We are the TikTok Account Team, responsible for the account system of all TikTok brand products. We are currently seeking an Account Security Technical Architect to join our team. Here, there are global business scenarios, challenges posed by hundreds of millions of users, and cutting-edge identity authentication technologies.
* Design account securityarchitecture, plan the core system design for identity authentication, session management, and account protection;
* Counter complex security threats, identify and defend against risks such as credential stuffing, phishing, simulated login, brute force cracking, etc., and build a multi-layered protection system including multi-factor authentication, device fingerprinting, risk control engine, etc.;
* Promote cross-team implementation, closely collaborate with product, R&D, data, and risk control teams, and integrate security design into business scenarios;
* Embrace the industry's cutting-edge trends, explore and implement technical standards such as FIDO2, Passkey, OAuth2.1, OpenID Connect, and Zero Trust Architecture, and promote internationalization and security compliance.Minimum Qualifications
* Bachelor's degree or above, with experience in account security, identity authentication, or large-scale system architecture
* Familiarize with the challenges faced by account security and the corresponding technical countermeasures
* Familiar with protocols such as OAuth2, OIDC, SAML, FIDO2, etc., and have practical experience in architecture or implementation
* Familiar with distributed system architecture, with the ability to design high-concurrency and high-availability systems
Preferred Qualifications:
* Possess excellent cross-team communication and facilitation skills
$155k-220k yearly est. 60d+ ago
Looking for a job?
Let Zippia find it for you.
Principal Cloud Security Architect
Nextracker Inc. 4.2
Security architect job in Fremont, CA
We are seeking a highly skilled Principal Cloud SecurityArchitect with deep experience designing and securing distributed systems that span embedded devices, edge components, and cloud-based infrastructures. This individual will be responsible for evaluating and supporting the security of our cloud-connected robotic and inspection products. They will also support the creation of cloud-based multiple product integrations, both within the company and with partner customers and companies.
The ideal candidate will combine strong software engineering skills with expertise in cybersecurity, secure coding, and modern cloud technologies. You will play a critical role in evaluating system designs, reviewing code, and ensuring secure deployments across the full technology stack.
Key Responsibilities
* Architect and Design:
* Evaluate and document end-to-end system architectures integrating embedded, edge, and cloud components.
* Evaluate and coordinate efforts to establish integrated solutions between multiple product-specific systems.
* Security and Compliance:
* Establish and maintain secure coding and deployment standards.
* Drive adoption of DevSecOps principles and security automation throughout CI/CD pipelines.
* Perform code reviews and threat modeling for embedded, backend, and cloud software.
* Collaborate with IT and product security teams to ensure compliance with security frameworks (e.g., ISO 27001, NIST, OWASP, or similar).
* Evaluate new technologies, frameworks, and tools for secure and efficient deployment.
* Work closely with firmware, backend, and cloud engineering teams to define interfaces and data security requirements.
* Partner with product management and operations to align architecture with product roadmaps and reliability goals.
Required Qualifications
* Education: Bachelor's or Master's degree in Computer Science, Electrical Engineering, Software Engineering, or related field.
* Experience: 7-10+ years of professional experience in software architecture, system design, or cybersecurity engineering.
* Technical Expertise:
* Proven experience designing distributed or hybrid cloud systems (AWS, Azure, or GCP).
* Hands-on coding experience in one or more modern languages (Python, C/C++, Go, Java, or Rust).
* Experience evaluating and enforcing secure coding design, particularly in evaluating risks in deploying cloud-connected embedded devicies.
* Experience implementing effective CI/CD scanning and analysis tools.
* Strong understanding of embedded software principles, real-time systems, and device-to-cloud communication (MQTT, REST, gRPC, etc.).
* Familiarity with infrastructure-as-code (Terraform, CloudFormation) and container orchestration (Kubernetes, Docker) and the key methods of baking security into those products.
* Knowledge of common vulnerabilities and exposures (CVEs), and mitigation strategies in both embedded and cloud contexts.
Preferred Qualifications
* Experience with zero-trust architectures, identity management (OAuth2, JWT, IAM), and secure OTA updates.
* Background in industrial IoT, energy systems, or mission-critical control environments.
* Contributions to open-source security tools or frameworks.
* Security certifications such as CISSP, CEH, CSSLP, or AWS/Azure Security Specialty.
Soft Skills
* Excellent communication skills for cross-functional collaboration.
* Ability to balance innovation with compliance and operational reliability.
Nextpower offers a comprehensive benefits package. We provide health care coverage, dental and vision, 401(K) participation including company matching, company paid holidays with unlimited paid time off, generous discretionary company bonuses, life and disability protection and more. Employees in certain positions may be eligible for stock compensation. All plans are in accordance with relevant plan documents. For more information on Nextpower 's benefits please view our company website at ****************** Pay is based on market location and may vary based on factors including experience, skills, education and other job-related reasons. The annual salary range for this position is $220,000 - $250,000.
At Nextpower, we are driving the global energy transition with an integrated clean energy technology platform that combines intelligent structural, electrical, and digital solutions for utility-scale power plants. Our comprehensive portfolio enables faster project delivery, higher performance, and greater reliability, helping our customers capture the full value of solar power. Our talented worldwide teams are redefining how solar power plants are designed, built, and operated every day with smart technology, data-driven insights, and advanced automation. Together, we're building the foundation for the world's next generation of clean energy infrastructure.
Nextpower is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
We are Nextpower
$220k-250k yearly Auto-Apply 31d ago
Security Architect
Two95 International 3.9
Security architect job in San Jose, CA
Title: SecurityArchitect
Duration: 6-9 Months Contract to Hire
Responsibilities:
Define security requirements and checklist for IoT platforms.
Champion the Client's product security SDLC. This includes threat modeling, security testing, penetration testing, security code reviews, and secure design/architecture reviews, and identifying and fixing vulnerabilities in software and applications.
Perform vulnerability research, assessment and management, serve as technical security/risk advisor on all new technology/developed by the Client.
Provide architectural guidance and leadership on best practices regarding security in software development, IoT platform, mobile application, user interface design frameworks, high performance messaging solutions, server-side development, integrations and tools and technologies.
Work across SW/HW engineering, production, and operations teams and ODM/OEM to identify component and system level security risks, determine technical security controls to mitigate risks, prioritize and schedule controls with product development timelines.
