Mô Tả Công Việc
About Edulog
Education Logistics (www.edulog.com) is one of the top leading companies throughout North America regarding pupil transportation software, and we are growing. We have a passion for technology, customer commitment, and innovation. Right now, Right now, We are looking for experts in the Security Engineering field to analyze software designs and implementations from a security perspective (in-depth monitoring; troubleshooting network problems and outages and software stack issues; responding to security incidents; scheduling upgrades; collaborating with network vendor architects). Maintain up-to-date knowledge on evolving or potential security vulnerabilities across the stack to identify and resolve security threats/issues before they have impacts on our clients on both web and mobile systems. The successful candidate needs to have very strong skills in security analysis/defense and countermeasures at each phase of the software development life-cycle to help Edulog to create and maintain robust and reliable software and related technologies to service millions of daily requests of North America parents
Roles and Responsibilities
- Implement, test and maintain advanced software security techniques in compliance with technical reference architecture for Edulog products on both web and mobile.
- Design computer security strategy and engineer comprehensive cybersecurity architecture. Develop, execute and track the performance of security measures to protect information and network infrastructure and computer systems.
- Work to ensure that the software and underlying architecture is developed and maintained in line with applicable information security frameworks such as SOC 2, ISO 27001, NIST 800-53.
- Perform on-going security testing and code review to improve software security, including vulnerability assessments, penetration testing, and risk assessments to identify and prioritize potential security risks and vulnerabilities.
- Conduct security audits and assessments to ensure compliance with applicable regulations, industry best practices, and organizational security policies.
- Collaborate with cross-functional teams to ensure that security requirements are incorporated into system and network design, development, and implementation processes.
- Troubleshoot and debug issues that arise during the operations of the Edulog systems.
- Propose the engineering designs for new software solutions to help mitigate security vulnerabilities..
- Contribute to all levels of the architectures of both BE and FE..
- Maintain technical documentation up to date.
- Consult team members on secure coding practices.
- Stay up to date on new tools, trends, and best practices.
Yêu Cầu Công Việc
- Proven work experiences as a software security engineer. Minimum of 3-5 years of experience in system security engineering, network security, or a related field.
- Familiar with Linux, Windows, EKS Cluster, AWS services. Any AWS certificate security among the following is a plus such as Amazon VPC Security, Data Protection, Logging, Monitoring, and Compliance, Security Management and Automation Infrastructure and Edge Security, Incident Response.
- Experience implementing and managing information security framework controls such as SOC 2, ISO 27001, NIST 800-53, etc
- Hands-on experience with security technologies, such as firewalls, IDS/IPS, SIEM, antivirus, and vulnerability scanning tools. Experience with risk assessment, penetration testing, and incident response methodologies, and vulnerability assessment tools such as Nessus, Nmap, Metasploit, etc.
- Detailed technical knowledge of techniques, standards and state-of-the art capabilities for authentication and authorization, applied cryptography, security vulnerabilities and remediation.
- Strong software development experience in one of the following core languages: Java, Javascript, Python.
- Familiarity with web related technologies (Web applications, Web Services, Service Oriented Architectures) and of network/web related protocols.
- Familiarity with many tools/services used in the software development process with PostGres, Kafka, Debezium, MQTT, Active Directory Azure, Elastic Search ...
- Interest in all aspects of security research and development.
- Excellent communication skills with internal and external stakeholders. Verbal and written proficiency in English is a must.
- BS degree in Computer Science or related field.
Hình thức
Quyền Lợi
- Lunch allowances
- 13th-month salary
- Laptop/MacBook Pro upon joining
- Bao Viet Health Insurance
- Yearly company trip
- Modern facility and open environment
- Opportunities to work onsite in the US