Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cybersecurity Engineer image - Rise Careers
Job details

Cybersecurity Engineer

Join Us in Revolutionizing the Construction Industry

Parspec is transforming how $5 trillion in building construction products are sold annually around the world by digitizing and organizing the industry’s product data. By making this data more accessible and useful, our digital platform enables designers and builders to quickly identify the right products for their projects and helps the supply chain to generate new leads and close deals faster. These benefits are enabled by proprietary AI and workflow automation technology.

Founded in 2021, Parspec has raised over $11M in seed financing from leading deep tech and construction industry investors to achieve its ambitious mission, including Innovation Endeavors (founded by former Google CEO Eric Schmidt). We invite you to be at the forefront of innovation for one of the oldest and largest industries in the world!

Leadership

Parspec is helmed by technologists and construction supply chain veterans with a common passion to digitally transform our industry.

FOUNDERS

  • Forest Flager (Co-Founder & CEO) - Former Director of Software at Katerra and Stanford University faculty member; Stanford BS, PhD. MIT MEng. Harvard MDes.

  • Pratyush Havelia (Co-Founder & CTO) - Construction-tech engineering leader for 10+ years; Stanford MS & MEng, IIT-R B.Tech.

India Leadership:

  • Abhijit Mitra (Lead Frontend Engineer) - 10+ years of experience building highly scalable systems, monorepo, micro-frontend architecture, distributed systems; ex-Tekion; Gauhati University B.Tech.

  • Sharique Arshi (Lead Software Architect) - 12+ years of experience in software engineering with distributed systems, architecture design, microservices; IIT-G B.Tech. 

  • Saurabh Khemka (AI Lead) - 8+ years of industrial experience in large scale model building and deployment, PhD in Neuroscience - Switzerland, IIT-R B.Tech.

  • Anjali Sinha (Product Manager) - a seasoned product leader with 7+ years of experience in project & product management, operations strategy, and analytics; National University of Singapore - M.Tech

  • Sameer Kulkarni - 7+ years of experience across a number of HR and Operations roles including learning and development, organizational development and project management; SPPU - Masters in Industrial and Organizational Psychology

ROLE SUMMARY 

As an early member of the engineering team, you will play a key role in designing & developing the core cyber-security components of Parspec’s systems and also maintaining & upholding the culture of brilliance in our tightly-knit organization. You will:

  • Design and implement cyber-security measures, policies, guidelines and processes for all applications, services and cloud-infrastructure components

  • Collaborate with the engineering  team to ensure secure DevOps & software development practices are followed including SAST, DAST, SCA, etc.

  • Lead the efforts for building the culture of secure coding practices by holding brown bag lunch sessions on OWASP Top 10 Web, OWASP Top 10 AI, etc. 

  • Build the internal penetration testing function from the ground up including sizing, scoping, and partnering with the engineering team for remediation

  • Lead the security incident response by acting as incident commander and rallying other team members to contain and resolve the incident

  • Assist Parspec’s compliance efforts (SOC2, etc.) and external engagements for cybersecurity projects

This is an exceptional opportunity to bring an entire industry to the forefront of the digital age, and we are excited to work together with like-minded and ambitious leaders like you to realize this potential.

WHO YOU ARE

You are passionate about working in a fast-paced, dynamic, friendly team and are looking for a challenging and rewarding opportunity to build a top-tier product. You agree with the following:

  • You have an entrepreneurial spirit and are excited by the opportunity to shape the development of a young business

  • You are passionate and intrigued about state-of-the-art advancements in cybersecurity and strive to implement the same

  • You are eager to keep yourself up-to-date with the latest developments, tools, processes, certifications and frameworks in cybersecurity

  • You are detail-oriented and meticulous, but also understand the importance of rapid iteration in an agile development environment

  • You are knowledgeable about how digitization & automation has impacted other industries and are excited to find new applications for technology in the construction industry

  • You are not afraid to get your hands dirty and believe that no task is beneath you when it comes to delivering a world-class product

  • You love to learn and are especially good at picking up new concepts quickly

  • You are self-driven and take pride in your work

  • You are willing to occasionally make yourself available outside regular IST working hours to accommodate collaboration with a globally distributed team

WHAT YOU WILL DO

  • Design, implement, and manage security measures to protect our web-app services, cloud infrastructure (AWS, GCP, Azure) components and any integrations with external APIs

  • Develop and maintain policies and processes to incorporate early detection of security issues and adherence to best practices in cybersecurity in product development 

  • Conduct regular manual security assessments and vulnerability scans of web applications, APIs, and cloud environments.

  • Implement and manage security tools and technologies, including firewalls, VPN, intrusion detection/prevention systems, automated vulnerability scanners, and endpoint protection solutions.

