Jobs and Careers
SH

Staff Security Engineer (Access Control & Access Management)

ShipBob
Remote - United States, United StatesRemotefull_timeVerifiedPosted 14 Mar 2024
💰 $210,000/yr($141,000/yr$210,000/yr)

About the role

As a member of the ShipBob Team, you will benefit from an environment where everything is achievable. We aim to be a place where you can:

  • Write Your Career Story.  Because we are solving some of the most difficult problems in global commerce, you have the opportunity to write the story that will make your career.
  • Experience Global Impact and Global Connection.  At ShipBob we benefit from diverse cultures and perspectives in service of the global community.
  • Grow With An Ownership Mindset. We believe that great innovation comes from great transparency.  We are more resilient and more creative when we have an inclusive and transparent culture where everyone knows our strengths and opportunities.

Title: Staff Security Engineer (Access Control & Access Management)

 

What you’ll do:

• Design and implement access control solutions for cloud-based applications and infrastructure using tools such as Azure AD, M365, Google Workspace, Salesforce, etc.

• Monitor and audit access control activities and events for anomalies.

• Develop and enforce access control policies and standards based on the principle of least privilege and role-based access control.

• Develop and automate security workflows, playbooks, and tools to improve efficiency and effectiveness of security operations.

• Develop relevant policies, procedures, and guidelines for access control and ensure compliance with, and support audits for, various standards, including but not limited to ISO270001 and SOC2.

• Design and configure Azure Active Directory (AAD) for effective access management to be used within Azure and leveraged in other applications such as Retool and SSMS.

• Research and evaluate emerging threats and security technologies and provide recommendations for enhancing our security posture

• Collaborate with other security team members and stakeholders across the organization to share knowledge and best practices

• Work closely with all teams to continuously provide technology requirements and use cases for enabling technologies including but not limited to SIEM, SOAR, Case Management, GRC, EDR, Intrusion Detection Systems, Web Proxy/Content Filtering, Active Directory, and PKI

• Proactively search for, identify, and analyze new and existing techniques to detect advanced and targeted threats.

• Participate in risk assessments and implement controls to mitigate identified risks.

 

What you’ll bring to the table:

• 6+ years of hands-on work experience with security architecture and engineering in a cyber security operations program

• 4+ years of experience in an access control security engineering or related role

• Strong knowledge and experience with access control frameworks and tools, such as IAM, RBAC, ABAC, OAuth, SAML, etc.

• In-depth knowledge of Azure services, especially Azure Active Directory, Azure AD Identity Protection, and Azure RBAC.

• Proven experience in designing and implementing access controls in cloud environments, particularly with Azure.

• Proven track record of integrating security practices into the software development process.

• Proven track record of integrating security practices into database systems such as SSMS.

• Strong knowledge of cloud security, network security, endpoint security, and threat intelligence• Proficiency in scripting languages such as Python, PowerShell, Go, or Bash

• Proven experience securing cloud-based infrastructures; Azure, M365, Google Workspace, Salesforce, etc.

• Excellent fundamental knowledge of industry standard frameworks such as MITRE ATT&CK

• Desire to solve response challenges with automation.

• Proven ability designing and deploying security controls across all security domains such as access management, data protection, vulnerability management, incident response and management, application security, network security, preventive, detective, and offensive security solutions.

• Strong design and solution implementation skills for a Zero Trust Architecture

• Outstanding interpersonal and communication skills with the ability to influence both internally and externally, and to drive multi-functional alignment and action

 

ShipBob believes in transparency while providing a competitive total compensation package with a pay for performance approach. The expected base pay range for this position is $141,000 - $210,000 and pay is determined based on skills, experience, and capabilities. 

Classification: Exempt

Perks & Benefits:

  • Medical, Dental, Vision & Basic Life Insura

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ShipBob

View company profile →