At DigitalOcean, we're not just simplifying cloud computing - we're revolutionizing it. We serve the developer community & the businesses they build with a relentless pursuit of simplicity. With our customers at the heart of what we do - & powered by a diverse culture that values boldness, speed, simplicity, ownership, & a growth mindset - we are committed to building truly useful products. Come swim with us!
Position Overview:
We are seeking an inspired & motivated technical contributor to join the DigitalOcean Security Team as an Infrastructure Security Engineer. You will report to the Security Engineering Manager for the APAC region & will be a key member of DigitalOceans security team.
In this role, you will play an essential part in enhancing DigitalOcean's security posture. This includes collaborating with various Engineering & Security teams to:
- Design & implement infrastructure security solutions at scale
- Identify & mitigate security issues, vulnerabilities, & misconfigurations for both internal users & customers
Your efforts will provide security instrumentation & establish secure architectures within DigitalOceans environments, both corporate & customer-facing.
What Youll Do:
- Establishing an understanding of DigitalOceans production & corporate environments, from applications to infrastructure, keeping up-to-date with material changes & future directions
- Partnering closely with the other technical teams within the Security Organization & across our engineering & other functions to harden accounts, platforms, & service structures to combat intrusions, hijackings, & potential compromises
- Developing early warning systems to detect, respond, & mitigate risks to the business as well as the customer environment
- Develop, maintain, & monitor the adoption of sound Cloud security practices
- Ownership of vulnerability management & patching policies of Virtual machines, Containers & Kubernetes infrastructure
- Identify & help mitigate security issues & misconfigurations related to Cloud services, Virtual machines, Containers & Kubernetes infrastructure
- Ownership & management of preventative security measures & services such as WAF, SIEM & similar security solutions.
- Consistently improving security as the company scales, driving continuous improvement through data collection & correlation, being mindful that security should be an efficiency enabler for the business, not a detractor
What Well Expect From You:
- 5+ years of experience automating security tooling, alerting, & remediation workflows, especially security event enrichment, reduction, & correlation
- Vulnerability Management experience, focused on prioritizing known vulnerabilities for remediation at scale & classifying previously unknown vulnerabilities
- Strong understanding of Linux systems & common O/S hardening practices
- Hands-on experience with cloud service providers. Amazon Web Services (AWS) is a core requirement, while familiarity with Google Cloud Platform (GCP) is a strong advantage. Focus areas include security issues & misconfigurations across cloud services, virtual machines, containers, & Kubernetes infrastructure.
- Strong understanding of systems in a multi-tenant, cloud environment
- Clear written & verbal communication skills to include: technical writing, presenting, coaching, mentoring
- Bonus: Experience in one or more of the following areas:
- Endpoint Intrusion Detection, Response, & Remediation, open source or commercial
- Configuration as Code software & methods (eg, Chef, Salt, Ansible)
- Message Bus Architectures & Data Processing Pipelines (eg, Kafka)
- Log management (e.g., ELK, Splunk, BigQuery)
- Engineering & maintaining Identity & Access management systems (e.g., OpenLDAP, Okta, VPN or Zero Trust)
Why Youll Like Working for DigitalOcean:
-
We innovate with purpose. Youll be a part of a cutting-edge technology company with an upward trajectory, who are proud to simplify cloud & AI so builders can spend more time creating software that changes the world. As a member of the team, you will be a Shark who thinks big, bold, & scrappy, like an owner with a bias for action & a powerful sense of responsibility for customers, products, employees, & decisions.
-
We prioritize career development. At DO, youll do the best work of your career. You will work with some of the smartest & most interesting people in the industry. We are a high-performance organization that will always challenge you to think big. Our organizational development team will provide you with resources to ensure you keep growing. We provide employees with reimbursement for relevant conferences, training, & education. All employees have access to LinkedIn Learning's 10,000+ courses to support their continued growth & development.
-
We care about your well-being. Regardless of your location, we will provide you with a competitive array of benefits to support you from our Employee Assistance Program to Local Employee Meetups to flexible time off policy, to name a few. While the philosophy around our benefits is the same worldwide, specific benefits may vary based on local regulations & preferences.
-
We reward our employees. The salary range for this position is based on market data, relevant years of experience, & skills. You may qualify for a bonus in addition to base salary; bonus amounts are determined based on company & individual performance. We also provide equity compensation to eligible employees, including equity grants upon hire & the option to participate in our Employee Stock Purchase Program.
-
We value diversity & inclusion. We are an equal-opportunity employer, & recognize that diversity of thought & background builds stronger teams & products to serve our customers. We approach diversity & inclusion seriously & thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.
*This job is located in Hyderabad, India
#LI-Hybrid
|