Security Engineer II - Vulnerability Lifecycle

Datadog
New York, United States of America
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Compensation
$ 300K

Job location

New York, United States of America

Tech stack

Java
Artificial Intelligence
Python
Systems Development Life Cycle
Software Vulnerability Management
Datadog
Software Security
Information Technology
Go
Programming Languages

Job description

Here at Datadog, we think about Vulnerability Management a little bit differently. We embrace open source software, and recognize our role in the software supply chain. We also see how attackers are weaponizing vulnerabilities faster than ever before. That’s why we’re looking for a Security Engineer who can help us scale and improve our overall vulnerability management lifecycle, and take an AI-first approach to addressing vulnerability risk.

At Datadog, we place value in our office culture - the relationships and collaboration it builds, and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them.

What You’ll Do:

  • Reduce engineering toil related to vulnerability remediation through a “PRs, not tickets” approach.
  • Develop and operate automation to increase detection coverage and remediate root cause issues
  • Work with critical partners like SDLC Security, Product Security, and a wide range of engineering teams to “shift left” and reduce upstream vulnerabilities entering our ecosystem.
  • Improve the efficiency of our overall vulnerability management lifecycle through thoughtful use of automation and AI.
  • Develop metrics and reporting to provide leadership with an accurate view of overall vulnerability risk.
  • Provide evidence and subject matter expertise for vulnerability management processes and controls for multiple compliance frameworks (SOC2, HIPAA, PCI, FedRAMP, ISO)

Requirements

  • You have experience with vulnerability management or similar domains like cloud security posture management, SDLC management, etc.
  • You have strong communication skills, with the ability to convey technical information clearly and effectively to both technical and non-technical stakeholders.
  • You have a proven track record of managing cross-functional collaboration between security, engineering, and product teams.
  • You are experienced in one or more programming languages (Golang, Python, Java, etc.)
  • You are a U.S. person and able to work on ITAR-controlled projects
  • You have a BS/MS/PhD in a Computer Science, Engineering or related scientific field or equivalent experience

Benefits & conditions

  • New hire stock equity (RSUs) and employee stock purchase plan (ESPP)
  • Continuous professional development, product training, and career pathing
  • Intradepartmental mentor and buddy program for in-house networking
  • An inclusive company culture, ability to join our Community Guilds (Datadog employee resource groups)
  • Access to Inclusion Talks, our internal panel discussions
  • Free, global mental health benefits for employees and dependents age 6+
  • Competitive global benefits

Benefits and Growth listed above may vary based on the country of your employment and the nature of your employment with Datadog.

#LI-Hybrid

Datadog offers a competitive salary and equity package, and may include variable compensation. Actual compensation is based on factors such as the candidate's skills, qualifications, and experience. In addition, Datadog offers a wide range of best in class, comprehensive and inclusive employee benefits for this role including healthcare, dental, parental planning, and mental health benefits, a 401(k) plan and match, paid time off, fitness reimbursements, and a discounted employee stock purchase plan. The reasonably estimated yearly salary for this role at Datadog is: $130,000-$300,000 USD

Apply for this position