Senior Security Cloud Engineer III
Job Description
OppFi is a leading financial technology platform that powers banks to help the everyday consumer gain access to credit. Through our unwavering commitment to customer service, OppFi helps consumers who are turned away by traditional providers build a better financial path. OppFi is an Inc. 5000 company for five straight years, a Deloitte's Technology Fast 500™, and the seventh fastest-growing Chicagoland company by Crain's Chicago Business. The company was also named on Forbes America 2021 list of America's Best Startup Employers and Built In's 2021 Best Places to Work in Chicago. We welcome individuals to join us in facilitating financial inclusion and credit access for everyday consumers to live the life they deserve.
OppFi is a team of caring, innovative, and inclusive individuals with diverse perspectives and backgrounds. Our employees approach every new challenge with an unparalleled ability to see what could be rather than settle for what is. We want people to be excited to come to work every day and know you are a part of making a difference. Our company values guide us and create an open and collaborative culture where we hold the door, say what we see, do what we say, and dare to win together!
What you get to do:Â
- Research and proactively seek out ways to improve the company’s cloud security posture and then deploy or work with the appropriate teams to help them implement these improvements.
- Help develop and refine DevOps/SecOps processes for cloud deployments.
- Develop and deploy Container Security Automation, Cloud Security Automation.
- Perform security assessments, working closely with DevOps and Development teams on identifying security and privacy issues in AWSÂ and finding solutions to provide required functionality securely.
- Work closely with compliance, security and legal teams to maintain security requirements in the Cloud for regulatory/framework bodies such as SOC2, SOX, CIS Benchmarks and NIST standards.
- Work to implement and improve next-generation security controls.
- Monitor AWS or consolidated security dashboards (Guard Duty, Security Hub, SecurityCenter, SIEM, VPC Flow Logs, etc) and respond appropriately.
- Create and manage security metric dashboards for use within the team and provide metrics/reporting.
- Embrace changing requirements and be willing/able to refocus priorities rapidly.
- Willing to constantly learn and apply what you’ve learned to keep up with rapidly-changing tools and technologies and to ask for help when needed.
- Work with a variety of technical and non-technical teams .
- Work independently with minimal supervision.
What you will bring to the team:
- 12 years of Operations/Cloud experience.
- 8+ years of Cloud-specific security experience.
- Demonstrable production experience using AWSÂ in a security capacity.
- Experience with Linux and Windows operating systems to include recommended security and hardening procedures.
- Understanding of source control (i.e. Git) and CI/CD deployment pipelines to include recommended security and hardening procedures.
- Strong understanding of core security concepts and AWS best practices including the hands-on ability to apply these to improve security.
- Understanding of containers and container-orchestration frameworks (like Kubernetes or EKS,ECS) including recommended security and hardening procedures.
- Familiarity with RDBMS and No-SQL database systems including recommended security and hardening procedures.
- Familiarity with security tools like SIEMs, CSP-specific security tools (SecurityHub or Security Center), compliance tools, DLP, SIEM, CSPM, Nessus, Tenable etc.
- Proficient in a scripting language and tools (Bash, Python, Ruby, Perl, PowerShell, Terraform, Cloudformation AWS/Azure CLI, etc.) and the ability to use such languages to extract audit and forensic data from logs and other data sources.
- Experience tracing down anomalous network/application behavior through the use of logs and basic forensics.
- Experience writing cloud security alerts
- Experience responding to security incidents
- Hands on experience remediating cloud vulnerabilities
- Security certification: (i.e. CISSP, GIAC, CEH, Security+, AWS Certified Security Specialty, Azure Security Engineer)
Reports to: Manager, Security Operations
Job Level: Senior Security Engineer IÂ
The minimum salary based on qualifications and experience is $130,000. The total compensation package includes eligibility for performance-based bonuses as well as a 1-time equity grant based on level.
The actual offer, reflecting the total compensation package and benefits, will be at the company’s sole discretion, and determined by a myriad of factors including, but not limited to, years of experience, depth of experience, and other relevant business considerations.
Define your career at OppFi
OppFi is committed to providing an exceptional employee experience from Day 1. Key new hire programs include Day 1 Orientation, training with your manager and team, lunches with our CEO and President, and an educational summit featuring presentations by our senior leaders. Throughout and beyond your first-year journey, you'll have access to a variety of events focused on culture, inclusion, connection, and education. We want you to feel welcomed, informed, and valued for who you are and what you bring to our company.Â
- Day 1 - Month 3: Define Your Mission
You’ll understand our company mission, values, and vision, and how your position at OppFi plays a part in that. With the help of your manager, you’ll set mission-aligned goals to make an impact in your role.
- Months 3 - 6: Define Your Belonging
You’ll understand OppFi’s culture and know how to engage with and influence that culture.
- Months 6 - 12: Define Your Journey
You’ll feel confident in your ability to execute in your role and empowered to take next steps in developing your career at OppFi.
Compensation and Benefits
OppFi offers a flexible remote environment, 401(k) matching program, and flexible paid vacation. Other benefits include medical benefits, dental and vision coverage, and tuition reimbursement. To support your wellness & growth, we provide monthly meditation and yoga classes and access to all LinkedIn Learning courses. We also offer Fringe, which is a lifestyle benefits platform that lets you decide how you want to spend your rewards from dozens of vendors like Uber, Doordash and Urban Sitter. Dress code is casual.Â
EEOC Statement:Â
OppFi is an equal opportunity employer and does not discriminate based on any actual or perceived legally recognized protected bases under local, state, or federal law or regulations. Our goal as a company is to build an equitable workplace that actively works to dismantle systems of oppression in our processes, procedures, and interactions. We aim to help our employees thrive where they work and beyond. Check out our Culture page here.
OppFi is committed to the full inclusion of all qualified individuals. As part of this commitment, OppFi will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact our People team at [email protected].Â
Pursuant to the requirements of the California Consumer Privacy Act, OppFi is providing the "OppFi California Employee Privacy Policy", which details the categories of personal information collected and your rights under the policy. If you are a California resident, please review the policy here: https://www.oppfi.com/careers/
Date Posted
11/11/2022
Views
10
Similar Jobs
Sr. Software Engineer - OEMS Team - Enfusion
Views in the last 30 days - 8
Enfusion is a pioneer in developing innovative cloud investment management software analytics and managed services They help fund managers streamline ...
View DetailsMachine Learning Engineer - Oak Street Health
Views in the last 30 days - 8
Oak Street Health is a rapidly growing company that is looking for a machine learning engineer to support their production modeling efforts The compan...
View DetailsPhysical Security Intelligence Specialist - Tempus
Views in the last 30 days - 12
The job posting is for a security manager position at Tempus a company that uses AI to provide realtime insights to physicians The responsibilities in...
View DetailsSenior Benefit Analyst - Lockton Companies
Views in the last 30 days - 6
The Lockton team is seeking a dynamic Senior Benefit Analyst for their Employee Benefits consulting group The analyst will assist in marketing and ser...
View DetailsSoftware Engineer 431407 - Experfy
Views in the last 30 days - 8
The job description is for a Software Engineer position that requires designing developing testing and deploying software systems and applications The...
View DetailsAccount Manager (Advertising Sales Team) - Chicago - CafeMedia
Views in the last 30 days - 6
This is an excellent opportunity to get broad experience in all aspects of digital media The position is based in Chicago IL and requires excellent co...
View Details