Work with corporate security governance team to comply with internal SLA and policies.
Mentor junior Security Engineers.
Maintain knowledge of current and emerging technologies / products / trends related to securityarchitectural solutions.
Requirements
Qualifications:
12+ years of experience in security research, product security, and/or software engineering.
Demonstrated expertise in cryptographic algorithms and protocols.
Demonstrated expertise in network protocols.
Demonstrated expertise in end-to-end software architecture.
Proficiency in programming languages - Java, C/C++.
Proficiency in Secure Boot and Trusted Execution Environment (TEE).
Ability to present complex security topics to wide range of internal and internal audiences (engineers to executives).
Strong project planning and execution skills.
Excellent written & oral communication skills and coordination with peers, end-users, and management.
Good analytical and debugging skills; creative ability, good organizational skills.
Preferred:
CISSP or equivalent certification.
Proficiency in audio and video streaming protocols.
$125k-177k yearly est. Auto-Apply 60d+ ago
Software Engineer, Security Engineering
Bytedance 4.6
Security architect job in San Jose, CA
About the team: The security operation platform team is missioned to build innovative security solutions to protect our products, infrastructures, and customers from cyberattacks. We take on the challenges of fighting against ever evolving cyber threats and attacks. Our team is passionate about tackling sophisticated cyber security problems, through effective software engineering, solid computer science fundamentals, and curiosity about cyber warfare. We are a team who values trust in each other, and fosters collaboration across functional teams. We dream of ambitious goals and are determined to achieve them fast and energetically. Responsibilities: - Design, implement, and deploy security operation platforms, including but not limited to SIEM, SOAR, TIP, Incidence Management, and XDR products. - Design, deploy, and operate large scale distributed systems for global threat intelligence curation, threat activity monitoring, and data analysis. - Collaborate with multiple cross-functional global teams, analyze product requirements, and deliver highly effective products rapidly. - Manage individual project priorities, deadlines and deliverables.
Minimum Qualifications: - Bachelor's degree or above in Computer Science, Computer Engineering or other relevant majors, with at least two years of software development experience in the cybersecurity domain. - Excellent algorithm, data structure, and programming skills; Proficiency in at least two general purpose programming languages. - Proficiency in back-end development, including distributed data systems and computing systems. - Proficiency in front-end development, including languages, layouts, runtimes, and frameworks. - Ability to think critically and to formulate solutions to problems in a clear, concise and timely manner. Preferred Qualifications: - Experience in building security operation platforms such as SIEM, SOAR, TIP, and incident management for threat analysts and response teams, who use the platform to manage and triage threats and alerts. - Experience in building threat intelligence systems that collect, discover, monitor, and analyze cyber threat activities. In particular, experience in developing and deploying honeypots under large scale cloud settings, and generating threat intelligence that disrupt harmful cyber activity in real time.
$150k-222k yearly est. 17d ago
QA Automation and Security Test Architect
Intelliswift 4.0
Security architect job in Pleasanton, CA
QA Automation and Security Test Architect Job ID: 21-14390 Top must haves are: * 5+ years of experience as Automation Architect and doing web application security testing as per OWASP standards * 5+ years of experience designing, developing and executing Automation Scripts using Selenium
* Ability to provide application security risk assessment of technologies stack used in cloud or web applications.
TECHNICAL KNOWLEDGE AND SKILLS:
* 5+ years of experience as an Automation Architect and doing web application security testing as per OWASP standards
* 5+ years of experience designing, developing and executing Automation Scripts using Selenium
* Knowledge and experience in other Automation tools (like QTP, Rational Robot, AutoIT)
* Understanding and working knowledge with Data Driven, Keyword Driven and Hybrid frameworks
* Knowledge of Defect Management Tool (Quality Center, JIRA)
* Exploit application security flaws and vulnerabilities with attack simulations on multiple projects working against specific client-focused scopes of work.
* Ability to provide application security risk assessment of technologies stack used in cloud or web applications.
* Ability to perform application vulnerability assessments or application penetration testing, utilizing tools commercial and open source tools.
* Perform, review and analyze security vulnerability data to identify applicability and false positives.
* Create risk based security code reviews (Static, Dynamic and Interactive).
* Conduct application security testing in line with OWASP (Open Web application Security Project)
* Mentor junior engineers to build their skills and contribution levels
* Write technical reports that include suggested resolution for identified problem areas and perform operational risk assessment.
* Perform Proof of Concept testing and do evaluation of new security technologies and tools.
* Assist and support Security Test Analysts as they perform vulnerability, network and network security assessments.
* Experience DevOps tools like DynaTrace, Chef, Splunk and Vagrant.
* Experience with scripting languages (e.g. python, PERL, SQL) a plus
* Ability to perform below tasks:
o Dynamic Application Security Testing (DAST)
o Static Application Security Testing (SAST)
o Interactive Application Security Testing (IAST)
o Web Application Penetration Testing
o Product Security Testing
o Cloud Application Security Testing
o Web Services Security Testing
o Security Code Review
o Network Security Assessment
* Application Security Testing Tools: VeraCode, Synopsys, Contrast IAST, Burp Suite, Tamper Data, Live http Headers, Client Fortify, VeraCode, OWASP Top 10, N-Stealth, Hailstorm, Paros, SANS Top 20, Acunetix, Nessus
* Fast learning, problem solving and analytical skills
* Excellent communication, presentation, and interpersonal skills
* Track record of good time management
* Efficient in effort estimation, planning and prioritization
* Ability to understand Business Requirements and transform them to functional units
* Knowledge of SDLC and implementation
* Knowledge of SoapUI
* Proficiency in Java language
* Proficiency in SQL
* Job details
*
$125k-167k yearly est. 60d+ ago
Director | Information Security
Hire.Ventures
Security architect job in San Jose, CA
The Information Security Director is responsible for the development and oversight of a comprehensive information security, compliance and privacy program. The scope of this position is global and requires a working knowledge of the various regulations. This role is responsible for the integration of IT systems with security policies and information protection strategies. The role is also responsible for developing, maintaining, and publishing privacy and information security standards, procedures, and guidelines for use within the IT organization. This position will require some day-to-day, hands on management of the various applications used for information security companywide. The candidate will make sure security policies, standards and procedures are established and enforced. The candidate must be prepared to provide presentations to Audit Committee on company security posture exhibiting professionalism and maturity at all times.
