • Understanding of cloud computing services

  • Strong scripting skills, automation and containerization 

Preferred Qualifications

  • Technology and compliance knowledge of the following:
    • Python, Bash, Qualys, Rapid7, Nessus, SIEMs, Docker, Linux, Amazon Web Services, LAN and WAN, VMWare/Virtualization

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ThousandEyes, Inc.

View company profile →