Stubhub - New York, NY

posted 22 days ago

Full-time - Senior
New York, NY
Administrative and Support Services

About the position

The Senior Security Software Engineer - Cloud & Infra Security at StubHub is responsible for designing and developing advanced security technologies and features that enhance the safety and convenience of the live event ticketing experience. This role involves a strong focus on cloud security architecture, network security, and infrastructure automation, while also requiring a balance of technical expertise and commercial judgment. The engineer will play a key role in shaping the team's strategy and will be expected to mentor and lead team members, contributing to a collaborative and inclusive work environment.

Responsibilities

  • Develop secure Cloud Account Architectures, focusing primarily on AWS.
  • Design and implement network security strategies using security groups, NACLS, routing domains, and multi-tiered subnet architectures.
  • Manage critical security logging and monitoring infrastructure for cloud-native and third-party data sources.
  • Operate and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP).
  • Deploy configurations and infrastructure using Infrastructure as Code (IaC) frameworks.
  • Develop and implement governance strategies for infrastructure deployment that integrate security best practices.
  • Architect and implement workload identity services in a multi-cloud environment.
  • Architect and maintain PKI and secrets management platforms.
  • Write and maintain production-quality APIs to automate security processes.

Requirements

  • Expert level experience in AWS cloud account architecture.
  • Expert level knowledge in Network Security, including AWS networking primitives.
  • Expert level proficiency in Identity & Access Management (IAM) Security.
  • Expert level communication skills and ability to work effectively across teams.
  • Intermediate level experience deploying and maintaining configurations using Terraform.
  • Intermediate level experience with modern CSPM and CWPP tools.
  • Intermediate level experience with Secrets Management Platforms.
  • Intermediate level experience in building and implementing IaC governance strategies.
  • Intermediate level proficiency in Python or Go, and Bash scripting.
  • Intermediate level experience in container & operating system hardening.

Nice-to-haves

  • Intermediate level experience in architecting & implementing internal PKI & Secrets Management services.
  • Intermediate level experience in architecting & managing Spire (Spiffe) and Service Mesh services.
  • Intermediate level knowledge of Kubernetes (K8s) Security foundations.
  • Intermediate level proficiency in DDoS mitigation techniques using AWS Shield.
  • Intermediate level proficiency in Azure.

Benefits

  • Accelerated Growth Environment
  • Top Tier Compensation Package
  • Flexible Time Off
  • Comprehensive Benefits Package
  • Team-Building Events
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service