Job Responsibilities include (but are not limited to):
Develops and maintains a risk strategy that formalizes risk into a comprehensive program for management to assess areas of concern.
Maintains a governance program that ensures all Information Security controls are adequately maintained and reported.
Works with business teams to maintain information security policies, procedures, and standards and assists the various departments and practice groups in adhering to them
Develops, publishes, and maintains a comprehensive organization-wide information privacy and security strategy, plans, policies, procedures, and guidelines.
Manages the development, implementation, and maintenance of security policies, standards, and guidelines.
Directs the development and enforcement of information security and privacy policies in compliance with federal and state regulations and standards.
Coordinates the development of an ongoing information security awareness and knowledge program to ensure that employees are aware of threats and how to help ensure privacy of company information.
Identifies current security infrastructure and defines what kind of security must be designed and implemented in order to meet organization requirements.
Work with legal to ensure data protection practices are consistent with international regulatory requirements.
Researches and maintains proficiency in tools, techniques, countermeasures, and basic trends in computer and network threats and exploits.
Maintains appropriate security measures and mechanisms to guard against unauthorized access to electronically stored and /or transmitted client information and reasonably protects against anticipated threats and vulnerabilities
Conducts risk analysis and assessments to ensure there are solutions in place to mitigate those risks.
Assists in the responses to RFI\RFPs and security related concerns.
Provides management with up to date information on the different threats and security vulnerabilities that the organization may face.
Ensures compliance through adequate training programs and oversight of periodic internal security audits.
Serves as active participant in Information Security Steering Committee and serves as IT owner for security-related incident responses
Technical Skills Required:
The successful candidate must possess a strong understanding of the following:
Technical implications of security threats and vulnerabilities
Technical analysis and evaluation of network and security vulnerabilities, and managing security systems such as anti-virus, firewalls, patch management, intrusion detection and encryption
Vulnerability scanning, intrusion detection, anomaly detection, and associated technologies
Intrusion Detection\Prevention Systems, firewalls, ACLs and encryption technologies
Tools, techniques, and standards used to conduct penetration testing of networks and applications
The latest information security threats & vulnerabilities and appropriate countermeasures
Best Practices related to information\computer forensic investigation processes and techniques
TCP/IP and other related protocols
Soft Skills Required:
The successful candidate must possess the following soft skills:
Must be an intelligent, articulate, consensus building, and persuasive leader who can serve as an effective member of the senior management team and communicate information security-related concepts to a broad range of technical and non-technical staff
Must demonstrate the ability to maintain strict confidentiality of company internal and personnel affairs.
Ability to manage multiple concurrent objectives or activities, and effectively make judgments in prioritizing and time allocation in a high-pressure environment
Ability to deal with changes and adapt to a changing environment
Ability to work well with others, harness different skills and experience, and build a strong sense of team spirit
Highly self-motivated and directed
Ability to work in a multi-office environment and willingness to travel to other offices as required
Excellent verbal communication and writing skills
Presentation Skills - Prepare and deliver formal and informal presentations to illustrate ideas, solutions and issues to upper management
Intermediate project management experience
Must have strong documentation\technical writing skills
Education and Experience:
The candidate must have extensive experience in information security with a technical background in computer science, mathematics, engineering, or a related field.
This technical background must be balanced with effective management skills, because the Director of Information Security must interact with people at all levels of the organization.
Experience with disaster recovery planning and testing, auditing, risk analysis, business resumption planning, and contingency planning
Bachelor's degree in Computer Science, Engineering, Mathematics or related disciplines (or equivalent experience)
10+ years practical experience in IT security related positions (IT Security Director, IT Security Manager, Security Auditor, Security Analyst, etc.)
CISSP, CISM, CISA, CEH, ITIL, and Project Management certifications preferred.
$141k-208k yearly est. 60d+ ago
Information Security
Tech-Mex
Security architect job in Pleasanton, CA
This job requires relocation to the United States, Silicon Valley, through the use of a TN visa. If selected for this job, the process of coming to the United States will be handled by Tech-Mex.
The Information Security Engineer maintains 24x7 support, responds to vendor security questionnaires, performs monitoring and maintenance of the security infrastructure and components, participates in project planning and deployment of new technologies and will be responsible for remediation of identified compliance and risk gaps. He/she works independently, operating under the defined guidelines established by the Director of Information Technology and Security.
ESSENTIAL Job Duties & Responsibilities
Monitor and advise on information security issues related to the systems and workflow to ensure the internal and external security controls for the company are appropriate and operating as intended
Documenting gaps between vendor requirements and National MIs infrastructure
Coordinate and execute IT security projects
Coordinate response to information security incidents
Conduct company-wide audits and manage remediation plans
Collaborate with other areas of IT to manage security vulnerabilities
Conduct research to keep abreast of latest security issues
Ensures that system documentation is accurate and updated as needed
Participates in disaster recovery (DR) exercises as directed
Logfile review and analysis
Install and maintain new systems
Prioritize remediation of gaps based on internal and external audits
Prepares compliance reports by collecting, analyzing, and summarizing data
Evaluates information to determine compliance with laws, regulations, or standards
MINIMUM QUALIFICATIONS
3-5 plus years related work experience
Vendor audit and compliance experience, preferably with the SIG framework
Strong technical skills in anti-virus, DLP, and PKI
Strong experience with the McAfee suite of products
Solid understanding of networking concepts and system administration
Experience with Nessus, RSA envision, RedHat Linux and database security
Knowledge of data compliance and privacy standards and regulations as they apply to insurance and banking industries
Knowledge of Information Security Standards (ISO27001, NIST, etc)
Self-motivated, self-directed and shows attention to detail while working
Ability to effectively prioritize and execute reporting tasks in a fast-paced, results-driven environment
Extensive experience working in a team-oriented, collaborative environment with a diverse team of business and IT staff
Bachelor's degree in Computer Science or Information Systems preferred; Professional certifications are an advantage
Essential Worker Competencies
The ability to function independently with minimal supervision.
