Senior Security Engineer

 (8+ years exp)
$120k – $200k
Published: yesterday
Avatar for Vimaan

Vimaan

Vimaan is a computer vision company providing a 100% accurate view of warehouse inventory

Job Type

Full Time

Visa Sponsorship

Not Available

Relocation

Allowed

The Role

VIMAAN is looking to hire a talented senior security engineer to join our exceptional engineering team developing the next generation of information systems for the warehouse. You will work with cross-functional teams, plan, and prepare to block security threats, identify potential threats, and implement remediation. You will define, implement and test security strategies, report on incidents, keep track of the status of network and system security, and raise security awareness amongst employees.

Scope of work will span the breadth of product development and deployment. You will ensure the product, its deployment, and integration into the infrastructure are not vulnerable to security risk while complying with contemporary security guidelines. You will also be responsible for interfacing with third parties to conduct threat assessment and implement corrective actions. You will be responsible for meeting specific industry InfoSec guidelines, standards and regulations, such as medical or government, and driving product compliance.

You will thrive in this role if you are curious, innovative, relish complexity, pay attention to detail, and work to make things a little better every single day. We expect you are smart, humble, hardworking and, above all, collaborative. If this sounds like a good fit for you, reach out for the start of a great journey together.

About VIMAAN
VIMAAN delivers leading edge computer vision and AI warehouse solutions to some of the most well-known Fortune 500 brands and 3PLs. Our proprietary suite of sensors, cameras, computer vision platform and software backend provide an end-to-end solution for comprehensive and real-time tracking of inventory within the warehouse. At a time when companies are striving to improve their supply chains; VIMAAN is delivering an unprecedented solution to the market. In an industry where ROI is typically recorded in years, our customers are achieving returns in months! We are a fast-growing start-up that is well funded by several blue-chip investors with tremendous track records. We have some of the best talent in the industry working for VIMAAN and are looking to fill additional roles across the company in the US and India to grow our work and success in the market!

Responsibilities

  • Help plan VIMAAN’s information security strategy
  • Develop security standards and practices as part of SDLC and oversee architecture, design, development, coding, testing, deployment and production to ensure product and infrastructure security
  • Assess risks, maintain risk register, analyze and communicate impact, undertake remedial actions and follow-up on remedial actions by team members
  • Install, configure and use security devices, tools and software, such as firewalls, IDS, IPS and data encryption solutions
  • Automate and deploy network scans to find vulnerabilities and perform penetration testing
  • Perform code reviews ensuring implementation of security best practices
  • Develop scripts to automate security related work
  • Track third party software security and keep updated for security patches and upgrades
  • Collaborate with DevOps for deployment of software updates and security patches
  • Collaborate with IT staff and system administrators to monitor networks and systems for security breaches or intrusions
  • Lead incident response activities, investigations into potential breaches, report on findings, develop and implement remediation plans
  • Interface with third parties to conduct threat assessment and penetration tests and to implement corrective actions
  • Ensure product and infrastructure meets specific industry InfoSec standards, such as medical or government, and drive product compliance to those standards
  • Continually research the current threat landscape and state of the art
  • Raise information security awareness in product development teams
  • Establish and maintain thorough and accurate documentation of all work

Qualifications

  • Bachelor’s of Computer Science or equivalent degree
  • 8+ years of experience as System Security Engineer or Information Security Engineer
  • Thorough understanding of the latest security and data protection principles, techniques, and protocols
  • Experience designing and implementing secure networks, systems, and application architectures
  • Experience with securing web technologies including web applications, Web Services, Microservices
  • Experience with securing Linux systems and databases such as Postgres
  • Knowledge of TCP/IP networking protocols, HTTPS, REST, SSH, TLS, and experience securing them
  • Experience with Identity Management, authentication and SSO methods, LDAP, Active Directory, OpenID, OAuth, and Role Based Access Control
  • Experience with data encryption and knowledge of encryption algorithms
  • System administration experience including Linux, network and database administration
  • Expertise in scripting using shell scripts, Python, Perl or similar languages
  • Knowledge of risk assessment tools, technologies, and methods
  • Experience with Software Composition Analysis and Vulnerability Assessment
  • Experience in designing, implementing, configuring, and managing security by using firewalls, network monitoring tools, intrusion detection systems, anti-virus software, authentication systems, log management systems, content filtering, etc.
  • Experience with SAST and DAST tools and integrating them into DevSecOps
  • Experience with code reviews using OWASP Top 10 and MITRE CWE Top 25 and training team on secure coding methodologies
  • Experience with ISO27001 and SOC2 compliance, audit and certification, and with other industry guidelines, regulations and standards such as NIST, DISA, CPRA, GDPR, etc.
  • Ability to collaborate effectively with fellow team members
  • Strong written and verbal communication skills

How to stand out

  • Experience with configuring and monitoring security and data protection in Cloud systems using provider tools such as those provided by AWS, Azure and GCP
  • Security certifications such as CISSP, CISA, CISM, CEH, or similar
  • Knowledge of data protection and disaster recovery, and experience with related technologies and methods
  • Understanding of tactics used by APT and other threat groups, and knowledge of computer forensic tools
  • Experience in Developing a SecureDevOps for an AI/ML product
  • Self motivated and self managed
  • You are someone that others enjoy working with due to your positive attitude and technical competence
  • Pragmatic approach to solving problems and collaboration
  • Open-minded, passionate, but not ideological
  • Biased towards automation and ensuring “it just works”
  • Team-first attitude motivated by helping team members succeed

Benefits

  • Excellent health insurance benefits
  • Stock options
  • 401(K)
  • Company sponsored lunch
  • Friday socials

More about Vimaan

Founders

KG Ganapathi
Founder • 3 years
image
Go to team image

Similar Jobs

Alluxio company logo
Alluxio
Helping orchestrate data across clusters, regions, clouds for Big-data/ML workloads
GVOS  company logo
GVOS
An Edge Cloud for Autonomous Driving
Forward company logo
Forward
Forward combine hardware, software and doctors to make quality healthcare available to all
Tetrate.io company logo
Tetrate.io
Network security traffic management -solving problems for L7
Unum ID company logo
Unum ID
We envision one identity online for each human offline
Hive company logo
Hive
Cloud-based AI solutions to understand, search, and generate content
CodeFutures company logo
CodeFutures
CodeFutures provides professional services in strategy, consulting, technology, and operations
Dodgeball company logo
Dodgeball
Dodge fraud & security issues with one integration