Bandwidth, a prior “Best of EC” award winner, is a global software company that helps enterprises deliver exceptional experiences through voice, messaging, and emergency services. Reaching 65+ countries and over 90 percent of the global economy, we're the only provider offering an owned communications cloud that delivers advanced automation, AI integrations, global reach, and premium human support. Bandwidth is trusted for mission‑critical communications by the Global 2000, hyperscalers, and SaaS builders!
What We Are Looking For:
The mission of the Security Operations team is to build, deploy, and operate information security systems, infrastructure, and tools. The Senior Security Engineer will act as a leader in monitoring, administration, ticketing and support, mentoring other security team members in operations functions, and assisting management in growing and maturing security detection, monitoring and response. The role works closely with other Information Security teams and partners with the IT, development, and architecture organizations.
What You'll Do:
- Provide technical and operational leadership for aspects of security operations, security architecture and security tools administration.
- Serve as an escalation point in incident response scenarios; acting as the incident lead and conducting investigations and forensics as needed.
- Actively engage in Incident Response activities, including triage, escalation, post‑mortem and lessons learned, and remediation tracking.
- Demonstrate strong knowledge of security tools including SIEM, SOAR, vulnerability scanners, CSPM, and EDR.
- Employ advanced understanding of securing cloud‑based (AWS, GCP) and on‑prem workloads, including containerized environments.
- Identify gaps in current monitoring or operational processes and recommend improvements to enhance efficiency through security best practices.
- Provide security consulting on medium to large scale projects for internal clients to ensure conformity with corporate information, security policy and standards.
- Drive vulnerability management and remediation efforts—prioritizing issues, implementing mitigations, and designing preventive controls.
- Lead process improvement and control implementation projects in coordination with other Enterprise teams.
- Engage with neighboring technology teams to promote compliance with security policies and standards.
- Participate in security on‑call rotation, supporting off‑hours incidents and production systems.
- Maintain relationships with business partners to understand business processes and the impact of security controls.
- Train and mentor team members for security operations, support, and administration tasks.
What You Need:
Education
- Degree in an IT or Information Security discipline or equivalent education/experience focused on IT Security and Technology Operations.
- One or more of the following certifications: GIAC Information Security Professional (GISP), Certified Information Systems Security Professional (CISSP), AWS Certified Security Specialty.
Experience
- 5+ years of specific Security Operations experience.
- 5+ years of SIEM, SOAR and vulnerability management experience, including integration of endpoints.
- 3+ years of incident response experience across various environments (on‑prem, cloud, endpoints, servers, containers).
Knowledge
- Familiarity with Zero‑Trust Network Access, SSO, EDR, and SIEM.
- Experience in multi‑cloud organizations utilizing CSPM and cloud‑native security tools with a shift‑left DevSecOps mindset.
- Experience working with a third‑party Managed Security Service Provider (MSSP).
Skills
- Proficient in Windows and Linux operating systems.
- Strong analytical skills to understand complex technical environments.
- Proficient in automation and scripting languages (Python, Bash, etc.).
- Ability to translate technical risk into non‑technical terms for stakeholders.
- Team player with strong communication skills.
Bonus Points
- Hands‑on experience with Wiz and CrowdStrike (cloud security and container security).
- Experience with AWS/cloud security tools such as Guard Duty, Amazon Inspector, AWS Shield, Wiz, Lacework.
- Strong knowledge of SIEM tools and logging (Splunk, Sumo Logic, Data Dog, Qualys).
- Experience with endpoint detection & response tools (CrowdStrike, FireEye).
- Foundational knowledge of AI—LLMs, MCP and their security impacts.
The Whole Person Promise
- 100% company‑paid Medical, Vision & Dental coverage for you and your family.
- All new hires receive four weeks of PTO, with embargoed leave and additional PTO earned through volunteer hours and challenges.
- “Mahalo moments” program granting time off for life’s milestones.
- 90‑minute workout lunch and access to a nutritionist.
Are you excited about the position and its responsibilities, but not sure if you’re 100% qualified? If you feel you can help us crush the mission, we encourage you to apply! You won’t want to miss the opportunity to be a part of the BAND.
#J-18808-Ljbffr