
Staff Security Engineer
Company Overview
ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me’s technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to “No Identity Left Behind” to enable all people to have a secure digital identity. To learn more, visit https://network.id.me/.
Role Overview
ID.me is looking for a Staff Security Engineer to add to our growing security team. If you love innovation, here's your chance to make a career of it by advancing the digital identity ecosystem.
We are seeking a talented Staff Security Engineer who enjoys the challenges of combining software and systems engineering to design, build, run, and automate distributed, fault-tolerant security solutions at scale. As a Staff Security Engineer, you will lead the design and development of scalable security solutions that realize/execute the strategies across the entire Security Program (i.e., SecOPs, Data Protection, CloudFlare, Privileged Access Management, IAM, etc.).
The Staff Security Engineer will also have the opportunity to provide thought leadership, research, and innovation on a broad scale.
This is a fully onsite position in one of our hub locations (Mountain View CA or McLean VA).
Responsibilities
- Implement, manage, and improve CloudFlare capabilities, (WAF, VPN, DNS, etc.), via Terraform, Github, and Github Actions.
- Implement security solutions in GCP via Terraform and Python and JavaScript coding.
- Implement CloudFlare Workers via requisite coding languages.
- Integrate solutions with Okta, and support triage and troubleshooting.
- Build integrations with Google SecOPs SIEM, and define queries as needed.
- Build integrations with ConductorOne IGA solution, including workflow and policy implementation within the tool.
- Improve GCP and AWS security posture, via hands-on skills in one or more of these CSPs, including hands-on skills scripting with one or more of the associated API layers.
- Leverage deep Jira knowledge and experience to define and deliver Sprints with Scrum Master and Product Owner, as well as ticket handling within SLAs.
- Continuously improve Change Management processes, guidelines, and documentation across security tools/services to ensure reliability, efficiency (e.g., increased automation via Open Policy Agents), and compliance.
- Measure and report on reliability, efficiency, and compliance of security tool/service operations.
- Ensure security controls are optimized for ease of use by both security operators and end users.
- Dig deep into complex problems either lacking a clear approach or with a high degree of execution risk and find an appropriate path forward.
- Maintain many of the essential cross-team and cross-functional relationships necessary for the team's success.
- Define standards and best practices for the team and the security organization.
Basic Qualifications
- 7+ years of experience in security engineering, systems engineering, software engineering, or SRE roles.
- Current hands on experience with GCP or AWS
- 2+ years of experience dedicated to Cloud Site Reliability Engineering and related roles.
- 5+ years of current and hands on experience in scripting or software development (i.e. Python, Ruby, Go).
- 5+ years of current and hands-on experience with infrastructure-as-code and CI/CD (e.g. Terraform, Github, etc.).
Preferred Qualifications
The qualifications below are preferred. We encourage candidates to apply if they satisfy some, but not all of the qualifications.
- Hands-on CloudFlare skills and experience.Strong hands-on Jira skills and experience.Strong hands-on Okta skills and experience.
- Experience in Linux/Unix administration and solid networking knowledge.
- Possess a breadth of engineering skills with an interest in service reliability, automation, monitoring, and capacity planning.
- Strong written and verbal communication skills, especially in technical contexts.
- GCP or AWS Professional level certification
Ideal candidate will thrive in the following culture:
- Must have a sense of urgency, delivering solutions with velocity and high quality.
- Must agree that 90% completion equates to 5% completion, with focus of defining goal-posts, and ruthlessly “clearing their plate” and completing the job at hand.
- Ability to move strategic work efforts forward while fielding adhoc requests.
- Must be a team player with a strong, self-managing work ethic.
- Must be able to learn quickly, representing <1.5% delay relative to an expert in an area you require learning and support.
ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.
Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.
ID.me participates in E-Verify.
Create a Job Alert
Interested in building your career at ID.me? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field