  • Monitor and analyze security events and incidents, providing timely response and mitigation strategies.

  • Collaborate with development and DevOps teams to integrate security best practices into the software development lifecycle (SDLC).

  • Ensure compliance with relevant security frameworks and regulations (e.g., ISO 27001, NIST, CIS, etc.).

  • Manage SOC2 compliance audit

  • Conduct security training and awareness programs for employees.

  • Stay current with emerging security threats, vulnerabilities, and mitigation techniques.

  • Lead and mentor teams working on infrastructure components related to security practices.

  • Uphold our culture of engineering excellence

  • Collaborate with the leadership team in related research and development efforts

WHAT YOU CAN EXPECT 

As an integral part of building Parspec from the ground up, you will share in our success. We offer: 

  • Competitive salary and benefits

  • Company equity

  • Flexible hours

  • Hybrid location preference

  • Opportunity to grow with a rapidly scaling company addressing a large market ripe for digital transformation

REQUIRED QUALIFICATIONS

  • Bachelor’s or Master’s degree in Computer Science, Information Technology (or related fields) and excellent programming, critical thinking, and analytical skills

  • Minimum of 4-5 years of experience in cyber security, with a focus on web applications, cloud infrastructure, and API integrations

  • Proven experience with securing at least one of AWS & GCP environments

  • Good understanding of security frameworks and standards such as ISO 27001, NIST, GDPR, OWASP, and CIS Controls

  • Strong understanding of web application security (e.g., OWASP Top 10) and secure coding practices

  • Proven experience with finding and reporting vulnerabilities in web-applications (either via bounty programs or part of internal org teams)

  • Experience with security tools and technologies, including but not limited to:

    • Web Application Firewalls (WAF)

    • VPN’s

    • Intrusion Detection/Prevention Systems (IDS/IPS)

    • Security Information and Event Management (SIEM) systems

    • Endpoint Protection and Response (EPR) solutions

    • Vulnerability Management tools

  • Proficiency in scripting (e.g., Python, Bash, PowerShell) and reviewing code PR’s

  • Experience with industry-standard best practices for OAuth / SSO / MFA

  • At least one of several relevant certifications such as CISSP, CEH, CISM, or equivalent

  • Experience with identity and access management (IAM) and multi-factor authentication (MFA) solutions.

  • Working knowledge of zero-trust architecture and principles

  • Strong analytical and problem-solving skills

  • Excellent communication and interpersonal skills

PREFERRED QUALIFICATIONS

  • Master’s degree in Computer Science, Information Technology (or related fields)

  • Working knowledge of best practices to secure AWS & GCP environments

  • Experience with Django, React and similar web-app frameworks

  • Experience with designing and developing web-application architectures

  • Experience with building service components using AWS RDS, ECS, OpenSearch, S3, EC2 and other commonly used technologies

  • Experience setting up DevSecOps practices and CI/CD pipeline security

  • Experience setting up and managing Bug Bounty programs

  • Experience as a Penetration Tester for web-applications and cloud infrastructure

  • Familiarity with cyber law applicable to web-applications and cloud infrastructure

THE PARSPEC ETHOS

At Parspec, we lead from every seat. Our team members are self-starters that embrace ambiguity, think big, and bring their own uncompromising standards of excellence. We embrace diversity with a belief that different backgrounds, ideas, and skillsets result in better outcomes. Parspec does not discriminate in employment based on race, color, creed, national origin, ancestry, sex, marital status, disability, religious or political affiliation, age, sexual orientation, or gender identity. 

Parspec encourages people of all backgrounds to apply, including people of color, immigrants, refugees, women, LGBTQIA, people with disabilities, veterans and those with diverse life experiences.

Parspec Glassdoor Company Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Parspec DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Parspec
Parspec CEO photo
Unknown name
Approve of CEO

Average salary estimate

$75000 / YEARLY (est.)
min
max
$60000K
$90000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cybersecurity Engineer, Parspec

Join Parspec as a Cybersecurity Engineer and become a vital part of our mission to revolutionize the construction industry right from Bengaluru! As a key player in our innovative engineering team, you will design and implement essential cybersecurity measures, policies, and processes to protect our cutting-edge cloud infrastructure and applications. You've probably heard how digitization is reshaping entire industries, and at Parspec, we're excited to utilize this technology to improve the way $5 trillion in construction products are sold globally. With your entrepreneurial spirit and passion for cybersecurity, you will collaborate with fellow engineers to implement secure coding practices and lead our security incident response efforts when challenges arise. This is not just a job; it’s an opportunity to be on the forefront of digital innovation. You’ll contribute to enhancing security protocols and ensuring compliance with major frameworks, all while maintaining a culture of engineering excellence among a tightly-knit team of talented professionals. If you're detail-oriented, eager to stay updated with the latest in cybersecurity, and ready to make a difference by building a world-class product that helps define the future of construction, we’d love for you to join us as we lead the charge for digital transformation in this timeless industry.