Works ethically and with integrity supporting organizational goals and values
Displays commitment to excellence
Completes work in a timely manner and meets deadlines
Good verbal and written communication skills
Meets productivity standards and achieves key outcomes
Is dependable and keeps commitments
Contributes to building a positive team spirit and treats others with respect
Candidate will be relocated to the United States
$142k-208k yearly est. 60d+ ago
Security Engineer - Client Security
Meta Platforms, Inc. 4.8
Security architect job in Fremont, CA
Meta's Client Security team is seeking experienced Security Engineer who have a track record of solving complex security problems at scale. Client Security Engineers design and develop solutions to ensure Meta's data and systems can only be accessed by trusted devices, and that applicable security policies are enforced on devices.
Minimum Qualifications
* 2+ years of combined experience designing and deploying security infrastructure (such as PKI, key management, and certificate management)
* 2+ years of software development experience in PHP, Golang, Python, C\C++, Rust, or Ruby
* Experience applying fundamental security concepts to systems
* B.S. in Computer Science or a related field, or equivalent experience
Preferred Qualifications
* Mobile Security Experience on iOS and Android platforms including MDM, security policy
* OS development experience (Windows, Mac, Linux)
* Experience managing PKI for client devices
Responsibilities
* Drive Meta's trusted devices strategy by building tools that enable connectivity to our infrastructure only from Meta owned and managed devices
* Build machine attestation and secure certificate storage solutions to enable provable client identity
* Deploy systems that help mitigate security risks by understanding and controlling what software is allowed to execute on our client devices
* Develop, validate, and enforce our client security policies
* Build and deploy tools and automation that proactively detect and respond to security risks and threats to internal corporate services
* Advise and collaborate with other teams
About Meta
Meta builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps like Messenger, Instagram and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. People who choose to build their careers by building with us at Meta help shape a future that will take us beyond what digital connection makes possible today-beyond the constraints of screens, the limits of distance, and even the rules of physics.
Equal Employment Opportunity
Meta is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. You may view our Equal Employment Opportunity notice here.
Meta is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, fill out the Accommodations request form.
$158k-207k yearly est. 40d ago
Security Engineer, Application Security
Figure 4.5
Security architect job in San Jose, CA
Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot, Figure 02, is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It's time to build. We are looking for a Security Engineer to join the Security & Privacy team at Figure, focusing on security of the robot as well as associated backend services. We are looking for excellent security engineers who have experience in breaking and building complex software systems, with experience in AI and embedded systems.
Responsibilities
* Conduct security assessments of applications, embedded systems, back-end services, and business integrations, as well as build tooling for a secure development lifecycle
* Design technical solutions to mitigate security weaknesses on the robot and our service stack. Work with teams across the company to implement them.
* Build frameworks and systems to prevent classes of vulnerabilities
* Hunt for vulnerabilities and insecure coding patterns on our product stack (backend services and robot internal systems)
* Be a champion for security and user privacy
Requirements
* Experience in several of the following application security domains: penetration testing, vulnerability research, security assessment, secure coding practices, securityarchitecture & design, hardware security
* Strong software engineering (not scripting or automation) skills in C/C++, Rust, Golang, Python or similar
* Experience with securing embedded systems, including secure boot, secure identity, OTA, or others
* Solid foundation in web security, mobile security, or cryptography
* Ability to collaborate with internal and external stakeholders whilst prioritizing tasks and work independently under minimal supervision.
* BS in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field
* 3+ years of experience in the field of application security or related security role
* Passion for learning and helping others
* Excellent verbal and written communication skills, with high attention to detail
The US base salary range for this full-time position is between $150,000 - $350,000 annually.
The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.
$150k-350k yearly Auto-Apply 59d ago
Principal Cloud Security Engineer
Astreya 4.3
Security architect job in San Ramon, CA
We are seeking an experienced and proactive DevSecOps engineer with expertise in AWS and AZURE Platforms to join our Cybersecurity Application Platform Security Team. This role combines expertise in AWS & AZURE platforms security with a strong foundation in DevSecOps practices to ensure the ‘secure by design', ‘secure by default' principles throughout development, deployment, and operation of AWS & AZURE platforms. The ideal candidate will have hands-on experience with Cybersecurity platforms, with a deep understanding of AWS & AZURE cloud platforms. This position plays a critical role in assisting customer portfolio teams to secure SaaS, PaaS platforms, maintain compliance and availability.
DevSecOps engineer role responsible for security automation of cloud services.
Job Responsibilities
Secure the AWS & AZURE Platform: Implement best practices to ensure AWS & AZURE applications are “secure by design” and “secure by default” protecting sensitive data and workflows.
Provide guidelines on usage of AppExchange / Vendor products versus using out of box capabilities with a keen eye for cybersecurity risk.
Risk Identification & Mitigation: Proactively identify security risks across the AWS & AZURE ecosystem and implement solutions to address vulnerabilities.
DevSecOps Enablement: Drive DevSecOps practices within the organization by embedding security into the development lifecycle of AWS & AZURE applications.
Collaboration with Stakeholders: Partner with various customer portfolio teams to influence their roadmaps, ensuring security is a foundational element in their strategies.
Data Security & Compliance: Ensure compliance with data protection regulations and implement robust data security measures within AWS & AZURE and integrated systems.
Cloud Integration Expertise: Leverage your knowledge of AWS & AZURE to secure integrations
Continuous Improvement: Stay up to date on emerging threats, trends, and technologies in application security to continuously improve our security posture.
Communication & Advocacy: Act as a trusted advisor on security matters, effectively communicating complex technical concepts to both technical and non-technical stakeholders.
Qualifications
We're looking for someone with:
Recent 5+ years of experience in IT focused on DevSecOps, DevOps or Security Engineering roles.
Recent 3+ years of shell scripting, aws-cli, python, lambda.
Recent 1+ years of Terraform deployments and Terraform templates (Infrastructure as Code).
Knowledge of and experience with CI/CD technologies.
Knowledge of and experience with continuous security practices.
Knowledge of infrastructure automation and infrastructure as code.
Demonstrated ability to integrate security practices into AWS & AZURE applications.
Proficiency in data protection techniques such as encryption, tokenization, and access controls.
Bachelor's degree in computer science, Information Security, or a related field.
Desired Skills
Experience with Salesforce, SAP, and MuleSoft architecture, development, and administration with a focus on platform security (e.g., profiles, roles, permissions, encryption).
Excellent Communication Skills: Ability to clearly articulate security concepts to diverse audiences, including engineers, product managers, and executives.
Collaboration & Influence: Proven ability to work cross-functionally with teams to align on security priorities and influence roadmaps.
