Point72 is hiring a

SAAS Security Engineer

New York, United States

A Career with Point72’s Technology Team

As Point72 reimagines the future of investing, our Technology group is constantly improving our company’s IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts experimenting, discovering new ways to harness the power of open-source solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity.

The mission of our Information Security team is to ensure the development, implementation, and management of a comprehensive program that effectively protects the confidentiality, integrity, and availability of Point72 information assets. Our team is comprised of security professionals with expertise in a diverse portfolio of security disciplines.

Summary

We are seeking a highly skilled and experienced SaaS security specialist who will play a critical role in protecting our organization's sensitive data within our cloud-based applications. You will be a key contributor in defining and enforcing security controls across our SaaS ecosystem, ensuring compliance and mitigating risk in a rapidly evolving threat landscape and ensuring the platform’s security infrastructure aligns with business objectives and meets industry standards.

 

What you’ll do

  • Architect, implement, and manage security policies and procedures for SaaS applications such as Workday, Salesforce, Box, Databricks, Slack, Zoom, and other critical platforms
  • Define granular access controls, implement multi-factor authentication (MFA), and configure robust security settings within each application
  • Conduct comprehensive security assessments of SaaS platforms, including penetration testing and vulnerability scanning, to identify weaknesses
  • Develop and implement detailed remediation plans for identified vulnerabilities
  • Design and manage a secure identity and access management (IAM) framework for SaaS applications, implementing single sign-on (SSO), federated identity management, and role-based access controls (RBAC) to ensure authorized access to sensitive data
  • Evaluate, implement and manage encryption solutions within SaaS platforms to ensure confidentiality and integrity of sensitive data
  • Develop and deploy advanced data loss prevention (DLP) strategies within SaaS environments to detect and prevent sensitive data exfiltration
  • Configure and fine-tune DLP rules to monitor user activities, identify sensitive data patterns, and prevent unauthorized data transfer
  • Utilize SIEM solutions, security analytics platforms, and threat intelligence feeds to monitor, detect, investigate and respond to suspicious activities
  • Collaborate with IT, security, and business teams to ensure alignment with overall business objectives, compliance requirements and regulatory frameworks

 

What’s required

  • 7-10 years of experience in cybersecurity, with a focus on SaaS security
  • Hands-on expertise in securing SaaS solutions such as, Workday, Salesforce, Box, or Databricks, with a deep understanding of their security features, configurations, and best practices
  • In-depth technical knowledge of access control models, identity federation protocols (SAML, OAuth), encryption algorithms, and DLP techniques within SaaS environments
  • Ability to conduct thorough security assessments and penetration testing of SaaS platforms, utilizing industry-standard tools and methodologies
  • Strong understanding of security frameworks and best practices, including NIST Cybersecurity Framework, ISO 27001, CIS benchmarks, and Cloud Security Alliance (CSA) best practices
  • Experience with scripting and automation tools for security operations and incident response
  • Strong analytical and problem-solving skills with the ability to identify and mitigate security risks in complex cloud environments.
  • Excellent communication and collaboration skills to work effectively across technical and non-technical teams
  • A proactive and passionate approach to security implementing innovative solutions and staying ahead of the threat landscape
  • Commitment to the highest ethical standards

We take care of our people

We invest in our people, their careers, their health, and their well-being. When you work here, we provide:

  • Fully-paid health care benefits
  • Generous parental and family leave policies
  • Volunteer opportunities
  • Support for employee-led affinity groups representing women, people of color and the LGBT+ community
  • Mental and physical wellness programs
  • Tuition assistance
  • A 401(k) savings program with an employer match and more

 

About Point72

Point72 Asset Management is a global firm led by Steven Cohen that invests in multiple asset classes and strategies worldwide. Resting on more than a quarter-century of investing experience, we seek to be the industry’s premier asset manager through delivering superior risk-adjusted returns, adhering to the highest ethical standards, and offering the greatest opportunities to the industry’s brightest talent. For more information, visit www.Point72.com/working-here.

The annual base salary range is $200000.00-$250000.00 (USD) . Actual compensation offered to candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level among other things. Details about eligibility for bonus compensation (if applicable) will be finalized at the time of offer.

This job is no longer available

Enter your email address below to get notified whenever we find a similar job post.

Unsubscribe at any time.