Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

We are looking for a Security Engineer. You’ll be directly responsible for safeguarding Ometria’s digital assets by actively managing risks to maintain a secure and resilient environment. You will work closely with our Product and Engineering teams to ensure that security and privacy best practices are followed whilst finding solutions to meet our business  goals.

Who are we?

Ometria is a Customer Data and Experience Platform built for retail marketers to be the fastest route to sustainable growth. Ometria helps marketers plan and launch their most profitable campaigns twice as fast, increasing their customer loyalty and CRM revenue with personalized marketing messages all throughout the customer journey.

Our platform combines the data unification and customer insight of a CDP with an experience platform, letting retail marketers easily and efficiently create experiences their customers love across email, mobile, on-site, social, direct mail and more.

Ometria is trusted by some of the fastest growing retail brands in the world such as Brooklinen, Davines, Steve Madden, and Sephora.

We have a team of over 120 Ometrians based in North America and Europe. We have raised $75m from leading venture capital funds across the world such as Infravia Capital Partners, Octopus Ventures, Summit Action, Sonae IM and many others

What you'll be doing:

Key Outcomes:

  • Work with the security, legal and people teams to pass the annual ISO 27001 and 27701 audit to reduce the likelihood / impact of incidents and to demonstrate the ‘respect for the trust we’ve been given’ as a business. 
  • Identify opportunities to upskill and educate on security and privacy best practices eg. present on tech strategy/tech session/all hands
  • Ensure privacy and security measures are integrated into all projects to reduce risk and minimise the chance of incidents 

Key Responsibilities:

  • Responding to alerts and security and privacy risk events
    • Alert triage
    • Identification and assessment of risks
    • Following security and privacy playbooks for any incidents
    • Writing incident reports
  • Building and maintaining expertise in security and privacy through learning and certifications
  • Sharing expertise with colleagues by:
    • Advising on project risk reduction through security and privacy by design practices
    • Helping with vulnerability triage and recommending appropriate fixes or mitigations
    • Recommending improvements to policies and processes of the company
  • Building trust in the company through participation in ISO 27001 and 27701 audits, working with penetration testers and external security researchers, and input into sales questionnaires and client vendor security reviews

About you:

  • Experienced - You will have previously worked for 3+ years developing in / administering an AWS cloud environment and can make improvements to AWS configurations. Prior experience using terraform would be an advantage.
  • Curious - you are excited about technology and like learning new things. You take proactive steps to educate yourself on what’s happening in the security and privacy industry, and how this can better inform our internal practices
  • Accountability - You work with a level of independence on tasks / projects that you are assigned and are able to identify challenges to minimise delay or impact. You work diligently to finish your work within agreed deadlines.
  • Analytical skill - You utilise evidence and data to methodically make informed decisions and are comfortable analysing large amounts of data. You are able to critically consider projects and identify security and privacy risks.
  • Business Focus - Ability to identify risk whilst pragmatically considering the commercial impact and necessary actions
  • Confident communicator -You contribute to Engineering scoping discussions and are confident giving  constructive feedback and challenging ideas with a wide variety of stakeholders. You feel comfortable presenting best practice updates and training to internal audiences.

The amazing people of Ometria are the core of our business. We believe in making it awesome to be here for all Ometrians and place a continued focus on making Ometria an inclusive, respectful and diverse environment. 

We're an equal opportunity employer and all applicants will be considered for employment without attention to ethnicity, age, religion, sexual orientation, gender identity, family or parental status, national origin, veteran, neurodiversity status or disability status.



Average salary estimate

$80000 / YEARLY (est.)
min
max
$70000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Ometria

Join us at Ometria as a Security Engineer, where you’ll play a pivotal role in safeguarding our digital assets and ensuring a secure environment. Your expertise will be crucial in managing risks and collaborating closely with our Product and Engineering teams to implement security and privacy best practices that align seamlessly with our business goals. At Ometria, we pride ourselves on being a dynamic Customer Data and Experience Platform tailored for retail marketers, enabling them to enhance customer loyalty and drive revenue through personalized campaigns. As part of a growing team of over 120 Ometrians spread across North America and Europe, you’ll contribute to our mission of delivering exceptional customer experiences for renowned brands like Sephora and Steve Madden. Your responsibilities include responding to security alerts, conducting risk assessments, and participating in ISO audits, which will nurture a culture of respect and trust within our organization. You’ll also have the opportunity to upskill yourself and others, simplifying complex security concepts and making them accessible to diverse audiences. If you're an enthusiastic individual with 3+ years of experience in AWS environments and a passion for continuous learning in the technology and security space, we can't wait to meet you!

