Jobs and Careers
PO

Senior Information Security Engineer

Poppulo
Irelandfull_timeVerifiedPosted 30 Jan 2024

About the role

Introduction 

Are you searching for an opportunity to play a key role in driving the dramatic growth of a highly successful software company? 

At Poppulo, we’re working on what’s next in communications and workplace technology. As a pioneer in this industry, we understand that meaningfully reaching every employee is hard. And so is managing office space in a hybrid world. And so is improving the customer and guest experience. We exist to make each of these things easier. We exist to bring harmony to our customers. And we do that at enterprise scale. Our omnichannel employee communications, customer communications, and workplace experience platform is trusted by over 6,000 organizations today, reaching more than 35M employees and delivering content to 500,000+ digital signs.

We know there’s no such thing as a “perfect" candidate - we’re all a work in progress and are growing new skills and capabilities all the time. We encourage you to apply for a position with Poppulo even if you don’t meet 100% of the requirements. We believe in fostering an environment where there is a diversity of perspectives, in hopes that we can all thrive. 

Opportunity

Poppulo is seeking a Sr. Information Security Engineer to join our security team. The role of the Senior Information Security Engineer implements preventive, detective and response controls to protect Poppulo assets. They will utilize established and create new processes and tools to focus on incident response, threat identification, analyses, and remediation. 

The Senior Information Security Engineer will support the creation of the development and maintenance of business continuity planning, data, systems, and network security for systems and controls related to their job duties. The Senior Information Security Engineer will report to the Sr. Director of Information Security Operations.

Principal Duties & Responsibilities:

  • Develops and implements security controls, defenses and countermeasures to intercept and prevent internal or external attacks or attempts to infiltrate company email, data, and web-based systems.
  • Reviews security violation reports or logs, investigates possible security exceptions and coordinates with internal teams or external agencies as needed.
  • Planning, implementing, and managing security measures to protect the organization's information systems and networks
  • Monitoring security systems to identify and respond to potential security incidents
  • Staying up to date with the latest cybersecurity threats and technologies
  • Developing and implementing security policies and procedures
  • Providing training and support to end-users on security best practices
  • Responding to security incidents and leading incident response efforts.
  • Managing Endpoint detection and response (EDR) platform.
  • Analyzing Emails for spoofing, reading and understanding email headers and maintains email gateway security controls
  • Oversee Identity and Access Management (IAM) operations
  • Perform real-time detection, analysis, and response to threats via an EDR tool
  • Analyze attacks and trends facing the organization to better define proactive defensive measures
  • Anticipates and prevents problems and roadblocks before they occur.
  • Provides subject matter expertise when needed
  • Analyze and correlate data in order to identify issues, trends, or exceptions to drive improvement of results and find solutions.
  • Perform initial analysis and investigation into security alerts in security monitoring consoles.
  • Researches and evaluates cybersecurity threats and performs root cause analysis.
  • Mentor associate-level security personnel.
  • Other responsibilities, as required.

Education & Experience:

  • Bachelor’s degree in Computer Science, Information Systems, related field or equivalent experience
  • One or more security-based certifications preferred; such as CISSP, Security +, GCIH and/or ethical hacking certifications.
  • 5+ years’ experience in some form of information security discipline; specialization in information security risk assessments and frameworks preferred.
  • Experience with the NIST and ISO 27001/2 security frameworks
  • Experience with the participation of SOC-based independent audits a plus.

Required Knowledge, Skills and Abilities:

  • Specialization in risk frameworks and formulating a risk management program preferred.
  • Ability to facilitate a secure software development lifecycle that includes threat modeling and application vulnerability scanning.
  • A background in secure software engineering a plus.
  • Ability to clearly and confidently explain complex technical issues in simple and understandable terms.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Poppulo

View company profile →