Jobs and Careers
VO

Senior Information Security Engineer

Vonage
Holmdel, NJ, United Statesfull_timeVerifiedPosted 13 Feb 2024

About the role

Vonage is a global cloud communications leader that helps businesses accelerate their digital transformation through our fully programmable Unified Communications, Contact Center Applications, and Communications APIs. 

Our Security Mission: We commit to safeguard the confidentiality, integrity, and availability of information systems, identity, and data assets by providing proactive security expertise, and guidelines for creating and maintaining a resilient and secure infrastructure, and fostering a culture of security awareness and compliance throughout the organization

SOUND INTERESTING? CONTINUE READING BELOW…….

Why this role matters:

The Vonage Information Security organization is seeking people who are passionate about information security. The Security Operations team manages a fast-paced and constantly growing global multi-cloud environment and seeks to implement cutting-edge technology to secure Vonage’s services and infrastructure. The Security Operations team aims to enhance the security of our software applications and production systems,  develop and utilize security and automation tools to help us maintain and report on our security posture and regulatory compliances.

In addition to developing advanced SecOps tools and automated reporting,, the candidate will be expected to understand modern cyber threats, how to architect and design software and networks for security-in-depth, how to detect cyber attacks, and how to efficiently respond to them. 

Where you will work:

Flex Worker - You will have home based days, but can be required to commute to the office for collaboration, customer meetings and presentations up to 3 days a week (exact days to be agreed with your line manager). The address of the office you will be commuting to is Bell Works 101 Crawfords Corner Road Suite 2416, 4th Floor, Building #2 Holmdel, NJ 07733

Sponsorship Not Available - Legal authorization to work in the US is required. We are unable to sponsor individuals for employment visas, now or in the future, for this job opening.

What you will do:

  • Design and develop tools to automate security operations or reporting tasks.
  • Support ongoing and new service/compliance initiatives including PCI, HIPAA, SOC2, GDPR,  ISO27001 and CFIUS.
  • Champion the  continuous  improvement of security monitoring, detection, and prevention capabilities.  This includes vendor technology evaluations, and the subsequent operational deployment of selected security  tools.  Key areas include network security, container security,  host-based intrusion detection systems, cloud security tools,  web application firewalls, database security monitoring systems and data classification tools, firewalls/routers/switches, proxy servers, antivirus systems, file integrity monitoring tools, and operating system logs, to name a few. 
  • Lead system and application security reviews,  assess and document any vulnerabilities discovered, and champion the timely remediation of such findings, including the deployment of vendor security updates and the redesign of software applications and network architectures to harden against threat actors.
  • Serve as a key member of the Security Incident Response team --- responsible for the coordination with other engineering and business teams across the company, and/or with external partners, to implement a multi-faceted incident response and remediation action plan.
  • Establish the trust of, and a strong working partnership with, senior network and software developers and architects from across the company. 

What you will bring:

Required

  • A BS/MS in Computer Science, Information Security, or other related degrees
  • A passion for Information Security
  • Ability to function independently as directed
  • Experience with scripting and/or programming in Python, Perl, bash
  • Participation in an Agile Development Sprint process
  • Willingness to learn new technologies and systems and to continuously learn and improve
  • Ability to interact with APIs using curl, Postman, etc.
  • Skills in manipulating data in spreadsheets, databases, Tableau or other tools
  • Knowledge of cloud computing systems - AWS knowledge is a must, Google Cloud highly desired
  • Understanding of kubernetes / container ecosystems
  • Demonstrated understanding of general Unix/Linux systems administration (Or similar, e.g. Ubuntu, Solaris, etc.)
  • Knowledge of standard Unix infrastructure tools/protocols (DHCP, DNS, NTP, SYSLOG, SSH, IPSec etc.)
  • Basic cross-functional understanding of network engineering concepts and protocols (e.g., TCP, UDP, SSL, etc.)
  • Knowledge of Security incident re

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Vonage

View company profile →