Talent.com
Security Engineer
Security EngineerZirconTech • Miami, FL, United States
Security Engineer

Security Engineer

ZirconTech • Miami, FL, United States
30+ days ago
Job type
  • Temporary
Job description

Information Security Engineer

Description

SUKU is seeking an Information Security Engineer specializing in web application security and

hands-on security architecture for our agile blockchain startup. You'll work closely with our

CTO and tech team to establish and uphold security standards across various technologies,

contributing to the development of mobile apps, web apps, and blockchain solutions. This

role is pivotal in implementing and managing advanced security measures to protect our

organization's infrastructure from evolving cyber threats.

Responsibilities

  • Web Application Security : Assess and enhance the security posture of web

applications by leading the design and implementation of security enhancements,

architectural reviews, and security best practices.

  • Financial Payment Security : Spearhead the implementation of security measures for
  • the latest financial technology. Support our development team implementing

    payment applications, money transferring services, and cryptocurrency apps.

  • Security Architecture : Design and implement robust security architectures for new
  • and existing systems, ensuring alignment with industry standards, regulatory

    requirements, and security frameworks.

  • Security Information and Event Management (SIEM) : Deploy, configure, and
  • manage SIEM solutions to monitor and analyze security events across the enterprise.

    Develop and fine-tune correlation rules, alerts, and dashboards to detect and

    respond to security incidents effectively.

  • Logging and Monitoring : Establish comprehensive logging strategies for critical
  • systems and applications. Ensure logs are collected, aggregated, and analyzed to

    identify anomalies and potential security breaches.

  • Vulnerability Management : Conduct regular vulnerability assessments and
  • penetration tests on networks, systems, and applications. Analyze findings, prioritize

    risks, and collaborate with IT teams to remediate vulnerabilities promptly.

  • Incident Response : Lead incident response activities, including investigation,
  • containment, eradication, and recovery. Develop and maintain incident response

    playbooks and conduct post-incident analyses to improve future responses.

  • Compliance and Auditing : Support internal and external audits by providing
  • evidence of compliance with security policies and frameworks. Participate in the

    development and enforcement of security policies, procedures, and standards.

    Requirements

  • Professional Experience : Minimum of 5 years of hands-on experience in information
  • security engineering, with a focus on SIEM management, vulnerability assessments,

    and incident response.

  • Technical Proficiency : In-depth knowledge of security technologies such as firewalls,
  • intrusion detection / prevention systems, endpoint protection, and encryption

    methods. Proficiency in scripting languages (e.g., Python) for automation purposes.

  • Hands-on experience with industry-standard SIEM platforms such as Splunk,
  • IBM QRadar, or Elastic Stack (ELK).

  • Familiarity with IAM frameworks, e.g. Okta, Auth0
  • Hand-on experience with key management tools like AWS KMS, HashiCorp Vault
  • Financial Background : Knowledge of banking and financial applications, including
  • but not limited to online banking software, money transmitter services, etc.

  • Regulatory Knowledge : Familiarity with compliance frameworks and standards such
  • as ISO 27001, NIST, GDPR, and HIPAA.

    Miscellaneous

  • Location : Remote
  • We offer an annual salary of ~ $80k for this role (this is based on experience, assuming the candidate matches all of our criteria)
  • Hiring process is very fast, 2 interviews, hiring immediately
  • 40 hours per week, flexible PTO
  • This is a long term position after an initial trial period of 3 months
  • Hands-on security expertise is mandatory. We want someone who has actually done these things previously, ideally with a financial security background.
  • "Web Application Security" . Our applications are written in TypeScript and require web application security assessments and scanning.

  • Both have experience in the financial industry and have secured infrastructure and servers. However, there expertise is mainly on the system / server side, not on the application layer.
  • I asked both of them how they would scan and secure a web application environment and their answers were not satisfactory for this type of role.
  • They could not talk about common vulnerabilities for web applications, e.g. OWASP Top 10

  • They were not able to explain the difference between XSS and CSRF, which I consider very basic knowledge in the web application security space
  • Neither of them has any knowledge about blockchain / crypto transactions.
  • I'm afraid we might into the same issue with Enrique, after looking at his profile.
  • To summarize, we need someone who knows how to secure financial web applications, this includes knowledge about web vulnerabilities and financial transactions, ideally crypto transactions.

    I realize that the profile I shared may not put enough emphasis on this.

    Santiago is a very well experienced security engineer with a lot of knowledge on the infrastructure side. My critique was mainly around :

  • He couldn't entirely explain JWT security mechanisms in depth, this is crucial for authentication and a core part of our security architecture.
  • I asked him about recent hacks in the crypto space and he couldn't name a single one. There've been recent hacks with >
  • $1B losses just in the past couple of weeks, e.g. ByBit, I consider awareness of those things in the industry crucial for this role

  • Lack of blockchain knowledge. I asked how an ERC20 transfer works. This is fundamental knowledge in the crypto space and very important when it comes to securing funds.
  • Now, I realize this is a very unique skillset that requires a mix of security, web application, and blockchain / crypto knowledge but my questions are basic. We need someone with this mix to make sure our application is secure. This is crucial to our business, we cannot compromise when it comes to security.

