Security Engineer
- Category: Et cetera
- Deadline: 20th April 20232023-04-20T01:00:00-0700
- California
Vacancy expired!
job summary:
About ThousandEyes The name ThousandEyes was born from two big ideas: the power to see what's not ordinarily possible, and the ability to collect intelligence from vantage points as diverse and global as the Internet. As organizations depend on cloud services, the Internet has become their defacto network connecting cloud applications to users. Our Internet and cloud intelligence platform is like a 'Google maps of the Internet', providing the only collectively powered view of digital experiences end-to-end. We enable our customers made up of the world's largest and fastest-growing brands, to identify problems before they impact revenue, brand reputation, or employee productivity. In August 2020, Cisco Systems completed the acquisition of ThousandEyes, which now forms the ThousandEyes Business Unit within Cisco's Network Services Business Group, and is a foundational component of Cisco's growing Observability business. About The Role We're looking for a passionate Information Security Engineer that can support ThousandEyes information security and privacy compliance initiatives, drive continuous improvement of our control environment and internal processes, and ensure that products and services meet and exceed ongoing industry standards. You will work cross-organizationally to ensure the success of the information security risk management program. We are looking for an individual that will be aggressive in following up on tasks, achieving deadlines, and holding resource owners accountable to risk remediation plans. What you'll do: - Perform risk assessments to determine if new projects and deployments are aligned with regulatory requirements, industry standards, and best practices and comply with corporate information security and privacy policies - On-going project/program management of information security risk management activities (including risk treatment plans and external audit/certification initiatives such as SOC2, ISO 2700x and FedRAMP) - Plan and perform internal security and privacy audits to assess control design and effectiveness - Report on the status of compliance activities and develop metrics around the risk remediation program - Communicate with company workers on security awareness topics - Support, exhibit and grow corporate culture that is committed to information security best practices Requirements: - Knowledge of ISO 2700x, FISMA, NIST and CSA CCM frameworks, as well as global data protection and privacy laws - strong understanding of technologies and controls including those related to AWS security - Experience with fast paced work environments; strong time management skills - Action oriented with a passion for getting things done quickly, efficiently, and properly - Ability to work effectively with diverse teams across geographic and organizational boundaries - Compliance and risk program management experience - BA/BS degree in Computer Science or a related field and a minimum of 4 years experience in information security A big plus if you have: - Hands-on experience with FedRAMP, SOC2 and/or ISO certification engagement - Technical working knowledge of AWS security controls, IAM, Container technologies and microservice architecture - Security certifications such as CISSP, CISM, CCSP, GSEC, AWS Security location: SAN JOSE, Californiajob type: Contractsalary: $60.10 - 77.13 per hourwork hours: 8am to 5pmeducation: Bachelors responsibilities:About ThousandEyes The name ThousandEyes was born from two big ideas: the power to see what's not ordinarily possible, and the ability to collect intelligence from vantage points as diverse and global as the Internet. As organizations depend on cloud services, the Internet has become their defacto network connecting cloud applications to users. Our Internet and cloud intelligence platform is like a 'Google maps of the Internet', providing the only collectively powered view of digital experiences end-to-end. We enable our customers made up of the world's largest and fastest-growing brands, to identify problems before they impact revenue, brand reputation, or employee productivity. In August 2020, Cisco Systems completed the acquisition of ThousandEyes, which now forms the ThousandEyes Business Unit within Cisco's Network Services Business Group, and is a foundational component of Cisco's growing Observability business. About The Role We're looking for a passionate Information Security Engineer that can support ThousandEyes information security and privacy compliance initiatives, drive continuous improvement of our control environment and internal processes, and ensure that products and services meet and exceed ongoing industry standards. You will work cross-organizationally to ensure the success of the information security risk management program. We are looking for an individual that will be aggressive in following up on tasks, achieving deadlines, and holding resource owners accountable to risk remediation plans. What you'll do: - Perform risk assessments to determine if new projects and deployments are aligned with regulatory requirements, industry standards, and best practices and comply with corporate information security and privacy policies - On-going project/program management of information security risk management activities (including risk treatment plans and external audit/certification initiatives such as SOC2, ISO 2700x and FedRAMP) - Plan and perform internal security and privacy audits to assess control design and effectiveness - Report on the status of compliance activities and develop metrics around the risk remediation program - Communicate with company workers on security awareness topics - Support, exhibit and grow corporate culture that is committed to information security best practices Requirements: - Knowledge of ISO 2700x, FISMA, NIST and CSA CCM frameworks, as well as global data protection and privacy laws - strong understanding of technologies and controls including those related to AWS security - Experience with fast paced work environments; strong time management skills - Action oriented with a passion for getting things done quickly, efficiently, and properly - Ability to work effectively with diverse teams across geographic and organizational boundaries - Compliance and risk program management experience - BA/BS degree in Computer Science or a related field and a minimum of 4 years experience in information security A big plus if you have: - Hands-on experience with FedRAMP, SOC2 and/or ISO certification engagement - Technical working knowledge of AWS security controls, IAM, Container technologies and microservice architecture - Security certifications such as CISSP, CISM, CCSP, GSEC, AWS Security qualifications:- Experience level: Experienced
- Minimum 8 years of experience
- Education: Bachelors