Preferred Technical Skills/ Qualifications
Relevant certifications in Cybersecurity - SSCP, CISSP, CISM preferred.
AWS certifications (e.g., AWS Certified Solutions Architect or AWS Certified Security Specialty).
AZURE certifications.
Experience with regulatory frameworks like GDPR, CCPA, or HIPAA.
The ideal candidate will be passionate about security, have a proactive mindset, and be able to balance security requirements with business needs. They should be comfortable working in a fast-paced environment and be able to adapt to evolving security threats and technologies
Salary Range
$63.58 - $100.38 USD (Hourly)
Please note that the salary information provided herein is base pay only (gross); it does not include other forms of compensation which may or may not apply to this specific position, namely, performance-based bonuses, benefits-related payments, or other general incentives - none of which are guaranteed, may be subject to specific eligibility requirements, and are wholly within the discretion of Astreya to remit.
Further, the salary information noted above is a range that consists of a minimum and maximum rate of pay for this specific position. Where an applicant or employee is placed on this range will depend and be contingent on objective, documented work-related considerations like education, experience, certifications, licenses, preferred qualifications, among other factors.
Astreya offers comprehensive benefits to all Regular, Full-Time Employees, including:
Medical provided through Cigna (PPO, HSA, EPO options) / Medical provided through Kaiser (HMO option only) for California employees only
Dental provided through Cigna (DPPO & DHMO options)
Nationwide Vision provided through VSP
Flexible Spending Account for Health & Dependent Care
Pre-Tax Account for Commuter Benefit/Parking & Transit (location-specific)
Continuing Education and Professional Development via various integrated platforms, e.g. Udemy and Coursera
Corporate Wellness Program
Employee Assistance Program
Wellness Days
401k Plan
Basic Life, Accidental Life, Supplemental Life Insurance
Short Term & Long Term Disability
Critical Illness, Critical Hospital, and Voluntary Accident Insurance
Tuition Reimbursement (available 6 months after start date, capped)
Paid Time Off (accrued and prorated, maximum of 120 hours annually)
Paid Holidays
Any other statutory leaves, paid time, or other fringe benefits required under state and federal law
$63.6-100.4 hourly Auto-Apply 60d+ ago
Senior Cloud Security Engineer
Ridgeline 4.1
Security architect job in San Ramon, CA
Senior Cloud Security Engineer (L3)
Are you passionate about building secure, scalable systems in the cloud? Do you enjoy collaborating across teams to embed security at every stage of development? Are you excited to contribute your cloud security expertise to an environment that values innovation, collaboration, and continuous improvement?
If so, we invite you to be a part of our innovative team.
As a Senior Cloud Security Engineer at Ridgeline, you'll take the lead in securing key components of our platform and cloud infrastructure. You will work closely with Engineering, DevOps, Product, and Compliance to embed cloud security practices, enable secure-by-design development, and implement scalable, resilient security guardrails. Your contributions will help ensure our AWS environments and services are safe, compliant, and efficient. You'll also explore and apply emerging AI tools like GitHub Copilot and ChatGPT to enhance our workflows and capabilities in innovative ways.
At Ridgeline, how we work matters as much as what we build. Ridgeliners act like owners, choose growth over comfort, and communicate with transparency. We assume positive intent, bias toward action, and bring solutions-not just problems. We celebrate wins, learn from setbacks, and thrive in a resilient, collaborative, high-performing culture.
If this excites you, we'd love to meet you.
You must be work authorized in the United States without the need for employer sponsorship.
The impact you will have:
Perform security and architecture reviews of AWS infrastructure and third-party cloud services
Develop scalable security tooling and automation, incorporating AI-augmented platforms where applicable
Design and maintain security guardrails such as SCPs, IAM boundaries, and policy-as-code
Integrate detection and alerting into observability systems to enhance runtime security monitoring
Embed security into CI/CD pipelines, infrastructure automation, and internal tooling
Establish frameworks for secure integration with third-party services and internal platforms
Improve identity and access management, encryption, and least-privilege controls
Collaborate with engineering, product, and compliance teams to align on security requirements
Provide support and technical guidance through code reviews, pairing, and consultation
Encourage a collaborative, solutions-focused approach to securing services at scale
What we look for:
5+ years of experience in cloud security or platform engineering
Bachelor's degree in Computer Science or equivalent practical experience
Proficiency in a high-level language such as Python (preferred), Kotlin, or TypeScript
Hands-on experience with AWS services including IAM, VPC, ECS/EKS, Lambda, S3, and CloudWatch
Expertise in designing and applying IAM and SCP policies
Knowledge of cloud workload protection, monitoring, and threat detection in AWS
Experience using Terraform and infrastructure-as-code practices
Clear and effective communication skills, especially around security tradeoffs and technical design
Demonstrated ability to lead projects, work independently, and contribute cross-functionally
Bonus:
Familiarity with network security principles such as traffic segmentation, firewalls, IDS/IPS
Contributions to open source security tooling or research
Experience applying AI or LLM tools in security or engineering workflows
About Ridgeline
Ridgeline is the industry cloud platform for investment management. It was founded by visionary tech entrepreneur Dave Duffield (co-founder of both PeopleSoft and Workday) to apply his successful formula of solving operational business challenges with bold innovation and human connectivity to the unique needs of the investment management industry.
Ridgeline started with a clean sheet of paper and a deep bench of experts bound by a set of core values and motivated to revolutionize an industry underserved by its current tech offerings. We are building a new, modern platform in the public cloud, purpose-built for the investment management industry and we are prioritizing security, agility, and usability to empower business like never before.
With a growing campus in Reno and offices in New York, Lake Tahoe, and the Bay Area, Ridgeline is proud to have built a fast-growing, people-first company that has been recognized by Fast Company as a “Best Workplace for Innovators,” by The Software Report as a “Top 100 Software Company,” and by Forbes as one of “America's Best Startup Employers.”
Ridgeline is proud to be a community-minded, discrimination-free equal opportunity workplace.
Ridgeline processes the information you submit in connection with your application in accordance with the Ridgeline Applicant Privacy Statement (**************************************************************
Compensation and Benefits
The cash compensation amount for this role is targeted at $145,000-$167,500. Final compensation amounts are determined by multiple factors, including candidate experience and expertise, and may vary from the amount listed above.
