Job Closed

This listing is no longer active.

Red Hat logo
Red Hat

The leading provider of enterprise open source solutions.

Senior Product Security Engineer – Resilient Development

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 10,001+Since 1993H1B SponsorCompany SiteLinkedIn

Location

Czechia

Posted

60 days ago

Salary

0

Seniority

Senior

Bachelor Degree2 yrs expEnglishJenkinsKubernetesLinuxOpenShiftPythonGo

Job Description

Senior Product Security Engineer – Resilient Development

Red Hat

• Engage with engineering teams to promote security-aware development of Red Hat technologies/solutions. • Understand current and emerging threats impacting the enterprise product, service and supply chain space. • Analyze complex software systems and identify potential weaknesses in their architecture and dependency trees. • Plan and carry out threat modeling activities, and realistic threat simulations across products, services and their productization pipelines. • Consult with software developers, product and pipeline teams on improved security architecture. • Ensure that product roadmaps and new features mitigate risk, adhere to security policies, and provide customers with minimal security risk. • Contribute to customer facing security documentation, reference, and other data as used by the Common Vulnerabilities and Exposures (CVE) pages. • Promote Red Hat Product Security efforts within the community and the greater public. • Communicate effectively and efficiently with various internal stakeholders about security issues and vulnerabilities.

Job Requirements

  • Strong understanding of common security vulnerabilities, (e.g. OWASP Top Ten) including how to detect, demonstrate, mitigate and resolve them.
  • Good understanding of Linux security technologies and product security experience; for example: POSIX Permissions, ACL, SELinux; Seccomp, Linux namespaces and cgroups.
  • Linux administration related to security: secure boot, TPMs, trusted execution environment, Linux boot chain, virtualization, containers and hypervisor security.
  • Experience with one or more programming languages like Python, C/C++, and a willingness to learn new ones (preferably Go).
  • Knowledge of network access, identity, and access management like public key infrastructure, Oauth, OpenID, SAML, and SPML.
  • Ability to work with minimal supervision, in a fast-paced environment with a multicultural team distributed across multiple countries and time zones.
  • Solid communication and negotiation skills.
  • Excellent collaboration skills and dedication as a teammate.
  • Familiarity with CI/CD pipeline security (e.g., Tekton, Jenkins, GitHub Actions) and artifact signing is a plus.
  • Knowledge and experience with modern container orchestration systems: Kubernetes, Openshift; comfortable with container technologies is a plus.
  • Linux-specific and/or security-related certifications (e.g. RHCSA, RHCE, RHCA, CISSP, CISM, CSSLP, CISA etc) is a plus.
  • Experience or familiarity with AI-enabled products, services, or workflows is considered beneficial.

Benefits

  • Health insurance
  • Flexible work arrangements
  • Professional development opportunities

Related Categories

Related Job Pages

More Security Engineer Jobs

Information Security Engineer

UnitedHealth Group

UnitedHealth Group is a healthcare and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of two distinct and com

