Senior Security Engineer

As the Senior Security Engineer, you will play a critical role in safeguarding our organization’s digital and physical assets. You will be responsible for implementing and maintaining security measures to protect the organization's infrastructure, assets, data, and personnel in close collaboration with the Director of Information Security and Compliance. You will help manage our compliance programs, including SOC2, GDPR, and emerging state and country privacy laws. You will also provide crucial technical security expertise to support the sales process. Your duties will include, but are not limited to:

  • Execute our comprehensive security program, including implementing policies, procedures, and guidelines that align with industry standards and best practices. 
  • Work with cross-functional teams to implement security measures that align with business objectives. 
  • Deploy, maintain, and monitor security technologies, tools, and systems to enhance the organization's security posture. 
  • Support the sales engineers by providing technical expertise on security requirements for potential and existing customers. 
  • Assist in customer-facing sales calls to address specific technical security concerns. 
  • Help develop security presentations and training materials to support internal and customer security objectives. 
  • Conduct daily monitoring, triage, and escalation of security alerts from various security systems. 
  • Validate and document submissions from our Responsible Disclosure program. 
  • Maintain situational awareness of emerging vulnerabilities for our technology stack and escalate as needed. 
  • Conduct scheduled and on-demand security assessments to identify and evaluate potential security risks and assist in developing mitigation plans. 
  • Implement product security features and capabilities in collaboration with the product development team. 
  • Perform scheduled and on-demand vulnerability scanning and penetration testing against networks and applications. 
  • Investigate, triage, and respond to security incidents, ensuring proper documentation and escalation.

Requirements

  • 5+ years experience in information security, with hands-on experience in security operations and compliance frameworks such as SOC2.
  • Experience implementing and maintaining security tools and controls, including SDLC and GRC tools.
  • Ability to clearly articulate how our security program addresses customer security requirements.
  • Strong knowledge of security best practices and technologies, including access control, intrusion detection, and incident response. 
  • Experience with cloud security, specifically in Google Cloud Platform (GCP). 
  • Ability to identify and implement practical, effective security solutions that balance risk with business objectives. 
  • Strong communication skills with the ability to explain complex security concepts to various stakeholders. 
  • Hands-on experience with security monitoring tools, vulnerability scanning, and security testing. 
  • Understanding of common security frameworks and ability to map controls to compliance requirements. 
  • Experience with automation and scripting for security operations. 
  • Relevant security certifications such as Security+, CISSP, SSCP, GIAC/GSEC, or GCP platform-specific security certifications are preferred.

Benefits

Work environment:

  • Position is remote within US 
  • Minimal travel 
  • Limited physical demands

If you are a security professional with a strong technical background and passion for implementing robust security measures, we encourage you to apply for this opportunity.

ActivTrak is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. ActivTrak does not discriminate on the basis of race, color, religion, sex, national origin, political affiliation, sexual orientation, marital status, disability, age, protected veteran status, gender identity or any other factor protected by applicable federal, state or local laws.

ActivTrak is a product-led, innovative software company that introduced it’s award-winning workforce analytics platform in 2015. Our cloud-based platform provides productivity insights into how teams work, improving employee and customer experience, while also enabling better business outcomes. At ActivTrak, we recognize the powerful link between these two concepts and we're on a mission to understand it more every day.We are a fast-growing, agile company with a forward-thinking, inclusive culture. Our teams are encouraged to collaborate daily to solve challenges, create and champion new ideas, and execute initiatives that help global customers and their modern workforces succeed by working better together. People are the backbone of ActivTrak. It’s important that we take care of ourselves and make an effort to get to know one another. We have team members located across the United States (and soon, the entire globe) so we must be intentional about how we work with one another. This is an incredible opportunity to embark on an exciting journey with an early-stage, dynamic VC-backed company. If you have a positive attitude towards urgency, risk, and challenges that comes with working in a startup environment, then you will be a great fit!

View all jobs
Get hired quicker

Be the first to apply. Receive an email whenever similar jobs are posted.

Ace your job interview

Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.

Senior Security Engineer Q&A's
Report this job
Apply for this job