Jobs and Careers
FE

Security Engineer Architect

Fetch
Birmingham, United Statesfull_timeVerifiedPosted 28 Feb 2024

About the role

What we’re building and why we’re building it. 

There’s a reason Fetch is ranked top 10 in Shopping in the App Store. Every day, millions of people earn Fetch Points buying brands they love. From the grocery aisle to the drive-through, Fetch makes saving money fun. We’re more than just a build-first tech unicorn. We’re a revolutionary shopping platform where brands and consumers come together for a loyalty-driving, points-exploding, money-saving party.

Join a fast-growing, founder-led technology company that’s still only in its early innings. Ranked one of America’s Best Startup Employers by Forbes two years in a row, Fetch is building a people-first culture rooted in trust and accountability. How do we do it? By empowering employees to think big, challenge ideas, and find new ways to bring the fun to Fetch. So what are you waiting for? Apply to join our rocketship today!

Fetch is an equal employment opportunity employer.

In this role, you can expect to:

  • Ensure that stakeholder security requirements necessary to protect the organization's mission and business processes are adequately addressed in all aspects of enterprise architecture including reference models, segment and solution architectures, and the resulting systems supporting those missions and business processes.
  • Be technical. You will dive into the details of issues, identify gaps in solutions, debate technical approaches, weigh technology tradeoffs, perform analysis, and build software. You will be expected to gain a technical understanding of the Fetch Rewards app, our internal systems, and our software development lifecycle.
  • Execute initiatives. You will lead and drive elements of the company’s security strategy, including the development or revision and execution of applicable policies, procedures, and employee training programs to support that strategy according to industry best practices.
  • Take responsibility. You will be responsible for coordinating incident response and managing post-incident actions for information security events.
  • Effectively communicate with external and internal stakeholders on information security topics ranging from audit results, responding to information security questionnaires, information security policies and procedures, and adherence to industry best practices and recommendations as a result of risk analysis. You will clearly articulate risks, business impacts, and technical constraints tailored to the audience (i.e., from engineers to executives).
  • Collaborate. You will partner across multiple internal teams help stakeholders meet their goals in a secure way and help identify mitigating controls.
  • Balance priorities. You will triage multiple initiatives, make judgment calls, and tackle the right problems at the right time.
  • Get your hands on problems and learn.

You are a good fit if you:

  • 7+ years experience in system engineering, network engineering, cybersecurity, information security, or Unix/Linux administration
  • 3+ years experience with Cloud infrastructure and tooling (preference for AWS experience)
  • Bachelors in Computer Science or equivalent experience
  • Develop/integrate cybersecurity designs for systems and networks with multilevel security requirements or requirements for the processing of multiple data classification levels
  • Document and address the organization's information security, cybersecurity architecture, and systems security engineering requirements throughout the acquisition life cycle
  • Ensure that acquired or developed system(s) and architecture(s) are consistent with the organization's cybersecurity architecture guidelines
  • Perform security reviews, identify gaps in security architecture, and develop security risk management/mitigation plans
  • Define and document how the implementation of a new system or new interfaces between systems impacts the security posture of the current environment (T0268)
  • Evaluate security architectures and designs to determine the adequacy of security design and architecture. Collaborate with DevOps teams and developers to develop or implement solutions
  • Experience in DevSecOps and working with developers to advance the goals of an information security program
  • Experience in obtaining PCI DSS and SOC 2 certifications
  • Have a risk-driven mindset that can balance the needs for speed, creativity, and safety
  • Effectively identify needs, design solutions, establish plans, and execute them
  • Possess technical foundations in identity and access management, cloud infrastructure security, and security in general
  • Exceptional understanding of computer networking, network security, internet protocols, TLS/SSL, encryption standards, firewalls, monitoring, distributed applications

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Fetch

View company profile →