Role : Security Engineer
Location : Oakland, CA (Hybrid)
Duration : Long Term
We are looking for local profiles only
About the job
Company Description
Coforge is a global digital services and solutions provider, leveraging emerging technologies and deep domain expertise to deliver impactful business results for clients. With a focus on select industries and partnerships with leading technology platforms, Coforge is a trusted partner in business transformations. The company employs a Product Engineering approach and uses AI, Cloud, Data, Integration, and Automation technologies to create intelligent, high-growth enterprises. Coforge operates 30 global delivery centers and has a presence in 23 countries. As an equal opportunities employer, Coforge welcomes applications from all backgrounds and does not discriminate on any protected basis.
What You'll Do
Work on a cloud native environment leveraging Containerized Workloads, Serverless Architecture and Automated CI / CD Pipeline to manage Infrastructure-as-a-Service
Perform Scripting and Coding to build security tooling and for automating redundant tasks.
Use terraform to deploy security baseline controls, perform code reviews, and provide recommendations for improved security.
- Build and deploy home-grown security tooling to detect, report and remediate infrastructure security vulnerabilities as part of risk mitigation activities
- Experience with integrating log feeds from various sources into SIEM systems like Splunk and enable detective controls on critical security events
- Be part of the On-Call Support for addressing security tickets and serve as a Security System SRE on a rotational basis
- Collaborate with engineering and operations teams toward implementing controls and processes that address identified gaps
- Identify and remediate security vulnerabilities and incidents
What we expect :
BS or equivalent. Minimum of 8+ years of experience in enterprise identity and security engineering.Deep and strong experience within identity and access management technology. SAML, OAuth / OAuth2, OpenID Connect, MFA mechanisms, SSO, OIDC, risk-based authentication, data encryption, and session managementExperience working with a variety of products in IAM stack such as Okta, Ping Identity, Sailpoint, Active Directory and LDAP etc.Strong understanding of cloud providers and their security technologies, operation and limitations including : Compute, GKE, Serverless technologies, Firewalls, IAM, Network Access Control solutions and Egress controls.Experience with building scalable cloud security solutions that are well instrumentedSolid grasp of data formats (JSON, YAML, XML).Experience with programming and scripting languages (Python, Go, Terraform, GCP CLI) and API integrations.Experience with CI / CD Platform tools like Jenkins, GitHub Enterprise, Artifactory CircleCI and automate security within CI / CD pipelines.Deep technical expertise on public cloud environments like GCP, AWS and AzureSkilled in Java, Python, Go and programming automation.Effective communication and interpersonal skills to collaborate with stakeholders across organization and provide guidance on security architecture.