Staff Security EngineerMcLean, Virginia
ID.me - Falls Church, Virginia, United States, 22043
Work at ID.me
Overview
- View job
Overview
ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me's technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to "No Identity Left Behind" to enable all people to have a secure digital identity. Role Overview
ID.me is looking for a Staff Security Engineer to add to our growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem. We are seeking a talented Staff Security Engineer who enjoys the challenges of combining software and systems engineering to design, build, run, and automate distributed, fault-tolerant security solutions at scale. As a Staff Security Engineer, you will lead the design and development of scalable security solutions that realize/execute the strategies across the entire Security Program (i.e., SecOPs, Data Protection, CloudFlare, Privileged Access Management, IAM, etc.). The Staff Security Engineer will also have the opportunity to provide thought leadership, research, and innovation on a broad scale. This is a fully onsite position in one of our hub locations (Mountain View CA or McLean VA). Responsibilities
Implement, manage, and improve CloudFlare capabilities, (WAF, VPN, DNS, etc.), via Terraform, Github, and Github Actions. Implement security solutions in GCP via Terraform and Python and JavaScript coding. Implement CloudFlare Workers via requisite coding languages. Integrate solutions with Okta, and support triage and troubleshooting. Build integrations with Google SecOPs SIEM, and define queries as needed. Build integrations with ConductorOne IGA solution, including workflow and policy implementation within the tool. Improve GCP and AWS security posture, via hands-on skills in one or more of these CSPs, including hands-on skills scripting with one or more of the associated API layers. Leverage deep Jira knowledge and experience to define and deliver Sprints with Scrum Master and Product Owner, as well as ticket handling within SLAs. Continuously improve Change Management processes, guidelines, and documentation across security tools/services to ensure reliability, efficiency (e.g., increased automation via Open Policy Agents), and compliance. Measure and report on reliability, efficiency, and compliance of security tool/service operations. Ensure security controls are optimized for ease of use by both security operators and end users. Dig deep into complex problems either lacking a clear approach or with a high degree of execution risk and find an appropriate path forward. Maintain many of the essential cross-team and cross-functional relationships necessary for the team's success. Define standards and best practices for the team and the security organization. Basic Qualifications
7+ years of experience in security engineering, systems engineering, software engineering, or SRE roles. Current hands on experience with GCP or AWS 2+ years of experience dedicated to Cloud Site Reliability Engineering and related roles. 5+ years of current and hands on experience in scripting or software development (i.e. Python, Ruby, Go). 5+ years of current and hands-on experience with infrastructure-as-code and CI/CD (e.g. Terraform, Github, etc.). Preferred Qualifications
The qualifications below are preferred. We encourage candidates to apply if they satisfy some, but not all of the qualifications. Hands-on CloudFlare skills and experience.Strong hands-on Jira skills and experience.Strong hands-on Okta skills and experience. Experience in Linux/Unix administration and solid networking knowledge. Possess a breadth of engineering skills with an interest in service reliability, automation, monitoring, and capacity planning. Strong written and verbal communication skills, especially in technical contexts. GCP or AWS Professional level certification Ideal candidate will thrive in the following culture: Must have a sense of urgency, delivering solutions with velocity and high quality. Must agree that 90% completion equates to 5% completion, with focus of defining goal-posts, and ruthlessly "clearing their plate" and completing the job at hand. Ability to move strategic work efforts forward while fielding adhoc requests. Must be a team player with a strong, self-managing work ethic. Must be able to learn quickly, representing