    Create a job alert for this search

    Security Engineer • Miami, FL, United States

    Related jobs
    AI Security Engineer Specialist

    AI Security Engineer Specialist

    The University of Miami • Miami, FL, United States
    Full-time
    If you are a current Staff, Faculty or Temporary employee at the University of Miami, please click here to log in to Workday to use the internal application process. To learn how to apply for a facu...Show more
    Last updated: 14 days ago • Promoted
    Director, Client Security Engineering Architect

    Director, Client Security Engineering Architect

    KPMG • Miami, FL, United States
    Full-time
    Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Infrastructure Security Compliance Lead

    Cyber Infrastructure Security Compliance Lead

    Santander • Miami, FL, United States
    Full-time
    Cyber Infrastructure Security Compliance Lead.Country : United States of America.Santander is a global leader and innovator in the financial services industry. We believe that our employees are our g...Show more
    Last updated: 14 days ago • Promoted
    Analyst Sr., Cloud Security

    Analyst Sr., Cloud Security

    Holland America Group • Miami, FL, United States
    Full-time +1
    The Senior Cloud Security Analyst is responsible for daily management of security posture pertaining to our digital environment operations as well as support of identity access management (IAM) for...Show more
    Last updated: 2 days ago • Promoted
    Senior Security Operations (SecOps) Engineer

    Senior Security Operations (SecOps) Engineer

    Saxon Global • Miami, FL, United States
    Full-time
    We are seeking a highly skilled and proactive.Senior Security Operations Engineer.This role is pivotal in establishing and maintaining robust security operations across expanding U.LATAM offices, w...Show more
    Last updated: 15 days ago • Promoted
    Security Analyst II

    Security Analyst II

    Lennar • Miami, FL, United States
    Full-time
    Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality home...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Infrastructure Security Compliance Lead

    Cyber Infrastructure Security Compliance Lead

    Santander US • Miami, FL, United States
    Full-time
    Cyber Infrastructure Security Compliance Lead.Country : United States of America.Santander is a global leader and innovator in the financial services industry. We believe that our employees are our g...Show more
    Last updated: 18 days ago • Promoted
    Security Engineer

    Security Engineer

    Saxon Global • Miami, FL, United States
    Full-time
    High level of knowledge in cloud security.High level of expertise in operating security tools : .Firewall & NAC : Palo Alto (Perimeter & Datacenter), Counteract,. Endpoint Management : SCCM, Microsoft I...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer - Secure Software Development

    Security Engineer - Secure Software Development

    Sedgwick • Miami, FL, United States
    Full-time
    By joining Sedgwick, you'll be part of something truly meaningful.It's what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your c...Show more
    Last updated: 18 days ago • Promoted
    Cyber Security Automation Engineer

    Cyber Security Automation Engineer

    Yantran LLC • Miami, FL, United States
    Full-time
    Job Title : Cyber Security Automation Engineer.Location : WFH USA Florida Miami.Years of Experience : 7 10 Years.Cyber Security Automation Engineer,. Ideally the candidate has supported multiple securi...Show more
    Last updated: 7 days ago • Promoted
    AI Security Engineer Specialist

    AI Security Engineer Specialist

    University of Miami • Miami, FL, United States
    Full-time
    If you are a current Staff, Faculty or Temporary employee at the University of Miami, please click here ($7248.Workday to use the internal application process. To learn how to apply for a faculty or...Show more
    Last updated: 18 days ago • Promoted
    Sr. IT Security Engineer

    Sr. IT Security Engineer

    Syntricate Technologies • Miami, FL, United States
    Full-time
    Location : Miami, US- 5 days on site in Miami office.Someone that came from Windows Admin background and moved into Security. IT Security Engineer orchestrating comprehensive security strategies, imp...Show more
    Last updated: 18 days ago • Promoted
    Cloud Security & Identity Access Engineer

    Cloud Security & Identity Access Engineer

    Macpower Digital Assets Edge • Miami, FL, United States
    Full-time
    Minimum 5 years of experience with O365, Active Directory, MS, and Linux access management.Minimum 5 years of experience in cloud security. Experience configuring access controls in Azure.Experience...Show more
    Last updated: 30+ days ago • Promoted
    Application Security Specialist

    Application Security Specialist

    eTeam • Miami, FL, United States
    Full-time
    Perform application security scans (e.DAST and SCA) on applications and APIs to identify vulnerabilities and weaknesses.Triage security findings, collaborate with development teams, and prioritize ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Architect, Artificial Intelligence Security - Databricks / Azure - Remote

    Senior Architect, Artificial Intelligence Security - Databricks / Azure - Remote

    Molina Healthcare • Miami, FL, United States
    Remote
    Full-time
    We are seeking an experienced and forward-thinking Senior AI Security Architect to join our newly formed AI Security Architecture team. In this critical role, you will be responsible for designing a...Show more
    Last updated: 18 days ago • Promoted
    Sr. Security Research Engineer

    Sr. Security Research Engineer

    Proofpoint • Miami, FL, United States
    Full-time
    We are the leader in human-centric cybersecurity.Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead...Show more
    Last updated: 18 days ago • Promoted
    Security Architect

    Security Architect

    Hut 8 • Miami, FL, United States
    Full-time
    Imagine the ultimate destination for those who want to work at the cutting edge of technology, energy, and infrastructure. Hut 8 is on a mission to build and operate some of the world's largest data...Show more
    Last updated: 30+ days ago • Promoted
    Director, Cyber Security

    Director, Cyber Security

    KPMG • Miami, FL, United States
    Full-time
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Show more
    Last updated: 18 days ago • Promoted