- Customers trust Iterable with sensitive information, expecting us to safeguard their data. Iterable’s Security team leads a cross‐functional effort across the company to ensure that all systems remain secure in support of Iterable’s core values, and to provide assurance to our customers that we will be good stewards of their valued data
- The Security team actively leads the effort to improve Iterable’s security posture in concert with other groups as they develop or launch new features and services. As Engineers, we believe in security through automation, assessments, technical reviews and vulnerability evaluation. Our footprint spans across the entire company at all levels, throughout the complete development lifecycle
- We aim to create a compelling, well‑documented, and holistically managed security program. We are looking for individuals to join our vibrant Security Engineering team to move the current state of security to the next level
- We strive to improve our cloud security capabilities, and support our peers in building an amazing product through creating an environment which fosters security by design. To summarize, we want you to share and be a part of our grand plan!
- Review system designs and implementations, and consult with engineers across the organization to identify and/or avoid security issues through alignment with security standards and best practices, document and ensure security issues are appropriately remediated
- Leverage subject matter expertise of systems and infrastructure to propose solutions and drive architectural improvements which address classes of security vulnerabilities
- Develop and implement cloud and infrastructure security architecture and contribute to overall strategy and roadmap plans
- Participate in the selection, design, development, implementation, and management of automated security testing tools, such as cloud security posture management and image vulnerability scanners
- Implement solutions that integrate into CI pipelines to shift security as far left as possible and raise concerns early to engineering teams
- Promote DevSecOps principles and implement Infrastructure as Code (IaC) scanning and policy enforcement to ensure deployments via Terraform, AWS CloudFormation, or similar, are secure and compliant with standards and guidelines
- Coordinate and participate in penetration tests of our cloud services
Benefits
- Medical, Dental & Vision Insurance
- Life & Disability Benefits
- Flexible Spending Accounts
- Health Savings Accounts with Employer Contributions
- Premium Calm Membership
- Health and Fitness Stipend
- Paid Parental Bonding Leave
- Paid Sabbatical
- Internet and Mobile Phone Reimbursement
- Learning and Development Stipend
- Family Forming Benefits
- Paid Holidays
- Flexible Time Off
- Balance Days
- Private Medical Insurance
- Group Life Assurance & Income Protection
- Health and Fitness Stipend
- Premium Calm Membership
- Paid Sabbatical
- Paid Parental Bonding Leave
- Internet and Mobile Phone Reimbursement
- Learning and Development Stipend
- Family Forming Benefits
- Flexible Time Off
- Paid Holidays
- Balance Days
- Private Medical Insurance
- Life/Risk Assurance
- Meal Allowance
- Balance Days
- Paid Holidays
- Paid Sabbatical
- Teleworking Reimbursement
One of our core values is “Growth Mindset,” and Iterable is a company where everyone can growProficiency in a high level programming language, such as Python or GoFamiliarity with policy management tools such as OPA or KyvernoExperience with Panther SIEMScala or JVM ecosystem experienceHands on work standing up Jupyter notebook instances, using Jupyter operationallyStrong working knowledge of Kubernetes and ecosystem tools such as helm, ArgoCDSolid understanding of cloud security vulnerabilities defense techniques and security best practices, including AWS security practices and present-day threatsFamiliarity with common observability tools such as Datadog, Prometheus/GrafanaProficiency with TerraformExperience with AWS EKS5+ years hands‑on-keyboard in Cloud Security, SRE, DevOps, DevSecOps, or Infra EngineeringProduction experience with AWS services, particularly AWS Organizations, AWS Identity (SSO), Identity and Access Management (IAM), Service Control Policies (SCPs), Virtual Private Clouds, Elastic Load Balancers, AWS CloudTrail, and Security GroupsSRE ExperienceExperience developing custom actions or workflows in Github or Gitlab
#J-18808-Ljbffr