NBC - Englewood Cliffs, NJ

posted 11 days ago

Full-time - Senior
Remote - Englewood Cliffs, NJ
Broadcasting and Content Providers

About the position

The Staff Cyber Security Engineer will be a key member of the NBCU Security Architecture team, focusing on the security of emerging technologies, particularly AI. This role involves collaborating with various NBCUniversal businesses and the Cyber Security organization to ensure secure technology design and deployment, while also acting as a subject matter expert in security controls applicable to AI systems. The engineer will develop threat models and control strategies, communicate security programs, and ensure alignment with enterprise technology strategies.

Responsibilities

  • Partner with various NBCUniversal businesses and enterprise IT to ensure secure technology design and deployment.
  • Function as a security subject matter expert with broad knowledge across various domains.
  • Focus on security controls applicable to AI systems and other emerging technologies.
  • Develop threat models and control strategies integrated into the design and operation of new technology platforms.
  • Collaborate with the Cyber organization and business stakeholders to provide security guidance and mitigation requirements.
  • Communicate the importance of key Cyber programs and services to obtain support from business and technology teams.

Requirements

  • 8+ years of experience in architecting secure products and maintaining a secure posture throughout their lifecycle.
  • Ability to explain common threats to Network, Cloud, Web, and Application environments and design mitigations.
  • Some knowledge of ML and generative AI technologies, including common security concerns and mitigations.
  • Knowledge of best practices in the Cyber Security industry, including OWASP Top 10 and CWE/SANS Top 25.
  • Advanced technical knowledge in one or more security domains, with expertise in designing complex systems and mitigating significant risk.
  • Ability to give and receive constructive feedback in a team environment.
  • Willingness to provide mentorship to junior team members.
  • Strong written/verbal communication and presentation skills tailored to technical and non-technical audiences.
  • Constant learner with quick instincts for new technologies and problem domains.
  • Experience developing and documenting security guidelines or best practices.
  • Excellent time management skills to prioritize multiple concurrent projects.

Nice-to-haves

  • Experience performing Threat Analysis and modeling using frameworks like MITRE ATT&CK.
  • Familiarity with security control frameworks such as Cloud Security Matrix, NIST CSF, CIS Critical Security Controls.
  • In-depth knowledge of generative AI platforms like Azure OpenAI services and various models including GPT-4, Llama, Midjourney.
  • Understanding of data and privacy regulations including PCI DSS, SOX, HIPAA, GDPR, CCPA.
  • Knowledge of common Cloud services and platforms (IaaS, PaaS, SaaS).
  • Understanding of Cybersecurity Engineering/Operations, Incident Response, and GRC functions.
  • Empathy for engineering teams to balance security guidelines with operational needs.

Benefits

  • Medical insurance
  • Dental insurance
  • Vision insurance
  • 401(k)
  • Paid leave
  • Tuition reimbursement
  • Variety of discounts and perks
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service