Jobs and Careers
GR

Senior Security Engineer

Great Minds
Washington, United Statesfull_timeVerifiedPosted 26 Sept 2023

About the role

Great Minds, a rapidly growing, mission driven Public Benefits Corporation (PBC) that develops high quality knowledge building curricula for grades PK-12, seeks a Senior Security Engineer to join our growing team.


Company Profile
Great Minds brings teachers and scholars together to craft exemplary instructional materials that inspire joy in teaching and learning. Our curricula, Wit & Wisdom®; Geodes; Eureka Math™; and PhD Science™ all support teachers as they take students beyond rote learning to provide a deeper, more complete understanding of the humanities, mathematics, and sciences. Founded in 2007, Great Minds now employs more than 1,100 people.

For additional information please visit: www.greatminds.org

Our Market Position
Great Minds’ Eureka Math™ is the most widely used curriculum in the history of American education. It enjoys an unrivaled 40+ net promoter score. Eureka Math™ and its sister products, Wit & Wisdom® and PhD Science™, embrace much higher expectations for all students and all teachers. In a market dominated by scripted, procedural materials that drive expectations down, Great Minds produces curricula that celebrate knowledge, respect the craft of teaching, and acknowledge the true capabilities of students.


Role Overview

Reporting to the IT Security Lead, the Senior Security Engineer will focus on corporate security infrastructure and security processes and procedures (endpoint management, intrusion prevention, disaster recovery, policies and plans). This role will establish security capabilities within the organization and drive improvements in the company’s security posture. This role will also act as an escalation point for security events and may act as a resource on corporate technology projects.


Specific Responsibilities

  • Prepare and update IT Security documentation (policies, procedures, response plans, etc.).
  • Administer security tools (Okta, Mimecast, Zscaler, etc.).
  • Collaborate with the full IT Security team as well as application administrators, vendors, and business stakeholders, as appropriate, on the operational aspects of technical solutions.
  • Analyze security compliance requirements for new system features and proactively identify potential security issues.
  • Work cross-functionally with the Product and Engineering teams to ensure security vulnerabilities are properly understood and prioritized, and remediation plans are developed to address and remediate the risk in a timely manner.
  • Provide project management for small security projects and participates in IT projects.
  • Recommend security process changes or improvements.
  • Identify and analyze potential security vulnerabilities and emerging threats and implement remediation.
  • Develop, monitor, and assess our data, tech tools, and network security implementations.
  • Provide project management for small/medium security projects and participate in IT projects.
  • Lead the Cybersecurity Incident Response investigation request and handle escalations for active incidents.
  • Develops and publishes metrics, reports, and/or dashboards demonstrating security posture and event activity.
  • Configure, administer, and troubleshoot corporate security tools (DLP, IDS, SIEM, etc.)
  • Evaluate and partner with vendors to implement security solutions
  • Assist in major incident management and problem management processes
  • Create configuration baselines, identify gaps, and create detailed recommendations
  • Provide support for RFP review and responses related to IT security.
  • Maintain awareness of external events to identify threats and opportunities for enhancement.
  • Act as an escalation point for technical security matters.

Requirements

Required Qualifications

  • Minimum of 3 years of proven experience in Information Technology security work
  • Minimum of 3 years of overall IT experience
  • Demonstrated experience in application security, vulnerability assessments, penetration testing, and risk assessment activities across functional business areas and technology services
  • Knowledge or experience penetration testing methods and tools such as Burp Suite, Metasploit, OWASP ZAP, nmap, Nessus, Rapid7, Kali Linux, and more
  • Demonstrated ability to explain standards and frameworks such as OWASP Top Ten, NIST 800-171, CIS Benchmarks, and more to technical and non-technical staff, developers, system administrators, and management
  • Experience with Microsoft AD, Azure AD, LDAP, and Mac security controls
  • Experi

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Great Minds

View company profile →