Justworks-posted about 2 months ago
$167,500 - $205,000/Yr
Full-time • Mid Level
Hybrid • New York, NY
1,001-5,000 employees
Professional, Scientific, and Technical Services

At Justworks, you'll enjoy a welcoming and casual environment, great benefits, wellness program offerings, company retreats, and the ability to interact with and learn from leaders in the startup community. We work hard and care about our most prized asset - our people. We're helping businesses get off the ground by enabling them to focus on running their business. We solve HR issues. We're data-driven and never stop iterating. If you'd like to work in a supportive, entrepreneurial environment, are interested in building something meaningful and having fun while doing it, we'd love to hear from you. We're united by shared goals and shared motivations at Justworks. These are best summed up in our company values, which are reflected in our product and in our team. Our Values If this sounds like you, you'll fit right in. Justworks is looking for an experienced, hands-on Senior Security Engineer who can help drive the company's Security Architecture & Engineering function. We are looking for a versatile candidate who can lean into multiple security domains including, but not limited to network, infrastructure, application security, IAM and data protection. This person will also collaborate across the Security department by working closely and supporting our Security Operation and GRC functions. An ideal candidate has a proven track record of building security solutions to enhance security, and managing company security postures. . Given this hands-on technical role, you should be comfortable coding in Ruby on Rails, JavaScript or other similar languages. We would also prefer that you have experience in Linux environment and proficiency using common cybersecurity tools. Your Success Profile

  • Evaluate existing security controls and identify opportunities to enhance the security posture of Justworks
  • Responsible for Exposure Management which includes, but is not limited to vulnerability management, misconfiguration management, end-of-life management and bug bounty program.
  • Improve our security posture through strengthening vulnerability scanning, penetration testing and exposure remediation. Be the SME for all scanning tools and exposure management platforms.
  • Implement security capabilities in SaaS and IAAS (i.e.AWS, GCP, Azure etc) and enterprise environments while executing and delivering the security roadmap.
  • Support the overall Justworks Security organization across multiples domains such as network and infrastructure, application security, identity and access management, data protection, Security Operations and GRC (Governance, Risks and Compliance)
  • Work crossfunctionally with technology teams to implement enterprise security capabilities into solution architecture.
  • Support major new product development projects to ensure that appropriate security controls are built into systems prior to production cutover.
  • Drive process improvement and control implementation projects in coordination with the larger Digital Technology team at Justworks.
  • Act as a cross-functional tools and services expert, working with engineering,risk and security operations teams to build security control requirements
  • 5+ years experience in information security concepts, common technical security controls, and security architecture design principles, ideally in a SaaS environment
  • Demonstrated technical expertise in SAST, DAST and penetration testing of cloud products and deployments.
  • Demonstrated technical expertise with endpoint security such as laptops security, mobile device security, browser management, email security and network security.
  • Hands-on experience with Secure-SDLC processes and DevSecOps, including secure design, threat modeling, vulnerability management, etc.
  • Familiar with secure coding practices and security scanning technologies
  • Solid experiences in threat management, and exposure management
  • Extensive experience in security architecture, system design, and engineering scalable security solutions in a cloud-native (AWS) environment
  • Deep knowledge and experience in identity and access management.
  • Technical experience with DevOps, Jira, and other agile automation tools
  • Proven track record as a strong communicator
  • Strong analytical skills
  • Exceptional organizational skills
  • (Preferred) Security Certifications: CISSP, CRISC, GIAC, CCSP or CEH
  • Given this hands-on technical role, you should be comfortable coding in Ruby on Rails, JavaScript or other similar languages.
  • We would also prefer that you have experience in Linux environment and proficiency using common cybersecurity tools.
  • welcoming and casual environment
  • great benefits
  • wellness program offerings
  • company retreats
  • the ability to interact with and learn from leaders in the startup community
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service