Monolithic Power Systems - Kirkland, WA

posted 2 months ago

Full-time
Kirkland, WA
Computer and Electronic Product Manufacturing

About the position

Monolithic Power Systems, Inc. (MPS) is seeking an IT Security Analyst/DevSecOps Engineer to join our dynamic and fast-growing global IT organization. This position can be based in either San Jose, California, or Kirkland, Washington, and will support our worldwide operations, which include major sites in the US, EU, and APAC. The successful candidate will play a crucial role in protecting our organization's computer networks and systems from cyber threats and attacks. This role is not just about responding to incidents; it involves integrating security practices throughout our software development lifecycle, ensuring that security is a fundamental aspect of our development processes. In this position, you will monitor computer networks for security issues, investigate breaches or violations, and perform penetration testing and vulnerability assessments to identify security weaknesses. You will be responsible for developing security standards and best practices for the organization, researching the latest IT security trends and emerging threats, and preparing reports that document security issues and mitigation efforts. Collaboration is key, as you will work closely with IT and development teams to implement security measures and upgrades, perform log analysis, and develop automated alert triage systems. Additionally, you will conduct security awareness training for employees, assist in incident response and forensic analysis when security incidents occur, and integrate security practices into the CI/CD pipeline. Your role will also involve implementing and managing automated security testing tools in the development process, ensuring compliance with security standards and regulations throughout the development lifecycle. This position is ideal for someone who is detail-oriented, proactive, and able to stay calm under pressure, with a passion for cybersecurity and a commitment to protecting sensitive data and systems.

Responsibilities

  • Monitor computer networks for security issues and investigate any breaches or violations
  • Perform penetration testing and vulnerability assessments to identify security weaknesses
  • Develop security standards and best practices for the organization
  • Research the latest IT security trends and emerging threats
  • Prepare reports documenting security issues and mitigation efforts
  • Collaborate with IT and development teams to implement security measures and upgrades
  • Perform log analysis and correlate security events
  • Develop and implement automated alert triage systems
  • Conduct security awareness training for employees
  • Assist in incident response and forensic analysis when security incidents occur
  • Integrate security practices into the CI/CD pipeline and software development lifecycle
  • Implement and manage automated security testing tools in the development process
  • Work with development teams to address security vulnerabilities early in the development cycle
  • Ensure compliance with security standards and regulations throughout the development process

Requirements

  • Bachelor's degree in computer science, IT, cybersecurity, or related field
  • 3+ years of experience in information security or related IT role
  • 2+ years of experience with DevOps or DevSecOps practices
  • Knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts
  • Familiarity with ISO 27001/27002, NIST CSF, CIS Controls and other security frameworks
  • Experience with vulnerability assessment tools and techniques
  • Experience working with RESTful APIs and JSON/XML data formats
  • Proficient in implementing and managing identity federation protocols including OIDC and SAML
  • Strong analytical and problem-solving skills
  • Experience configuring and troubleshooting Single Sign-On (SSO) solutions
  • Excellent written and verbal communication abilities
  • Proficiency in scripting languages (e.g., Python, Bash, PowerShell) and version control systems (e.g., Git)
  • Experience with containerization technologies (e.g., Docker, Kubernetes)
  • Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI, Travis CI)
  • Knowledge of infrastructure-as-code and configuration management tools (e.g., Terraform, Ansible)
  • Relevant certifications like Security+, CEH, CISSP, or CISM preferred

Nice-to-haves

  • Relevant certifications like Security+, CEH, CISSP, or CISM preferred
Job Description Matching

Match and compare your resume to any job description

Start Matching
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service