RemoteWLBRemote only
Back to all jobs
Mattermost logo
Remote role · staff-se

Staff Security Engineer (Remote)

Mattermost

Security EngineeringIncident ResponseCloud SecurityIAMLinux
Role brief

Description

Mattermost is seeking a result-driven and analytical Senior Security Engineer to help monitor, build, and maintain our company and SaaS security infrastructure along with processes across the company. As part of our Security team you will work closely with a globally distributed team to ensure the safety of our infrastructure and services.

You will be responsible for the implementation of additional security tooling, hardening, and/or processes across the company; coordinating and collaborating with relevant stakeholders, gathering requirements, and leading implementation.

Mattermost is seeking a result-driven and analytical Senior Security Engineer to help monitor, build, and maintain our company and SaaS security infrastructure along with processes across the company. As part of our Security team you will work closely with a globally distributed team to ensure the safety of our infrastructure and services.

You will be responsible for the implementation of additional security tooling, hardening, and/or processes across the company; coordinating and collaborating with relevant stakeholders, gathering requirements, and leading implementation.

Responsibilities

  • Lead security projects to enhance security posture of infrastructure and company
  • Detect, respond to, and remediate security incidents
  • Development, review, and enforcement of company-wide security policies and processes
  • Ownership of company-wide IAM solution
  • Setup and maintenance of monitoring infrastructure
  • Setup and maintenance of incident response and forensic toolkit

  • Required Background/Skills

  • Bachelor's degree in Computer Science or related fields, or significant professional security experience
  • 3+ years of demonstrated experience in security engineering and incident response
  • Experience with security monitoring systems
  • Experience with security controls for cloud environments such as AWS, GCP and/or Azure
  • Experience with identity and access management
  • In-depth knowledge of Linux systems
  • Experience with Kubernetes and Docker
  • Experience with infrastructure automation and software delivery
  • Excellent written and verbal communication skills
  • Demonstrable teamwork skills and resourcefulness


  • Preferred Background/Skills

  • Experience with certification processes such as SOC2, ISO 27000 series
  • Experience in one or more programming languages, ideally Go or Python
  • Certifications in the domain of penetration testing, incident response or computer forensics (e.g. OSCP, GCIH, GCFA, etc.)
  • Experience working in open source communities