Sr. AI Security Engineer
About the role
Please note, this team is hiring across all levels and candidates are individually assessed and appropriately leveled based upon their skills and experience.
The Platform Engineering (PE) team is responsible for the end-to-end build, scale and management of the infrastructure required to operate Netskope products and services. We primarily focus on the development and operation of Platform Services, which consist of hardware and software that has been created, modified, or integrated to enable an operating platform that supports the delivery of Netskope Product Services. This platform then provides internally consumable Infrastructure Services such as compute, network services, automation and visibility to Product Engineering. Additional areas of responsibility for the PE team include ensuring best practices, infrastructure management, and incident and change management.
What's in it for you:
We're looking for an experienced Infrastructure Security Engineer to protect our production infrastructure as a member of the Security Intelligence Operations team (SIO). Reporting directly to the Sr. Director of SIO, this role will focus on delivering Systems Security Design, Implementation Planning, Process Engineering, Security Configuration, Standards, and Reviews.
What you will be doing:
- Designing, developing and operating security systems by monitoring the security environment; identifying security gaps; evaluating and implementing enhancements.
- Preparing system security reports by collecting, analyzing, and summarizing data and trends.
- Enhancing security team accomplishments and competence by planning the delivery of solutions; answering technical and procedural questions for less experienced team members; teaching improved processes; mentoring team members.
- Determining security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses and risk assessments; studying architecture/platform; identifying integration issues; preparing cost estimates.
- Maintaining security by monitoring and ensuring compliance to standards, policies, and procedures; conducting incident response analyses; developing and conducting training programs.
Required skills and experience:
- Sound understanding of cybersecurity best practices
- Broad technical knowledge of systems (Windows, Mac, and Linux), networking protocols, cloud infrastructure, security technology and devices (firewalls, IPS/IDS, DLP), and security event management systems (Splunk, Sumo Logic, Elastic, Kibana)
- Hands-on experience with secrets management and PKI (HSMs, certificate generation, PKI infrastructure, re-key operations at scale)
- Deep technical knowledge and practical experience with virtualization in both varied and scaled environments (ESXi, Hyper-V, KVM, Kubernetes, Open Stack).
- Strong networking fundamental knowledge [Practical understanding of the OSI models and their impact on security posture, understanding of network technologies and their limitations ie: SDN, Cloud VPCs, etc)
- Hands-on experience with Public Cloud infrastructure (AWS, GCP, Azure)
- Proven track record of project management (Inception, scoping, deployment and documentation
- Experience working with both traditional commercial and public sector environments
- Broad knowledge of Linux systems administration with a wide variety of Linux distributions
Education:
- Bachelor's Degree or higher in Computer Science, Engineering, or a combination of comparable education and experience typically obtained by 5 or more years of related work experience.
#LI-SK3