As an employee at Ridgeline, you'll have many opportunities for advancement in your career and can make a true impact on the product.
In addition to the base salary, 100% of Ridgeline employees can participate in our Company Stock Plan subject to the applicable Stock Option Agreement. We also offer rich benefits that reflect the kind of organization we want to be: one in which our employees feel valued and are inspired to bring their best selves to work. These include unlimited vacation, educational and wellness reimbursements, and $0 cost employee insurance plans. Please check out our Careers page for a more comprehensive overview of our perks and benefits.
#LI-Hybrid
$145k-167.5k yearly Auto-Apply 4d ago
Senior Security Engineer
Adobe Systems Incorporated 4.8
Security architect job in San Jose, CA
Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen.
We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours!
Position summary:
The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture.
At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely.
If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer.
Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status.
Primary Responsibilities May Include, but Are Not Limited To:
* Managing deep and complex directory architectures and services span directories, IDPs, and federated environments.
* Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe.
* We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe.
* We engineer secure identity solutions for on-premises and cloud environments.
* We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions.
* We meet with teams to get business requirements, understand workflows, and devise solutions.
* We help assess SaaS implementations for identity integrations and general security.
* We generate useful metrics to help make decisions, identify issues, and manage our sevices.
Requirements:
* Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity
* Comfortable working on and leading different projects with many teams at one time
* In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability.
* Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods.
* Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust.
* An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories).
* Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives.
* Able to work independently and as a team member.
* Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership.
* Professional written, verbal, and presentation communication skills to engage with senior leadership.
* A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation.
* Ability to teach and mentor others while fostering a collaborative environment.
* Can model leadership behavior and help to grow other's leadership behavior.
Preferred:
* Understanding of Desktop operating systems including Windows, Linux, and Mac
* Experience or knowledge of Public Key Infrastructure
* Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc.
* Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc.
* Experience with SaaS Security Posture Management technologies.
* Experience with developing PowerBI dashboards.
The Person Should:
* Have strong social skills, ability to "win people over" and be a great teammate.
* Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams.
* Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences.
* Have the ability to think creatively and to solve complex tasks and problems with minimal direction.
Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 -- $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100 In Washington, the pay range for this position is $194,000 - $281,000
At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).
In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.
State-Specific Notices:
California:
Fair Chance Ordinances
Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and "fair chance" ordinances.
Colorado:
Application Window Notice
If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.
Massachusetts:
Massachusetts Legal Notice
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more.
Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
$214.1k-310.1k yearly 60d+ ago
AMD-XILINX: DLP Enterprise Information Security Engineer
Elevated Resources
Security architect job in San Jose, CA
The Enterprise Information Security Engineer will be responsible for identifying and defining requirements and engineering solutions to solve the existing threats and security issues of a global organization. This role will focus heavily on data protection, leading advancements in data loss prevention, automating processes and changing how AMD protects data going forward.
$111k-157k yearly est. 60d+ ago
Information Security Consultant
Jobsbridge
Security architect job in San Jose, CA
Assist Manager of Information Security on all application and network security activities
Evaluate, design, deploy, support, and monitor information security systems
Identify security exposures and develop mitigation plans
Work with our operations team to implement information security solutions
Advocate security awareness and teach secure behavior and methods
Lead technical security incident response activities and forensic investigations
Implement best-practice security procedures, standards, and guidelines
Support Paydiant customers in developing and maturing their own mobile application security programs.
Assist in compliance activities such as external audits from customers, regulatory compliance projects, and overall information security reviews
Support integration with the Client's Security Operations center and be central point of contact for any esclations.
Qualifications
Information Security, PCI-DSS, Compliance, Audit, SOX
Additional Information
Multiple Openings
$102k-146k yearly est. 60d+ ago
Senior Security Engineer
F5, Inc. 4.6
Security architect job in San Jose, CA
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.
Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.
Join a team using leading edge security technology and processes to protect the F5 enterprise and product environments. The Sr. Security Engineer position will develop and implement strategic processes and build technical solutions to enable our information security program and continuously improve our security posture amidst the industry's evolving technology landscape.
This role will place an emphasis on securing our enterprise and product-based network environments. Candidates should have strong familiarity with enterprise firewall solutions and look to challenge the status quo it relates to these deployments. Bringing a heavy dose of automation and security management to these environments.
We are looking for a well-qualified candidate that possesses the above attributes and resides in the greater Seattle area or San Jose to enable close team collaboration in F5 buildings.
Primary Responsibilities
* Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations.
* Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities.
* Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats
* Perform technical security assessments against F5aaS product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling.
* Review and test changes to services, applications, and networks for potential security impacts.
* Manage penetration and segmentation testing of F5 applications and networks.
* Review changes to and ongoing operations of enterpise environments and supporting systems for security and compliance impacts.
* Assist in detection and response efforts as a product line subject matter expert.
* Propose new controls to SecurityArchitecture and GRC.
* Build and implement new security controls, processes and tools.
* Implement zero-trust and IAM security patterns with cloud agnostic tooling
* Collaborate with Architecture, Site Reliability Engineering and Operations teams to develop and implement technical solutions and security standards.
* Configure industry standard security testing/scanning tools (network scanning, code scanning, posture management).
* Advise enterprise stakeholders on security best practices and secure design principles.
* Implement, design, develop, administer, and manage enterprise security tooling.
Knowledge, Skills and Abilities
* Experience working with high-availability enterprise production environments
* Ability to script in multiples languages (Go, Rust, Python, Ruby, etc.) and experience building scripts for process improvements and automation
* Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure.
* Technical knowledge and extensive hands-on experience with security and networking architecture, networking protocols, network security design, wireless security, intrusion prevention/detection, and firewall architecture.
* Experience automating security testing and reporting outputs
* Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker Hashicorp Vault, Palo Alto, Cisco, Qualys).
* Experience assessing and implementing technical security controls
* Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git)
* Strong written and verbal communication skills.
* Experience with network and application vulnerability and penetration testing tools
* Willingness to innovate and learn new technologies
* Excellent interpersonal and relationship skills with a collaborative mindset
* Strong written and verbal communication skills.
* Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism.
* Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate.
Qualifications
* B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience
* 5 years of progressive responsibility in a security organization
* 2-6 years of relevant security engineering or network security experience
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
The annual base pay for this position is: $140,800.00 - $211,200.00
F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.