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. You’ll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. Primary Responsibilities: - Design, implement, and manage Palo Alto Networks firewall solutions to protect enterprise network environments - Configure and maintain firewall policies, threat prevention profiles, and security controls in alignment with organizational standards and compliance requirements - Support cloud network segmentation initiatives and policy enforcement - Manage and resolve tickets related to firewall rule changes, access issues, and security events - Identify, investigate, and remediate firewall rules that fail internal or external compliance audits - Communicate clearly and effectively during high‑pressure situations to identify root causes, assess impact, and drive timely resolution - Perform detailed analysis of firewall logs, traffic flows, and alerts to support investigations and operational diagnostics - Leverage AI‑assisted tools such as Microsoft Copilot to increase development speed, accuracy, and overall productivity - Contribute to documentation, knowledge sharing, and operational runbooks to support consistent and repeatable security operations - Follow established change management, incident handling, and security processes while continuously enhancing technical expertise in network security technologies - Leverage enterprise-approved AI tools to streamline workflows, automate tasks, and drive continuous improvement You’ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in. Required Qualifications: - High School Diploma/GED (or higher) - 3+ years of experience in managing firewalls in cloud environments (AWS, Azure); experience with on‑prem firewalls a plus - 3+ years of experience with tooling such as ticketing systems, cloud consoles, and firewall management suites - 3+ years of experience analyzing complex logs and communicating technical findings clearly - 1+ years of experience using Splunk and analyzing Splunk logs - Ability to assist with after-hours support and respond to high severity security incidents when required Preferred Qualifications: - Bachelor’s degree in Cybersecurity, Information Technology, or equivalent - Certifications such as AWS Security, Azure Security Engineer Associate, Network+ or Security+, or equivalent are a plus - Strong organizational skills, attention to detail, and a commitment to thorough documentation - Experience with Zero Trust architectures and cloud first security platforms - Strong understanding of network security principles, TCP/IP, VPNs, routing, and segmentation - Experience with automation, scripting, and API based integrations *All Telecommuters will be required to adhere to UnitedHealth Group’s Telecommuter Policy. Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you’ll find a far-reaching choice of benefits and incentives. The salary for this role will range from $91,700 to $163,700 annually based on full-time employment. We comply with all minimum wage laws as applicable. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants. At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone–of every race, gender, sexuality, age, location, and income–deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups, and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes — an enterprise priority reflected in our mission. UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment. #RPO #GREEN

United States
$91.7K - $163K / year
Job Closed
Bitwarden logo

Senior Security Engineer

Bitwarden

Open source password management solutions for individuals, teams, and business organizations.

Full TimeRemoteTeam 51-200Since 2016H1B No Sponsor

Bitwarden empowers enterprises, developers, and individuals to securely store and share sensitive data. With a transparent, open-source approach to password management, secrets management, and passwordless and passkey innovations, Bitwarden makes it easy for users to extend robust security practices across all online activities. Founded in 2016 with headquarters in Santa Barbara, California, Bitwarden is supported by a passionate global community of security experts and enthusiasts. As a Senior Security Engineer at Bitwarden, you will be responsible for conducting purple team testing, including threat research and analysis, penetration testing, code audits, security validation testing, and cryptography reviews against Bitwarden’s products and services. In addition, you will be part of the security findings response team, and assist with external inquiry and report response, investigation, and triage. Additional responsibilities include assisting with remediation of any security issues that are identified during internal or external testing and assessments while working alongside our engineering and security operations team members to ensure Bitwarden platform and services are secure and resilient. We’re looking for someone who is a self-starter with highly technical skills overlapping offensive and defensive capabilities. The right candidate will have experience using security and vulnerability management tools and solutions to detect and prevent cyber-related vulnerabilities in the company's services and networks as well as to any mobile and Internet-facing applications, systems and environments. This is an all-remote team and we are looking for someone located in the U.S. We do not offer visa sponsorship at this time. RESPONSIBILITIES - Research emerging threats across the surface web, dark web, and deep web - Build threat models, conduct threat hunts, and plan and execute purple team engagements - Coordinate internal red team testing operations that emulate a threat actor - Collaborate with application development teams, platform engineers, and Security Operations Center (SOC) engineers to improve our offensive and defensive security controls - Contribute to vulnerability testing and analysis as well as incident response and analysis - Include testing for web, mobile, CLI, and desktop application security issues across our multi-product portfolio, including Bitwarden Password Manager, Secrets Manager, and Passwordless.dev, our APIs, serverless functions, and database - Participate in code reviews, learning and spreading technical knowledge about security posture - Contribute to resolutions for security-related issues - Coordinate technical validation and leadership review of purple team reports detailing testing results and potential areas of improvement - Conduct internal penetration tests on systems and networks to determine realistic threat vectors - Manage software tools for code scanning, vulnerability identification, and finding reporting - Effectively communicate findings, attack paths, and recommendations to stakeholders - Train others on the adversary simulation tactics and procedures used - Stay informed on current security trends, publications, and advisories - Assist to provide guidance and subject matter expertise as it pertains to all areas of security and technical operations, including analysis of our cloud environments, security testing and documentation, as well as investigations, software research, new technology, services and tools research, and vendor security analysis WHAT YOU BRING TO BITWARDEN - Experience with Penetration Testing Tools, such as Burp Suite, NMAP, Nessus, Metasploit, Kali Linux, SQLMap, Owasp ZAP, and manual testing tools - In-depth knowledge of leading vulnerability management tools and strategies - In-depth understanding and usage of application security testing technologies is a plus - Understanding of authentication concepts, including OpenIDConnect, SAML, OAuth, and SSO flows - Strong working knowledge of vulnerability management tools, data and network security technologies - Collaborative and adaptable mindset - Openness and authenticity combined with excellent communication skills - Excitement and enthusiasm for open source and for better internet security - Excellent problem-solving skills – you might not know all the answers, but you know how to find and communicate the solution - Ability to maintain discretion, handle sensitive information, and maintain security best-practices - Security purple team technocrat at heart, staying current with trends and new technologies NICE-TO-HAVES - User of Bitwarden - Experience with C# and TypeScript, the core two languages used to build the Bitwarden platform - Experience in the SecOps world and ability to apply security best practices across the organization - Experience working in cloud-focused environments WHAT TO EXPECT IN THE INTERVIEW PROCESS Selected candidates will be invited to schedule an introduction call and potentially progress through the following stages: - Interview with Principal Architect - Interview with lead engineers - Interview with CTO - Reference calls Successful candidates will be asked to authorize and complete a background check. We do not discriminate based on having a criminal record, and we encourage candidates to be open with us about anything that may come up on the report, so we can discuss in advance and determine impact on the role and company. A FEW REASONS TO WORK WITH US - Our user community loves us and we love them. Come to work each day with a sense of purpose as we bring a more secure internet experience to everyone––from our friends and family to the world’s largest organizations. - Become an expert in a growing market. You’ll get immersed in the prominent technology markets of security and open source software. - Learn and grow professionally. Embrace the opportunity to build up your demand generation and product-led growth expertise in a fast-growing startup. - We are dedicated to building a diverse and talented team. Work remotely with motivated and supportive team members across the world. In the United States, the starting base compensation range for this role is $140,000 - $180,000. Actual compensation may vary based on level, relevant experience, and skill set as assessed in the interview process, as well as market data by location. See our careers page for a list of benefits. Please note that compensation outside the U.S. will differ based on the market.

