Senior Security Engineer

F5 F5 · Enterprise · Warsaw, Poland

This role focuses on enhancing the information security program by developing and implementing strategic processes and technical solutions. It involves identifying organizational risks, leveraging cloud services for security automation, performing technical security assessments, managing penetration testing, and building new security controls. The role also requires collaboration with other engineering teams and advising stakeholders on security best practices.

What you'd actually do

  1. Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations.
  2. Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities.
  3. Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats
  4. Perform technical security assessments against F5aaS product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling.
  5. Review and test changes to services, applications, and networks for potential security impacts.

Skills

Required

  • Experience working with high-availability enterprise production environments
  • Ability to script in multiples languages (Go, Rust, Python, Ruby, etc.) and experience building scripts for process improvements and automation
  • Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure.
  • Technical knowledge and extensive hands-on experience with security and networking architecture, networking protocols, network security design, wireless security, intrusion prevention/detection, and firewall architecture.
  • Experience automating security testing and reporting outputs
  • Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Linux, Kubernetes, Docker Hashicorp Vault, Palo Alto, Cisco, Qualys).
  • Experience assessing and implementing technical security controls
  • Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git)
  • Strong written and verbal communication skills.
  • Experience with network and application vulnerability and penetration testing tools
  • B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience
  • 5 years of progressive responsibility in a security organization
  • 2-6 years of relevant security engineering or network security experience

Nice to have

  • Willingness to innovate and learn new technologies
  • Excellent interpersonal and relationship skills with a collaborative mindset
  • Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism.
  • Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate.

What the JD emphasized

  • security posture
  • security program
  • security impacts
  • security controls
  • security best practices
  • security engineering
  • network security