You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice.
Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com).
Equal Employment Opportunity
It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
$140.8k-211.2k yearly Auto-Apply 27d ago
Principal Cloud Security Architect
Nextracker, USA 4.2
Security architect job in Fremont, CA
We are seeking a highly skilled Principal Cloud SecurityArchitect with deep experience designing and securing distributed systems that span embedded devices, edge components, and cloud-based infrastructures. This individual will be responsible for evaluating and supporting the security of our cloud-connected robotic and inspection products. They will also support the creation of cloud-based multiple product integrations, both within the company and with partner customers and companies.
The ideal candidate will combine strong software engineering skills with expertise in cybersecurity, secure coding, and modern cloud technologies. You will play a critical role in evaluating system designs, reviewing code, and ensuring secure deployments across the full technology stack.
Key Responsibilities
Architect and Design:
Evaluate and document end-to-end system architectures integrating embedded, edge, and cloud components.
Evaluate and coordinate efforts to establish integrated solutions between multiple product-specific systems.
Security and Compliance:
Establish and maintain secure coding and deployment standards.
Drive adoption of DevSecOps principles and security automation throughout CI/CD pipelines.
Perform code reviews and threat modeling for embedded, backend, and cloud software.
Collaborate with IT and product security teams to ensure compliance with security frameworks (e.g., ISO 27001, NIST, OWASP, or similar).
Evaluate new technologies, frameworks, and tools for secure and efficient deployment.
Work closely with firmware, backend, and cloud engineering teams to define interfaces and data security requirements.
Partner with product management and operations to align architecture with product roadmaps and reliability goals.
Required Qualifications
Education: Bachelor's or Master's degree in Computer Science, Electrical Engineering, Software Engineering, or related field.
Experience: 7-10+ years of professional experience in software architecture, system design, or cybersecurity engineering.
Technical Expertise:
Proven experience designing distributed or hybrid cloud systems (AWS, Azure, or GCP).
Hands-on coding experience in one or more modern languages (Python, C/C++, Go, Java, or Rust).
Experience evaluating and enforcing secure coding design, particularly in evaluating risks in deploying cloud-connected embedded devicies.
Experience implementing effective CI/CD scanning and analysis tools.
Strong understanding of embedded software principles, real-time systems, and device-to-cloud communication (MQTT, REST, gRPC, etc.).
Familiarity with infrastructure-as-code (Terraform, CloudFormation) and container orchestration (Kubernetes, Docker) and the key methods of baking security into those products.
Knowledge of common vulnerabilities and exposures (CVEs), and mitigation strategies in both embedded and cloud contexts.
Preferred Qualifications
Experience with zero-trust architectures, identity management (OAuth2, JWT, IAM), and secure OTA updates.
Background in industrial IoT, energy systems, or mission-critical control environments.
Contributions to open-source security tools or frameworks.
Security certifications such as CISSP, CEH, CSSLP, or AWS/Azure Security Specialty.
Soft Skills
Excellent communication skills for cross-functional collaboration.
Ability to balance innovation with compliance and operational reliability.
Nextpower offers a comprehensive benefits package. We provide health care coverage, dental and vision, 401(K) participation including company matching, company paid holidays with unlimited paid time off, generous discretionary company bonuses, life and disability protection and more. Employees in certain positions may be eligible for stock compensation. All plans are in accordance with relevant plan documents. For more information on Nextpower 's benefits please view our company website at ****************** Pay is based on market location and may vary based on factors including experience, skills, education and other job-related reasons. The annual salary range for this position is $220,000 - $250,000.
At Nextpower, we are driving the global energy transition with an integrated clean energy technology platform that combines intelligent structural, electrical, and digital solutions for utility-scale power plants. Our comprehensive portfolio enables faster project delivery, higher performance, and greater reliability, helping our customers capture the full value of solar power. Our talented worldwide teams are redefining how solar power plants are designed, built, and operated every day with smart technology, data-driven insights, and advanced automation. Together, we're building the foundation for the world's next generation of clean energy infrastructure.
Nextpower is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
We are Nextpower
$220k-250k yearly Auto-Apply 60d+ ago
Principle Security Architect
Two95 International 3.9
Security architect job in San Jose, CA
Title: SecurityArchitect
Duration: 6-9 Months Contract to Hire
Responsibilities:
•Define security requirements and checklist for IoT platforms.
•Champion the Client's product security SDLC. This includes threat modeling, security testing, penetration testing, security code reviews, and secure design/architecture reviews, and identifying and fixing vulnerabilities in software and applications.
•Perform vulnerability research, assessment and management, serve as technical security/risk advisor on all new technology/developed by the Client.
•Provide architectural guidance and leadership on best practices regarding security in software development, IoT platform, mobile application, user interface design frameworks, high performance messaging solutions, server-side development, integrations and tools and technologies.
•Work across SW/HW engineering, production, and operations teams and ODM/OEM to identify component and system level security risks, determine technical security controls to mitigate risks, prioritize and schedule controls with product development timelines.
•Work with corporate security governance team to comply with internal SLA and policies.
•Mentor junior Security Engineers.
•Maintain knowledge of current and emerging technologies / products / trends related to securityarchitectural solutions.
Qualifications:
•12+ years of experience in security research, product security, and/or software engineering.
•Demonstrated expertise in cryptographic algorithms and protocols.
•Demonstrated expertise in network protocols.
•Demonstrated expertise in end-to-end software architecture.
•Proficiency in programming languages - Java, C/C++.
•Proficiency in Secure Boot and Trusted Execution Environment (TEE).
•Ability to present complex security topics to wide range of internal and internal audiences (engineers to executives).
•Strong project planning and execution skills.
•Excellent written & oral communication skills and coordination with peers, end-users, and management.
•Good analytical and debugging skills; creative ability, good organizational skills.
Preferred:
•CISSP or equivalent certification.
•Proficiency in audio and video streaming protocols.
$125k-177k yearly est. Auto-Apply 60d+ ago
Security Engineer - Client Security
Meta 4.8
Security architect job in Fremont, CA
Meta's Client Security team is seeking experienced Security Engineer who have a track record of solving complex security problems at scale. Client Security Engineers design and develop solutions to ensure Meta's data and systems can only be accessed by trusted devices, and that applicable security policies are enforced on devices.
