Information Security Engineer

Verily
United States
7 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$165,500.0 - $185,500.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Cloud Computing Security Cyber Security Information Security Management Red Team (Cyber Security) Web Application Security Software Vulnerability Management Google Cloud Containerization Kubernetes Information Technology Plan of Action and Milestones

Job description

Verily is seeking an exceptional information security engineer to support our Information Security and Privacy Risk Management function. The Information Security Engineer position combines a deep understanding of common information security technologies with a strong information security background. This individual will work closely with Verily’s Governance, Risk and Compliance team to ensure weekly/monthly/annual contractual compliance is established and maintained, especially as it relates to vulnerability management., * Manage tools and inputs that are part of the Vulnerability Management program.

  • Track remediation tasks, engage with systems/services owners and stakeholders to ensure vulnerability management compliance.
  • Ensure that regulator weekly/monthly reports are provided for continual FedRAMP certifications and/or necessarily remediations (e.g., POA&M).
  • Apply prior understanding and experience of federal government compliance (e.g., FISMA, FedRAMP) to regularly report on process and operational readiness.
  • Keep abreast of new threats and vulnerabilities, and validate the risk of reported threats using vulnerability management, scanning and red team operations.

Requirements

  • BA/BS degree in Computer Science, Engineering, Management Information Systems.
  • 5 years of experience in the Information Security or related domain(s).
  • 3 years experience with NIST/FedRAMP compliance audits.
  • Strong knowledge of cloud security architecture, web application security, Vulnerability management, and security engineering.
  • Excellent written and verbal communication skills., * Experience with FedRAMP Moderate or higher.
  • Experience with Google Cloud Platform (preferred) or AWS, and also containerized environments (Kubernetes).
  • Experience with vulnerability management tools such as bug bounty programs, scanning and offensive security frameworks.

Qualified applicants must not require employer sponsored work authorization now or in the future for employment in the United States.

The US base salary range for this full-time position is $165,500 - $185,500 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

About the company

Verily Health is a data platform and technology company purpose-built to power AI-enabled precision health solutions that accelerate research and improve care for individuals and communities. Uniquely positioned at the intersection of technology, data science, and healthcare, Verily transforms multimodal health data into insights, models, and actions that make healthcare more personalized, predictive, and precise.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all