Frequently Asked Questions (FAQs) for Security Engineer Role at Ometria
What are the key responsibilities of a Security Engineer at Ometria?

As a Security Engineer at Ometria, your main responsibilities include managing risk through alerts and triage, conducting incident reporting, and working towards ISO 27001 and 27701 audits. You'll also collaborate with the security and legal teams to ensure that security measures are embedded in all projects, educating others about best practices along the way.

Join Rise to see the full answer
What qualifications are necessary for the Security Engineer position at Ometria?

To qualify for the Security Engineer role at Ometria, candidates should possess at least 3 years of experience in managing AWS cloud environments. Familiarity with tools like Terraform is advantageous. Strong analytical skills, accountability in completing assignments, and effective communication abilities are essential for engaging with various stakeholders throughout the organization.

Join Rise to see the full answer
How does Ometria ensure security and privacy best practices?

Ometria ensures security and privacy best practices through continuous education, incorporating security measures at the project level, and adhering to established protocols like ISO 27001 and 27701. By closely working with both internal and external teams, the Security Engineer will help maintain a secure digital environment, fostering a culture of security awareness among all employees.

Join Rise to see the full answer
What kind of company culture can a Security Engineer expect at Ometria?

At Ometria, you're joining a culture that prioritizes inclusivity, respect, and diversity. The company values every Ometrian and aims to create an awesome workplace for all. You'll find that collaboration is encouraged, and there are ample opportunities to contribute to a variety of projects, all while developing your expertise in a friendly environment.

Join Rise to see the full answer
What growth opportunities are available for a Security Engineer at Ometria?

Ometria provides excellent growth opportunities for a Security Engineer through continuous learning, participation in security audits, and collaborations with penetration testers. Employees are encouraged to pursue certifications and take proactive steps to stay updated in the security and privacy domains, enhancing both personal and professional development.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
Can you describe your experience with AWS cloud environments?

In responses, focus on specific projects where you've utilized AWS services, detailing your role in configuring and securing those resources. Highlight any security protocols you've implemented while discussing your familiarity with compliance standards.

Join Rise to see the full answer
What measures do you take to ensure the security of digital assets?

When answering, describe your holistic approach to security, including risk assessment strategies, incident response plans, and how you educate team members about security best practices to bolster overall resilience.

Join Rise to see the full answer
How do you stay updated with the latest trends in security and privacy?

Discuss the methods you use to stay informed, such as following relevant blogs, attending webinars, participating in industry conferences, or being part of professional organizations that focus on security and privacy, demonstrating your commitment to continuous learning.

Join Rise to see the full answer
Describe a time you identified a significant security risk.

Provide a detailed account of the scenario, your role in identifying the risk, the analysis process you undertook, and the steps you took to mitigate or address that risk effectively. Highlight your use of analytical skills and proactivity.

Join Rise to see the full answer
What is your experience with ISO 27001 compliance?

Explain your previous roles in compliance efforts, the specific tasks you undertook during audits, and how you contributed to achieving ISO certification. Provide insights into how you helped educate and assure teams during the process.

Join Rise to see the full answer
How do you approach incident response planning?

Detail your steps in developing and executing an incident response plan, including team coordination, reporting structures, and post-incident analysis to enhance future responses, ensuring that communication remains effective throughout the process.

Join Rise to see the full answer
What is the importance of privacy by design?

Discuss the significance of integrating privacy measures early in the project lifecycle rather than retrofitting them later. Emphasize how this approach not only ensures compliance but also builds trust with clients and customers.

Join Rise to see the full answer
How do you handle conflicting priorities in a project?

Share strategies you utilize to assess and prioritize tasks, emphasizing communication and collaboration with stakeholders to ensure that security considerations are harmonized with business objectives.

Join Rise to see the full answer
What tools do you use for vulnerability scanning and management?

List specific tools you have experience with, explaining how you utilize them in your workflow. Delve into how you analyze scan results and develop remediation plans based on vulnerabilities identified to safeguard digital assets.

Join Rise to see the full answer
Can you provide an example of presenting security best practices to a team?

Highlight a specific instance where you effectively communicated security best practices, outlining your approach to make the information engaging and actionable while encouraging dialogue and feedback from your audience.

Join Rise to see the full answer

About Ometria: Ometria (www.ometria.com) is a leader in retail and ecommerce marketing, providing a SaaS solution which helps multichannel and online retailers use data to better understand their customers, and send personalised automated messages...

1 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
November 30, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!