Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior IT Security Engineer/Leader image - Rise Careers
Job details

Senior IT Security Engineer/Leader

Company Description

Miratech helps visionaries change the world. We are a global IT services and consulting company that brings together enterprise and start-up innovation. Today, we support digital transformation for some of the world's largest enterprises. By partnering with both large and small players, we stay at the leading edge of technology, remain nimble even as a global leader, and create technology that helps our clients further enhance their business. We are a values-driven organization and our culture of Relentless Performance has enabled over 99% of Miratech's engagements to succeed by meeting or exceeding our scope, schedule, and/or budget objectives since our inception in 1989. 

Miratech has coverage across 5 continents and operates in 30+ countries around the world. We currently have R&D centers in Ukraine, India, Poland, Spain, Slovakia, Canada, and our headquarters in the US.  As we continue to expand globally, we are seeing India, the United States, Canada, Argentina, and Brazil rapidly evolve into key growth areas in the Miratech network. Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. Our ForeverRemote work culture offers you the utmost flexibility that comes with remote work.

Job Description

Our client is an American online digital brokerage firm. Our project stands out as the top investing app, offering an incredibly easy and appealing way to invest in the stock market. With 86% of the population never having had the chance to own stocks due to their intimidating cost, this application aims to break down those barriers and make stock ownership accessible to everyone.

The project: the best Investment & Asset Management Platform, an online stockbroker with an interesting, unusual twist. They pioneered fractional share investing, stock gift cards, and custodial accounts for all, including kids of any age.

The Platform enables one to buy and sell stocks and fractional shares of stock in publicly traded companies, and to buy gift cards that can be used toward the purchase of stocks and exchange-traded funds (ETFs). It is possible for anyone to own stock in their favorite companies including Amazon, Apple, Alphabet, Disney, Nike, Tesla, Cisco, Google, and 1k+ other stocks and ETFs.

Responsibilities:

  • Lead security initiatives, provide suggestions for security strategy.
  • Safeguards information system assets by identifying and solving potential and actual security problems.
  • Protects the system by defining access privileges, control structures, and resources.
  • Recognizes problems by identifying anomalies with SOC tools, and reporting violations.
  • Implements security improvements by assessing the current situation; evaluating trends; anticipating requirements.
  • Determines security violations and inefficiencies by conducting periodic audits.
  • Upgrades system by implementing and maintaining security controls.
  • Keeps users informed by preparing performance reports and communicating system status.
  • Collaborate with vendors to perform penetration testing for internal and cloud environments.
  •  Run vulnerability scans and remediate vulnerabilities.

Qualifications

  • Experience with PCI-DSS or SOC2 compliance audits
  • Worked as a security manager/engineer for a SaaS company
  • Develop and implement Information security policies and procedures
  • OWASP TOP 10 for Web Applications
  • Aware of PCI-DSS technical requirements
  • Well-versed in security operations, cyber security tools, intrusion detection, and secured networks
  • Securing Java applications
  • Write correlation rules for security alerts

Applications and Tools Experience 

  • Cloudflare (WAF system)
  • AWS Cloud Security
  • Vulnerability management tools
  • Collaborate with DevOps for secure System Administration (most Linux, less Windows, and macOS)
  • Network Security (Firewalls, Open VPN/Meraki VPN, network equipment)
  • Security operations center tools like AlienVault, Rapid7 (or Splunk or similar)
  • Logging tools like AWS CloudTrail or Sumo Logic, Mode, AWS Athena

Security certifications:

  • CISSP - Certified Information Systems Security Professional
  • AWS Security Specialty
  • Security+ - from CompTIA

We offer:

  • Culture of Relentless Performance: join an unstoppable technology development team with a 99% project success rate and more than 30% year-over-year revenue growth. 
  • Competitive Pay and Benefits: enjoy a comprehensive compensation and benefits package, including health insurance, language courses, and a relocation program. 
  • Work From Anywhere Culture: make the most of the flexibility that comes with remote work. 
  • Growth Mindset: reap the benefits of a range of professional development opportunities, including certification programs, mentorship and talent investment programs, internal mobility and internship opportunities. 
  • Global Impact: collaborate on impactful projects for top global clients and shape the future of industries. 
  • Welcoming Multicultural Environment: be a part of a dynamic, global team and thrive in an inclusive and supportive work environment with open communication and regular team-building company social events. 
  • Social Sustainability Values: join our sustainable business practices focused on five pillars, including IT education, community empowerment, fair operating practices, environmental sustainability, and gender equality. 

* Miratech is an equal opportunity employer and does not discriminate against any employee or applicant for employment on the basis of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other protected status under applicable law.

Additional Information

All your information will be kept confidential according to EEO guidelines.

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior IT Security Engineer/Leader, Miratech

At Miratech, we're on the lookout for a Senior IT Security Engineer/Leader who is ready to take on exciting challenges in a dynamic environment. As a key member of our team, you'll lead security initiatives for an innovative American online digital brokerage firm that’s transforming the way people invest. Imagine making stock ownership accessible to everyone! Your role will involve safeguarding information system assets by identifying and resolving security issues, defining access privileges, and working closely with vendors for penetration testing. Your expertise in compliance audits like PCI-DSS will be invaluable, as you’ll assess current security situations, implement necessary improvements, and keep our users informed with performance reports. This position not only promises the thrill of working on cutting-edge security strategies but also the satisfaction of collaborating with diverse teams across the globe. You'll thrive in our flexible ForeverRemote culture, where your work-life balance is prioritized. Join us in driving forward the best investment and asset management platform while making a global impact. If you're passionate about cybersecurity and committed to relaying continuous improvement in security operations, we’d love for you to contribute to our mission at Miratech!