United States
$140K - $180K / year
Empower logo

Senior Analyst, Data Security, SAP

Empower

We are an equal opportunity employer with a commitment to diversity. All individuals, regardless of personal characteristics, are encouraged to apply. All qualified applicants will receive consideration for employment without regard to age, race, color, national origin, ancestry, sex, sexual orientation, gender, gender identity, gender expression, marital status, pregnancy, religion, physical or mental disability, military or veteran status, genetic information, or any other status protected by applicable state or local law.

Full TimeRemoteTeam 10,001+H1B Sponsor

• manage user and role administration and ensure only proper access to resources in SAP environment • perform regular Access/Role related audit of SAP the environment to keep it compliant • build resiliency by building effective automation and monitoring • implement the Security design for users, support teams and system users • administer and support the SAP security functional area for the existing SAP environment and new implementations by performing user and role administration activities • lead security-related projects, analyze security and solve day-to-day problems, collaborate with various departments • define and configure Segregation of Duties (SODs) and risk library • work on SAP security projects and day-to-day access requests, incidents and work orders effectively • advise on SAP Security policy and procedures • document SAP security-related processes, procedures, standards and guidelines • assist with information security strategy and roadmap execution • participate in the rotational after-hours on-call support

India
Job Closed
Lindus Health logo

Psychiatrist- Sub Investigator

Lindus Health

We're a next gen CRO running end-to-end clinical trials for health and biotech pioneers.

