Senior Security Engineer

FordPalo Alto, CA
2h

About The Position

Architect and implement robust application security controls throughout the software development process across 200+ external and internal services. Ensure the delivery of secure, reliable, and confidential products and services through adherence to best practices. Monitor cloud environments for security threats, vulnerabilities and suspicious activities. Investigate and respond to Security incidents and alerts in real-time. Maintain vulnerability identification, assessment, and remediation across infrastructure and code. Work with Engineering development teams to remediate vulnerabilities promptly. Integrate security guardrails into build and deployment processes to prevent vulnerable code from reaching production. Translate Engineering and Security needs into clear, well-defined functional and technical requirements backed by data analysis and deep understanding of the platform security landscape. Collaborate with cross-functional teams to improve the security posture of Connected Vehicle Cloud and design Security into platforms and products. Document Security Procedures, playbooks and guidelines. Ensure alignment with internal Ford policies, and industry regulations and standards (adherence to relevant security framework such as SOC2, ISO27001). Develop and manage key security operational metrics, ensuring their success and implementing action plans, including necessary remediations. Established and active employee resource groups

Requirements

  • Bachelor's degree or equivalent combination of relevant education and experience
  • 6 years experience in a security engineering role, with experience in implementing effective vulnerability management strategies to mitigate risks
  • 3 years Applied cloud security knowledge of AWS, GCP
  • 3 years experience in one or multiple programming languages such as Java, Python, GO or C++
  • 2 years experience in security standards and compliance regulations such as ISO 27001, SOC2, and GDPR
  • Experience security in IOT and Device management systems
  • Experience with PKI and Certificate services
  • Strong analytical skills to produce and interpret security data and trends
  • Demonstrated experience securing CI/CD pipelines in Kubernetes environments

Responsibilities

  • Architect and implement robust application security controls
  • Monitor cloud environments for security threats, vulnerabilities and suspicious activities
  • Investigate and respond to Security incidents and alerts in real-time
  • Maintain vulnerability identification, assessment, and remediation across infrastructure and code
  • Work with Engineering development teams to remediate vulnerabilities promptly
  • Integrate security guardrails into build and deployment processes
  • Translate Engineering and Security needs into clear, well-defined functional and technical requirements
  • Collaborate with cross-functional teams to improve the security posture
  • Document Security Procedures, playbooks and guidelines
  • Ensure alignment with internal Ford policies, and industry regulations and standards
  • Develop and manage key security operational metrics
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service