Frequently Asked Questions (FAQs) for Senior IT Security Engineer/Leader Role at Miratech
What are the primary responsibilities of a Senior IT Security Engineer/Leader at Miratech?

As a Senior IT Security Engineer/Leader at Miratech, you will lead security initiatives, implement security improvements, safeguard system assets, and conduct regular audits. You'll employ your expertise to identify and solve potential security problems and ensure compliance with frameworks like PCI-DSS and SOC2.

Join Rise to see the full answer
What qualifications are required for the Senior IT Security Engineer/Leader position at Miratech?

To be considered for the Senior IT Security Engineer/Leader role at Miratech, candidates should have experience with PCI-DSS or SOC2 compliance audits, a background as a security manager/engineer in a SaaS environment, and familiarity with the OWASP TOP 10 for Web Applications. Relevant security certifications such as CISSP and AWS Security Specialty are also preferred.

Join Rise to see the full answer
How does the role of Senior IT Security Engineer/Leader contribute to Miratech's mission?

The Senior IT Security Engineer/Leader plays a vital role at Miratech by ensuring the security of innovative investment platforms. This position not only helps protect information assets but also facilitates the broader mission of making stock ownership accessible through the use of technology.

Join Rise to see the full answer
What tools and technologies will I work with as a Senior IT Security Engineer/Leader at Miratech?

In this position, you’ll work with a variety of security tools, including Cloudflare for WAF, AWS Cloud Security, vulnerability management tools, and various security operations center tools like AlienVault. Collaboration with DevOps for secure system administration in predominantly Linux environments will also be a key aspect.

Join Rise to see the full answer
What are the growth opportunities for a Senior IT Security Engineer/Leader at Miratech?

Miratech fosters a growth mindset by offering professional development opportunities like certification programs, mentorship, and internship possibilities. Senior IT Security Engineers/Leaders can look forward to internal mobility and engagement in collaborative projects that make a global impact.

Join Rise to see the full answer
Common Interview Questions for Senior IT Security Engineer/Leader
Can you describe your experience with compliance audits such as PCI-DSS or SOC2?

When answering this question, emphasize your hands-on experience with compliance audits, any specific roles you held, and the outcomes of those audits. Provide examples of challenges you faced and how you overcame them, as well as illustrating your understanding of the compliance requirements involved.

Join Rise to see the full answer
What strategies do you use to identify security vulnerabilities in a system?

Discuss your systematic approach to identifying vulnerabilities. Mention the use of vulnerability scans, audits, penetration testing, and your familiarity with security operations center tools. Highlight how you prioritize vulnerabilities and your process for remediation.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity threats and trends?

Explain how you regularly consume information from reliable sources such as cybersecurity journals, blogs, and forums. Mention any public or private groups you participate in, and whether you attend conferences or webinars that help you stay informed.

Join Rise to see the full answer
Can you provide an example of a complex security problem you've solved?

Provide a specific example that showcases your problem-solving skills. Discuss the context, the complexity of the issue, the steps you took to resolve it, and the final outcome. Highlight your critical thinking and analytical skills.

Join Rise to see the full answer
How do you ensure compliance with security policies across a team?

Discuss your methods for promoting compliance, such as conducting regular training sessions, enforcing security protocols, and fostering open communication. Explain how you measure compliance and the role of audits in this process.

Join Rise to see the full answer
What experience do you have in securing cloud environments?

When responding to this question, detail your experience with cloud security, particularly your knowledge of specific platforms like AWS. Highlight any relevant certifications you possess and describe the security measures you've implemented.

Join Rise to see the full answer
How do you handle a security breach when it occurs?

Outline your incident response plan. Describe the immediate actions you would take to contain the breach, how you would analyze and report on it, and the measures you'd implement to prevent future breaches. Your organizational skills and ability to remain calm under pressure are key here.

Join Rise to see the full answer
What tools do you use for vulnerability management and why?

Discuss specific tools you've used, highlighting their features, strengths, and how they have benefited previous teams or projects. Also, mention how you determine which tools to use based on the specific needs of a project.

Join Rise to see the full answer
How do you foster a culture of security awareness within an organization?

Explain your approach to embedding security awareness in the company culture. This could include training programs, regular communication about security updates, and encouraging employees to report suspicious activities. Share any unique initiatives you've implemented in the past.

Join Rise to see the full answer
What is your approach to evaluating security trends and their impact on business?

Describe how you analyze emerging security trends and assess their potential impact on the business. Discuss how you stay informed, your risk assessment process, and how you communicate potential risks to the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Miratech Remote All Cities,, Ukraine, Argentina, Mexico, Colombia, Bolivia, LatAm, Brazil
Posted 8 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Posted 12 days ago
Posted 5 days ago

Miratech is an IT solutions company that provides information technology outsourcing, business process automation, AI automation, cyber security and IT consulting services to businesses. Miratech is based in New York, NY, with international and gl...

14 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 3, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!