**Required Skills:**
Security Engineer - Client Security Responsibilities:
1. Drive Meta's trusted devices strategy by building tools that enable connectivity to our infrastructure only from Meta owned and managed devices
2. Build machine attestation and secure certificate storage solutions to enable provable client identity
3. Deploy systems that help mitigate security risks by understanding and controlling what software is allowed to execute on our client devices
4. Develop, validate, and enforce our client security policies
5. Build and deploy tools and automation that proactively detect and respond to security risks and threats to internal corporate services
6. Advise and collaborate with other teams
**Minimum Qualifications:**
Minimum Qualifications:
7. 2+ years of combined experience designing and deploying security infrastructure (such as PKI, key management, and certificate management)
8. 2+ years of software development experience in PHP, Golang, Python, C\C++, Rust, or Ruby
9. Experience applying fundamental security concepts to systems
10. B.S. in Computer Science or a related field, or equivalent experience
**Preferred Qualifications:**
Preferred Qualifications:
11. Mobile Security Experience on iOS and Android platforms including MDM, security policy
12. OS development experience (Windows, Mac, Linux)
13. Experience managing PKI for client devices
**Public Compensation:**
$122,000/year to $181,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
$122k-181k yearly 31d ago
Senior Security Engineer
Adobe 4.8
Security architect job in San Jose, CA
Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen.
We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours!
Position summary:
The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture.
At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely.
If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer.
Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status.
Primary Responsibilities May Include, but Are Not Limited To:
Managing deep and complex directory architectures and services span directories, IDPs, and federated environments.
Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe.
We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe.
We engineer secure identity solutions for on-premises and cloud environments.
We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions.
We meet with teams to get business requirements, understand workflows, and devise solutions.
We help assess SaaS implementations for identity integrations and general security.
We generate useful metrics to help make decisions, identify issues, and manage our sevices.
Requirements:
Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity
Comfortable working on and leading different projects with many teams at one time
In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability.
Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods.
Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust.
An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories).
Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives.
Able to work independently and as a team member.
Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership.
Professional written, verbal, and presentation communication skills to engage with senior leadership.
A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation.
Ability to teach and mentor others while fostering a collaborative environment.
Can model leadership behavior and help to grow other's leadership behavior.
Preferred:
Understanding of Desktop operating systems including Windows, Linux, and Mac
Experience or knowledge of Public Key Infrastructure
Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc.
Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc.
Experience with SaaS Security Posture Management technologies.
Experience with developing PowerBI dashboards.
The Person Should:
Have strong social skills, ability to “win people over” and be a great teammate.
Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams.
Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences.
Have the ability to think creatively and to solve complex tasks and problems with minimal direction.
Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $168,200 -- $310,100 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. In California, the pay range for this position is $214,100 - $310,100 In Washington, the pay range for this position is $194,000 - $281,000
At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).
In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.
State-Specific Notices:
California:
Fair Chance Ordinances
Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and “fair chance” ordinances.
Colorado:
Application Window Notice
If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs.
Massachusetts:
Massachusetts Legal Notice
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more.
Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
$214.1k-310.1k yearly Auto-Apply 31d ago
Sr, Security Engineer
F5, Inc. 4.6
Security architect job in San Jose, CA
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.
Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.
About the Role
Join a high-impact team using cutting-edge security technologies and practices to protect F5's enterprise and product environments. As a Senior Security Engineer / Threat Hunter, you will lead strategic initiatives, develop technical solutions, and drive continuous improvements in our cyber defense capabilities. You'll be a key player in threat detection, incident response, and proactive threat hunting across cloud and on-prem environments.
Key Responsibilities
* Lead threat hunting engagement for Global Cyber Security Detections and Investigations team across enterprise and product environments.
* Lead and guide team members in threat hunting practices and up skilling efforts.
* Perform proactive threat hunting and cloud/host forensics (AWS, Azure, GCP, Linux, Windows, mac OS).
* Conduct technical security assessments, including static/dynamic analysis and threat modeling.
* Automate manual processes to reduce operational toil and improve response times.
* Collaborate with SRE, Architecture, and Operations teams to implement security standards and controls.
* Utilize security tooling (i.e., EDR, DLP, vulnerability scanners, posture management).
* Advise stakeholders on secure design principles and security best practices.
* Maintain and improve security runbooks and documentation.
* Stay current on emerging threats, CVEs, and industry trends applying to hunting practices
* Follow F5 information security policies and protect information assets from unauthorized access, disclosure, modification, destruction or interference
* Performs other related duties as assigned
* Follow the F5 behaviors
Required Skills & Experience
* 8+ years in cybersecurity, including threat hunting, incident response, and security engineering.
* Strong experience with SIEM (e.g., Falcon, Splunk, Sentinel), SOAR, and EDR platforms.
* Deep understanding of MITRE ATT&CK framework and threat actor TTPs.
* Apps Proficiency in scripting or utilizing automation tools (Python, PowerApps, Power Automoate) for automation and tooling.
* Hands-on experience with cloud security (AWS, Azure, GCP) and infrastructure as code (Terraform, Ansible).
* Solid grasp of UNIX/Linux systems, networking protocols, and firewall architecture.
* Experience with vulnerability management, penetration testing, and securearchitecture design.
* Excellent communication skills with ability to interface across technical and non-technical stakeholders.
Preferred Qualifications
* Certifications: GCIH, GCFR, CEH, or equivalent SANS training.
* Experience with ServiceNow, ADO or similar ticketing systems.
* Familiarity with container orchestration (Kubernetes, Docker) and CI/CD pipelines.
* Exposure to FedRamp, eDiscovery, and DLP casework.
* Strong interpersonal skills and a collaborative mindset.
* Ability to lead and mentor junior engineers.
* Ability to drive strategic long-term initiatives with cross org leaders.
* Ability to effectively present to our executive leadership
Work Environment
* Full-time position with potential for shift flexibility.
* Requires scheduled on-call work outside core business hours (early mornings, evenings, weekends, holidays) shared with the larger team.
* Duties performed at a desk or computer station; remote collaboration across time zones.
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
The annual base pay for this position is: $120,000.00 - $180,000.00
F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.
You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice.
Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com).
Equal Employment Opportunity
It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
How much does a security architect earn in Manteca, CA?
The average security architect in Manteca, CA earns between $104,000 and $212,000 annually. This compares to the national average security architect range of $92,000 to $179,000.