Product Security Engineer II

IBMAustin, TX
74dHybrid

About The Position

A career in IBM Software means you'll be part of a team that transforms our customer's challenges into industry-leading solutions. We are an infinitely curious team, always seeking new possibilities, and dedicated to creating the world's leading AI-powered, cloud-native software solutions. Our renowned legacy creates endless global opportunities for our network of IBMers. We are a team of deep product experts, ensuring exceptional client experiences, with a focus on delivery, excellence, and customer outcomes. This position involves contributing to HashiCorp's offerings, now part of IBM, which empower organizations to automate and secure multi-cloud and hybrid environments. You will join a team managing the lifecycle of infrastructure and security, enhancing IBM's cloud solutions to ensure enterprises achieve efficiency, security, and scalability in their cloud journey.

Requirements

  • 4+ Years of Security experience.
  • Secure development practices, and integration into broader engineering activities.
  • Security design / architecture and threat modeling.
  • Product and service architectures in modern, multi-tenant cloud environments (IaaS, SaaS, PaaS).
  • Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP).
  • Secure operations practices, specifically in cloud environments.
  • Authentication and Identity management (e.g. SAML, SSO, OIDC, SCIM, etc) security best practices.
  • Application and infrastructure security testing methodologies and tools.
  • Vulnerabilities (old and new), and options for defense / mitigation.
  • Product vulnerability management lifecycle.
  • Working with and/or supporting product engineering teams.
  • Security audits, penetration tests, and/or bug bounty programs.
  • Cryptography and cryptographic primitives.
  • Strong written and verbal communication skills.

Nice To Haves

  • Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem.
  • Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company.

Responsibilities

  • Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio.
  • Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations.
  • Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk.
  • Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling, etc.).
  • Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp's products, services, and associated cloud infrastructure.
  • Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs.
  • Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc.
  • Contribute to the creation and delivery of security training.
  • Research emerging attack vectors and techniques.

Benefits

  • Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being.
  • Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs.
  • Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs.
  • Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals.
  • Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Industry

Professional, Scientific, and Technical Services

Education Level

High school or GED

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service