Remote job description

strongDM is a customer-first, second, and third company with a rabid fan base. When was the last time you heard things like:

* Splunk's CISO Joel Fulton says "strongDM gives you what you can't get any other way -- the ability to see what happens, replay and analyze incidents."

* Chef's co-founder Adam Jacob says "strongDM takes the friction out of getting staff access to the systems they need."

Customers love us because:

The product rocks: strongDM fundamentally changes the relationship between InfoSec, DevOps, and end users. Enforce the controls security needs while making it easier to facilitate access.

They can trust us: we built a technical product for technical buyers. We do not use jargon. There is no alternative but to always be technically accurate. We are not afraid to admit product gaps.

We're real humans: we built a serious product without taking ourselves too seriously. Each member of the team is deadly good at their job, and yet we crack jokes on the phone with customers.

Do you lay awake at night...

...and wonder why companies are still forcing their users to rotate their passwords every 90 days? Not gonna lie, that's a little weird. But it's the kind of weird we dig. We've got momentum and executive buy-in to make our security programs best-in-class. As a Security Systems Engineer you'll be leveling up our data protection, identity and access management, and systems security postures.

What You'll Do:

    • Put a new vulnerability management system in place to better secure our infrastructure
    • Establish sane policies and standards for data protection and configuration management
    • Partner with the IT team to deepen our implementation of federated identities and access control
    • Build out security systems that support strong's SDLC, from development to testing to promotion to production
    • Pair with our Security Operations Engineer to ensure all security systems are logging the right things and contribute meaningful data to our monitoring and alerting platforms
    • Team up with the rest of the Security Department to educate your fellow employees on current security threats
    • Work with the Governance, Risk, and Compliance team to establish and test controls in support of our SOC 2 and FedRAMP programs

Requirements:

    • You're familiar with the SaaS-based vulnerability management platforms on the market
    • You can explain the why behind policies and standards in a way that both technical and non-technical folks understand
    • General knowledge of platforms and tools available to secure software and systems development
    • You know that we are here to support and serve the business, not the other way around
    • Have a "Yes, and..." attitude, be willing to own failure, and speak up when you see room for improvement
    • Experience working at a high-growth startup with a culture of incredible customer support
    • Alphabet soup of certs you may have but are in no way required: SSCP, CISSP, CCSP, GCED, GCCC, CSX-F/T/P, Security+, CASP+

Compensation:

    • Competitive base + equity salary packages
    • Company sponsored benefits, including:
    • Medical, dental, and vision insurance (free to employees and dependents)
    • 401k, HSA, FSA, short / long-term disability coverage, life insurance
    • 4 weeks accrued PTO + sick days + volunteer days + standard holidays, paid parental leave
    • Stipend for internet and phone + home office budget
    • No travel required



Summary
Company name: strongDM
Remote job title: Security Systems Engineer
Job tags: Vulnerability Management, security, CISSP

Share or copy

Job alerts