Full TimeRemoteTeam 11-50H1B No Sponsor

🍊Our mission We're powering biology's century with radically faster, more reliable clinical trials. Every new treatment needs clinical trials to prove safety and efficacy, but today's infrastructure is stuck in the past- driving up cost, causing delays and ultimately meaning new treatments don’t get to patients. We're fundamentally changing that- not just being a "better CRO," but transforming how people think about developing new treatments, so patients can access breakthrough treatments faster. Our impact speaks for itself: Since March 2021, we've powered 100+ clinical trials involving tens of thousands of patients. We recently raised a $55M Series B from Balderton Capital, alongside backing from Creandum, Firstminute, Seedcamp, and Visionaries. 🍊What's it like to work here? When you join us, you’ll experience: - High-Impact, Mission-Driven Work: Lindus Health is disrupting an outdated industry, giving you the chance to directly improve patients’ lives and see tangible results from your work. - Fast-Paced Growth & Ownership: We recognise hard work and outcomes over anything else. You’ll take on real responsibility, work across different areas, and actively shape the company’s success. - Collaborative, No-Ego Culture: Work with smart, driven people in a supportive and informal environment. At Lindus we break down silos, fun is a core value, and creativity is encouraged. Ready to power biology's century? We'd love to hear from you. 🍊About the role We're looking for a dynamic Sub-Investigator to support a live US clinical trial while serving as an active advocate and advisor for Lindus Health. This is an immediate need for an active study, combining hands-on protocol execution with strategic advisory contributions to help position Lindus Health competitively in the US market. Unlike traditional Sub-Investigator positions, this role requires someone who can articulate and champion Lindus Health's innovative approach to clinical trials, contribute meaningfully to bid proposals and client presentations and serve as a credible voice for our capabilities in the market. 🍊About you We’d like to hear from you if… - You are a board-certified psychiatrist or physician with substantial psychiatry clinical trial experience. You must hold a current, unrestricted medical license (MD, DO, or equivalent) in at least one of the following states: Ohio, Georgia, Michigan, New Jersey, Washington, Massachusetts, Indiana, Maryland, Missouri, Wisconsin, or Colorado. - You're GCP-certified with demonstrated clinical research experience and understanding of ICH-GCP guidelines and FDA regulations - You're a dynamic communicator who can credibly champion Lindus Health's approach in client-facing situations - You're responsive, engaged, and bring strategic insights beyond basic protocol execution - You're business-minded with genuine enthusiasm for clinical research innovation You belong here! If your experience and interests match with some of the above, we want you to apply. 🍊What you’ll focus on - Champion Lindus Health: Actively participate in bid proposals, represent our values in client-facing situations, and help us win business with your clinical credibility and advocacy - Provide medical oversight: Conduct clinical research activities in accordance with GCP guidelines, supervise investigational product testing, and ensure informed consent and protocol compliance - Ensure participant safety: Monitor and promptly report adverse events, protocol deviations, and any safety concerns throughout all phases of the trial - Manage study documentation: Complete case report forms accurately and timely through our Citrus platform, maintain comprehensive study records, and ensure proper investigational product handling - Collaborate across teams: Work closely with Clinical Operations, Product, and Commercial teams while responding promptly to all information requests and maintaining transparent communication 🍊 What we offer Make an impact across all areas of our business and fix one of the world’s most broken industries. - Work on high-impact clinical trials - Collaborate with industry-leading medical professionals and sponsor teams - Enjoy flexible scheduling and project variety - Competitive contractor rates - Leverage our established infrastructure and resources - Work with a stable, well-funded organisation - Contribute your expertise to meaningful research - Receive comprehensive support from our medical team - The flexibility of working as a contractor 🍊Our hiring process - Initial conversation with Cam, our Medical Talent Partner (20 minutes) - Technical interview with Luke, our VP of Medical (30 minutes) We will only contact you from lindushealth.com email addresses. Please check the spelling of emails which appear to come from Lindus Health carefully before responding. We will never ask for your financial information over email. We are an equal opportunity employer committed to building a diverse and inclusive workforce. We evaluate all candidates based solely on their skills, experience, and qualifications relevant to the role. We do not discriminate on the basis of race, ethnicity, religion, gender, gender identity, sexual orientation, age, disability, veteran status, or any other legally protected status

United States