Please login/register to apply for this job.
9 Nov 2022

Full-Time Security Engineer

CMT Talent Team – Posted by CMT Talent Team Cambridge, Massachusetts, United States

Job Description

Cambridge Mobile Telematics (CMT) is on a mission to make the world’s roads and drivers safer. Our first product launched in 2012 and pioneered mobile usage-based insurance. Since then, CMT has become the world’s leading telematics and analytics provider for insurers, rideshares, personal safety providers, and automakers, providing telematics services for 80 enterprise programs in 20 countries. Powered by mobile sensing, artificial intelligence, and behavioral science, we measure driving quality, incentivize safer driving, assist users in crashes in real time, and improve the safety for millions of drivers every day around the world.

We are seeking a senior level Security Engineer who will focus on the building and maturing our security and compliance infrastructure. This person will work closely with our other team members, as well as our Compliance, SRE, Engineering and Product teams to develop security best practices as we build, deploy, and maintain secure products across CMT.

Responsibilities:

  • Triage, manage and resolve security and compliance alerts raised by our security monitoring platform (Lacework)
  • Resolve any escalated security access requests raised by our front line security engineers on behalf of internal end users
  • Resolve requests from issues raised from other organizations, both internal and external, where Security Engineering assistance is needed
  • Following the onboarding period, participate in the 24x7x365 on-call rotation
  • Develop, execute, and track the performance of security metrics
  • Develop & manage the automation pipelines to provide automated account & security production deployments
  • Troubleshoot, and maintain the security infrastructure of our production infrastructure
  • Assist with the development and enforcement of companywide security policies, procedures, and best practices
  • Manage and monitor our SAST/DAST/SCA/OSS tools and their remediation efforts
  • Implement and manage attack surface management tools, such as web application firewalls
  • Help with onboarding other team members onto platforms managed by our team
  • Assist other members of the Security Engineering team with planned project work
  • Complete any additional tasks that may arise

Requirements:

  • Bachelors or Masters preferred with 5+ years in a Product/SAAS Security, IT Security or IT Systems Administration role
  • Extensive knowledge of security management systems – preferably Lacework & Sumologic
  • Extensive knowledge of AWS services – AWS Certification preferred
  • Good technical knowledge of content filtering, firewalls (WAF), authentication systems and notification systems
  • Good knowledge and experience working with Linux operating systems
  • Good understanding of source control concepts – preferably Bitbucket & Github
  • Good experience working with infrastructure as code – preferably Terraform
  • Good programming skills in at least one programming language – preferably PowerShell & Python
  • Good previous experience with pipeline automation – preferably Jenkins & CodePipeline
  • Good experience with configuration and compliance systems – preferably Turbot
  • Good experience with Software Development Application Security systems – preferably Qualys & Veracode
  • Good experience with security focused code review tools – preferably Synopsys & Whitesource
  • Good understanding of security/compliance/privacy frameworks and standards – preferably NIST/ISO/CSF/CIS

Compensation:

  • Competitive salary based on skills and experience
  • Equity in the form of RSUs or stock options
  • Comprehensive benefits (Medical, Dental, Vision, matching 401k)
  • Life insurance (Basic & AD&D)
  • Unlimited Paid Time Off (Vacation, sick days & public holidays)
  • Parental leave
  • Short-term & long-term disability
  • Work from home depending on role and responsibilities
  • Flexible scheduling options depending on role and responsibilities

Additional Perks:

  • Feel great working to solve a serious problem (improving road safety)
  • Have fun at our frequent team outings
  • Volunteer at local organizations 
  • Extensive wellness program including gym memberships, fitness reimbursement, and a comprehensive employee assistant program
  • CMT will do all that is possible to support our employees and create a positive work environment for all!

Commitment to Diversity and Inclusion:

At CMT, we are intensifying our commitment to provide opportunities and career growth to the underrepresented. We are focused on creating an inclusive work environment that encourages a diversity of background and thought to produce the best products and services within our industry.

CMT is an equal opportunity employer and strives to create an inclusive and diverse environment that enriches our employees’ lives in and outside of work. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status or disability state. CMT is headquartered in Cambridge MA. To learn more, visit www.cmtelematics.com and follow us on Twitter @cmtelematics.

How to Apply

Apply Here!

Job Categories: Equal Opportunities. Job Types: Full-Time. Salaries: Not Disclosed.

Job expires in 68 days.

53 total views, 1 today

Apply for this Job