06 Aug
|
Flagship Pioneering
|
Cambridge
06 Aug
Flagship Pioneering
Cambridge
Lead Cloud Security/AppSec Engineer at Flagship Pioneering, Inc.
About the role In this critical position, you will significantly influence the cloud security and application security engineering practices at Flagship Pioneering. Your role will involve close collaboration with the Chief Information Security Officer (CISO) and the Director of Security Engineering, as you work alongside a well-equipped team. This prospect allows you to develop AI-enhanced workflows and embed security measures into engineering processes from the very beginning.
Key facts
- Location: Cambridge, MA USA
- Engagement: Full-time
- Team: Information Security
What you'll do
- Take charge of the cloud security posture by implementing remediation strategies in partnership with the Infrastructure & Operations team, ensuring that security controls are uniformly applied across AWS environments.
- Design and implement security protocols within CI/CD and Secure Software Development Life Cycle (SSDLC) processes, incorporating tools like Static Application Security Testing (SAST) and container scanning, while also developing AI-driven automation to bolster security coverage.
- Establish and operationalize data loss prevention strategies at both the cloud and application levels, ensuring comprehensive protection of sensitive information.
- Manage cloud identity governance, including conditional access policies, in collaboration with the Infrastructure & Operations team to enhance security measures.
- Develop and refine detection rules tailored for cloud environments, working with the Security Operations Center to improve alert accuracy and response times.
- Contribute to the security architecture for AI-centric products,
ensuring that robust guardrails are in place for platforms such as Bedrock and Elastic Kubernetes Service (EKS).
- Serve as a security engineering partner for portfolio companies, engaging throughout the development lifecycle rather than solely during review phases.
- Create and sustain AI-enhanced workflows, leveraging tools and automation to maximize your efficiency and focus on intricate security challenges.
Requirements
- A minimum of 5 years of experience in cloud security, application security, or a closely related field is essential.
- Extensive hands-on experience with AWS security services, including Security Hub, GuardDuty, and Identity and Access Management (IAM); familiarity with Wiz is highly preferred.
- Proven track record of integrating security tools such as SAST, Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) into development pipelines, collaborating effectively with developers to address identified issues.
- In-depth knowledge of cloud identity solutions, particularly Entra ID or Azure Active Directory, including the design and enforcement of security policies.
- Proficiency in writing infrastructure-as-code and scripting for security automation using languages such as Python or Terraform, along with experience utilizing Large Language Model (LLM)
APIs and automation frameworks.
- Demonstrated capability to create AI-enhanced security workflows, effectively employing AI tools to streamline security processes.
- Excellent communication skills to engage with engineering leadership and foster relationships with Infrastructure & Operations teams.
- Self-driven and adept at prioritizing tasks within a clearly defined strategic framework.
Nice to have
- Experience in securing machine learning or AI platforms, including Bedrock or SageMaker, would be advantageous.
- Relevant certifications such as AWS Security Specialty, GIAC Web Application Defender (GWEB), or Offensive Security Certified Professional (OSCP) are a plus.
- Background in a multi-entity security environment or experience with portfolio companies is desirable.
- Understanding of HIPAA technical safeguards and the management of Protected Health Information (PHI) data in cloud environments.
- Familiarity with container and Kubernetes security, particularly with EKS and network policies, is beneficial.
Practical notes
- The salary range for this position is between $148,000 and $203,500, contingent on qualifications and experience.
- Flagship Pioneering provides a comprehensive benefits package that includes healthcare coverage, retirement plans, and an annual incentive program.
- We strongly encourage candidates from diverse backgrounds to apply, even if they do not meet every single qualification listed. Our commitment to fostering an inclusive workplace is paramount, and we look forward to learning about your unique experiences and your interest in joining Flagship.
#J-18808-Ljbffr
📌 Lead Cloud Security/AppSec Engineer (Cambridge)
🏢 Flagship Pioneering
📍 Cambridge