Bachelor's degree or equivalent practical experience.
5 years of experience in security engineering, in areas related to security protocols, attack analysis, mitigation strategies, secure network design, OS hardening, or web application security.
5 years of experience with security assessments or security design reviews or threat modeling.
5 years of coding experience in one or more general purpose languages.
1 year of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.
Preferred qualifications:
Experience with leading and conducting security reviews, penetration testing, vulnerability analysis, finding or fixing security issues, etc.
Experience and comfort with Cloud-native software and orchestration stacks, such as serverless architectures, Kubernetes, etc.
An understanding of threat modeling and risk-based security assessments.
Interest in both breaking (finding bugs, attacking systems, etc.) and building (engineering solutions, addressing root causes, etc.), and comfort finding the balance between those roles.
Comfort learning about and then working with a broad range of tech stacks, including Cloud-native architectures.