Lead Cloud Security Engineer at Demandbase, Inc.

Lead Cloud Security Engineer Demandbase, Inc.. . About Demandbase:. . . Demandbase is the Smarter GTMTM company for B2B brands. We help marketing and sales teams overcome the disruptive data and technology fragmentation that inhibits insight and forces them to spam their prospects. We do this by injecting Account Intelligence into every step of the buyer journey, wherever our clients interact with customers, and by helping them orchestrate every action across systems and channels - through advertising, account-based experience, and sales motions. The result? You spot opportunities earlier, engage with them more intelligently, and close deals faster. . . As a company, we’re as committed to growing careers as we are to building world-class technology. We invest heavily in people, our culture, and the community around us. We have offices in the San Francisco Bay Area, New York, Seattle, and teams in the UK and India, and allow employees to work remotely. We have also been continuously recognized as one of the best places to work in the San Francisco Bay Area.. . We're committed to attracting, developing, retaining, and promoting a diverse workforce. By ensuring that every Demandbase employee is able to bring a diversity of talents to work, we're increasingly capable of living out our mission to transform how B2B goes to market. We encourage people from historically underrepresented backgrounds and all walks of life to apply. Come grow with us at Demandbase!. . What you'll do:. . . Perform Vulnerability assessments on infrastructure and assist with the mitigation of the identified vulnerabilities. . Hardening containerized environments including Kubernetes and ECS and shaping container security. . Build security automation for . cloud. environments. . Own the cloud security posture management program and concentrate efforts on continuous improvement of the cloud security configurations aligned to global standards like NIST 800-53, ISO 27018, Cloud Security Alliance, etc.. . Engineer and uplift adoption of PaaC (Policy as a Code) to continuous monitoring of risk configurations changes. . Work closely with DevOps teams and provide cloud security guidance. . Develop positive partnerships and work closely with other team members and stakeholders to align and execute on infrastructure changes in a secure manner to support the organization’s tools, apps, and processes. . Research the latest security best practices, staying abreast of new threats and vulnerabilities and helping to disseminate this information within the group as well as the organization. . . What we're looking for:. . . Active listener who can grow ideas. . Ability to learn new technologies, software, and concepts quickly. . Confident and articulate with excellent written and verbal communication skills. . Excellent communication skills, and the ability to work effectively with others in small, high-performance teams. . . Skills and Education:. . . Strong knowledge of AWS components like EKS, ECS, KMS, RDS, IAM, ELB, cloudfront, security groups, AWS Lambda. . Strong knowledge of security vulnerabilities and remediation as listed in standards like OWASP, SANS, etc.. . Strong understanding of role based security, cryptography, Networking. . Proficiency in scripting in at least one programming language. . Strong knowledge on CI/CD pipelines. . Ability to automate security testing and improve productivity in security assessments. . Supporter and contributor of . DevSecOps. . . Experience with infrastructure-as-code tools such as CloudFormation or Terraform. . Experience designing resilient cloud architectures in line with security best practices. . . Experience: . . . Bachelor’s degree preferably in Information Systems or any Engineering field. . 4-7 years of relevant experience. . Experience in working on projects that have exceeded customer expectations within delivery timeline with high quality results. . Personal information that you submit will be used by Demandbase for recruiting and other business purposes. Our . Privacy Policy. explains how we collect and use personal information.. .