Jobs and Careers
GE

Sr Staff Engineer - Endpoint Security

GEICO
Chevy Chase, United Statesfull_timeVerifiedPosted 1 Oct 2024
💰 $260,000/yr($130,000/yr$260,000/yr)

About the role

Our Sr Staff Engineer will proactively and holistically drive, lead, and support, Security detection and prevention strategies with proof and validation of our controls. You will help our business transformation as we transition from a traditional IT Security model to a tech organization with engineering excellence as its mission, while co-creating a culture of leveraging security to enable the business and protecting against the latest threats.
Our Sr Staff Engineer works with Staff and Sr. Engineers to innovate and lead new initiatives, improve Security, and enhance existing systems while also identifying new opportunities with an offensive security mindset to find critical problems and solve at a rapid pace. You will help lead the confirmation our systems are protected through automated testing and continuous improvement to raise the bar and foster a proactive security culture which also enables the business without impact. The ideal candidate has deep technical expertise in this domain and an attacker/defender adversarial background.

As a Sr Staff Engineer, you will:  
•    Influence and educate staff at all levels to bring a security minded approach to difficult challenges balancing usability and security.
•    Collaborate with managers, team members, engineering leaders, and peer security teams to solve complex problems with minimal business impact.
•    Define roadmaps for securing endpoints with purposeful and functional security without impacting or unnecessary overhead.
•    Be accountable for the quality, usability, and functional validation of the solutions.
•    Proactively identify opportunities to enhance security measures, streamline processes, and optimize tooling to fortify our environment against emerging threats.
•    Help develop and implement policies, standards, and guidelines to ensure compliance with industry regulations and frameworks, promoting security as an integral part of our operation by partnering with external teams and their leadership.
•    Deliver automation initiatives, conduct advanced research, and develop proofs of concept to enhance our security capabilities and improve overall efficiency.
•    Provide motivating demonstrations and communications to show the value of our security measures to the business, highlighting the low impact on systems, improved operability and resiliency.
•    Work with our business partners to help derive and validate mitigation techniques for identified threats and/or non-compliance.

Qualifications
•    Extensive experience in security products and frameworks: MDM, EDR, FIM, SIEM, EPM, DLP and related endpoint controls.
•    Extensive experience in offensive and defensive security roles, with a strong hacker mindset.
•    Experience communicating and presentation to senior and junior staff with the ability to influence stakeholders.
•    Experience in a multi-platform environment with Linux, Mac, Windows.
•    Experience with multiple IaaS platforms from top tier providers.
•    Experience with solving security control requirements with engineering approaches.
•    Ability to excel in a fast-paced, startup-like environment.
•    Ability to design, perform experiments, and influence security detection and protection solutions. 
•    Strong knowledge of industry-standard security tools, frameworks, and best practices including Mitre, CIS and NIST.
•    Demonstratable proficiency in common scripting languages with examples of automation at scale.
•    Experience working with auditors and demonstrating security controls.

Experience
•    8+ years in a dedicated security role, preferably in the tech industry
•    3+ years of experience with AWS, GCP, Azure, or other cloud providers
•    3+ years in a senior role influencing company direction on security
•    3+ year in penetration testing, writing reports and determining countermeasures. 
•    Experience applying security controls to exceed third party attestation requirements (PCI, SOC, …).
Education
•    Bachelor’s degree in Computer Science, Cyber Security, or equivalent education with work experience
•    Third party certifications on penetration testing/ethical hacking, exploit detection and evasion techniques, and related.
 


 

Annual Salary

$130,000.00 - $260,000.00

The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.


 

At this time, GEICO will not sponsor a new applicant for employment authorization for this position.


 

Bene

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GEICO

View company profile →