Security Engineer

FlightSafety International Inc.
Seattle, United States of America
1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
$ 194K

Job location

Remote
Seattle, United States of America

Tech stack

Amazon Web Services (AWS)
Azure
Cloud Computing
Cloud Computing Security
Computer Security
Python
PCI Data Security Standards
Public Key Infrastructure
Security Information and Event Management
TypeScript
Google Cloud Platform
Cloudformation
Kubernetes
Information Technology
Terraform
DocuSign
Serverless Computing
ServiceNow
Vulnerability Analysis

Job description

As a Cloud & Infrastructure Security Engineer, you will enable new business opportunities by establishing and enforcing cloud security controls, managing vulnerabilities, ensuring secure configuration, and leading initiatives to continuously strengthen the security posture of Docusign deployments to new environments. You'll design and implement solutions that proactively protect our cloud infrastructure, enabling the business to innovate with confidence. Your expertise will drive secure-by-default practices and deliver impactful security outcomes that support our platform's ongoing growth

This position is an individual contributor reporting to the Sr. Manager, Cloud & Infrastructure Vulnerability Management.

Responsibility

Design and implement scalable security controls and systems to protect cloud infrastructure across a global environment

Design and implement the optimization of enterprise endpoint security tools (e.g., EDR, antivirus, device control)

Discover and manage security vulnerabilities and work with teams for remediation

Lead initiatives to establish, enforce, and continuously improve cloud security baselines and guardrails

Collaborate with engineering, product, and operations teams to embed security into infrastructure, platforms, and development workflows

Develop and maintain automation, policy-as-code, and infrastructure-as-code solutions to streamline security operations and compliance

Integrate security checks and guardrails into CI/CD pipelines, enabling secure development practices and early detection of risks

Respond to cloud security incidents, conduct post-mortems, and drive remediation and platform hardening based on lessons learned

Harden cloud resources, images, and registries, and deliver reusable modules and templates for secure-by-default deployments

Monitor and reduce configuration drift, verify remediation effectiveness, and manage exceptions with clear criteria and review processes

Operate and optimize third-party cloud security platforms, ensuring reliability and alignment with service level objectives

Author clear documentation, runbooks, and self-service resources to empower product and platform teams in secure cloud adoption

Report on key security metrics, such as coverage, drift, and incident response effectiveness, to drive transparency and continuous improvement

Job Designation

Hybrid: Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation)

Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law.

Requirements

5+ years of experience in cloud security engineering or related field

The individual must be a U.S. Citizen, U.S. National or U.S. Person. Individuals outside of these categories are generally barred from having logical access to IL5 data or infrastructure

Bachelor's degree in Computer Science, Engineering, or related discipline

Expereince in one or more security domains, such as endpoint security, configuration compliance, SIEM/SOAR, or ITSM integrations

Experience deploying, configuring, and using cloud and endpoint security tools like Microsoft Defender

Experience with service desk tools like ServiceNow

Experience in at least one programming language (Python, Go, or TypeScript)

Experience with policy-as-code and infrastructure-as-code tools (OPA, Sentinel, Conftest, Terraform, CloudFormation, or CDK)

Experience integrating security controls into CI/CD pipelines

Experience with multi-cloud environments

Experience with Kubernetes and container security

Experience with incident response and root cause analysis in cloud environments

Experience with monitoring, alerting, and defining service level objectives

Experience authoring technical documentation, modules, and runbooks

Experience with cloud security posture management (CSPM/KSPM) tools

Experience hardening images, registries, and implementing workload/runtime controls

Experience collaborating with engineering, IT, and security teams

Preferred

Master's degree in Computer Science, Engineering, or related discipline

Deep experience with Azure security services, architecture, and best practices

Knowledge of Wiz, Microsoft Defender, or similar CWPP/CNAPP solutions

Experience with AWS and/or GCP security controls

Experience with serverless security and securing cloud-native applications

Experience with regulatory compliance frameworks (e.g., SOC 2, ISO 27001, PCI DSS)

Experience with automated remediation and security orchestration in cloud environments

Experience with secrets management and PKI in cloud platforms

Benefits & conditions

Illinois, Colorado, Massachusetts and Minnesota: $137,100.00 - $193,725.00 base salary

Washington, Maryland, New Jersey and New York (including NYC metro area): $137,100.00 - $200,125.00 base salary

This role is also eligible for the following:

Bonus: Sales personnel are eligible for variable incentive pay dependent on their achievement of pre-established sales goals. Non-Sales roles are eligible for a company bonus plan, which is calculated as a percentage of eligible wages and dependent on company performance.

Global benefits provide options for the following:

Paid Time Off: earned time off, as well as paid company holidays based on region Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment Retirement Plans: select retirement and pension programs with potential for employer contributions Learning and Development: options for coaching, online courses and education reimbursements Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events

Life at Docusign

Working here

Docusign is committed to building trust and making the world more agreeable for our employees, customers and the communities in which we live and work. You can count on us to listen, be honest, and try our best to do what's right, every day. At Docusign, everything is equal.

We each have a responsibility to ensure every team member has an equal opportunity to succeed, to be heard, to exchange ideas openly, to build lasting relationships, and to do the work of their life. Best of all, you will be able to feel deep pride in the work you do, because your contribution helps us make the world better than we found it. And for that, you'll be loved by us, our customers, and the world in which we live.

Accommodation

About the company

Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign's Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).

Apply for this position