Frequently Asked Questions (FAQs) for Cybersecurity Engineer Role at Parspec
What are the responsibilities of a Cybersecurity Engineer at Parspec?

As a Cybersecurity Engineer at Parspec, you'll play a crucial role in designing and implementing security measures to protect our applications and cloud infrastructure. This includes developing policies, leading security training sessions, and managing the internal penetration testing function. Additionally, you'll be involved in collaboration with our engineering teams to uphold secure coding practices, ensuring that all phases of our software development lifecycle are robust against threats.

Join Rise to see the full answer
What qualifications do I need to apply as a Cybersecurity Engineer at Parspec?

To qualify for the Cybersecurity Engineer position at Parspec, you'll need a Bachelor's or Master’s degree in a related field such as Computer Science or Information Technology. A minimum of 4-5 years of direct cybersecurity experience, especially focusing on web applications and cloud platforms like AWS or GCP is required. Familiarity with security frameworks like ISO 27001 and experience with security technologies such as firewalls, VPNs, and intrusion detection systems will also be beneficial.

Join Rise to see the full answer
How can I contribute to Parspec’s success as a Cybersecurity Engineer?

At Parspec, as a Cybersecurity Engineer, your contributions will be instrumental. You will help design secure digital environments, implement best practices across the development process, and stay ahead of emerging security threats. Your proactive approach in building a culture of security awareness and compliance will directly affect our ability to achieve business objectives and maintain client trust in our innovative solutions.

Join Rise to see the full answer
What is the culture like at Parspec for a Cybersecurity Engineer?

The culture at Parspec is dynamic, collaborative, and driven by a shared passion for innovation. As a Cybersecurity Engineer, you'll be part of a friendly, tight-knit team where your ideas and input are valued. We encourage continuous learning, and you’ll have opportunities to enhance your skills and stay updated with industry changes, ensuring your professional growth aligns with our advancing technology landscape.

Join Rise to see the full answer
What technologies will a Cybersecurity Engineer at Parspec work with?

As a Cybersecurity Engineer at Parspec, you'll work with a range of cutting-edge technologies, including cloud platforms like AWS, GCP, and various security tools such as Web Application Firewalls, VPNs, and Intrusion Detection Systems. Your role will involve implementing security measures across our cloud infrastructure and web applications, ensuring robust protection against vulnerabilities and threats.

Join Rise to see the full answer
Is remote work an option for the Cybersecurity Engineer position at Parspec?

Yes, Parspec offers a hybrid work environment, allowing flexibility for our Cybersecurity Engineer position. You can work both from our Bengaluru office and remotely, enabling a work-life balance that supports productivity while collaborating with our globally distributed team.

Join Rise to see the full answer
What growth opportunities are available for a Cybersecurity Engineer at Parspec?

As a Cybersecurity Engineer at Parspec, the growth opportunities are vast. You'll be integral to our evolving security landscape and can expect to take on more responsibilities as you prove your expertise. Moreover, you'll have the chance to lead initiatives, mentor junior staff, and possibly contribute toward higher managerial roles as the company expands and progresses in the digital transformation journey.

Join Rise to see the full answer
Common Interview Questions for Cybersecurity Engineer
Can you describe your experience with securing cloud infrastructures like AWS or GCP?

In your response, detail specific projects where you've implemented security measures in AWS or GCP environments. Discuss tools and practices you've utilized, such as security groups, IAM roles, and logging, emphasizing how they have mitigated risks.

Join Rise to see the full answer
What steps do you take to ensure secure coding practices in a development team?

To answer this question, articulate your approach to integrating security into the SDLC. Mention methods like code reviews, static application security testing (SAST), and conducting training sessions on best practices, advocating for a culture of security awareness within the team.

Join Rise to see the full answer
Describe a security incident you managed. What was the outcome?

When discussing a security incident, outline the situation clearly, your role in managing it, the actions you took, and the resolution achieved. It's crucial to highlight any lessons learned and how they influenced your future practices.

Join Rise to see the full answer
What security frameworks are you familiar with and how have you applied them in your past roles?

Identify specific frameworks such as ISO 27001, NIST, or OWASP. Explain how you applied them to enhance security measures, compliance, or risk assessments in your previous positions, providing real-world examples of implementations.

Join Rise to see the full answer
How do you stay updated with the latest cyber threats and security best practices?

In your response, discuss subscriptions to security journals, participation in webinars, or attendance at conferences. Share any professional networks or communities you are part of that help you keep up to date with emerging threats and mitigation strategies.

Join Rise to see the full answer
Explain your understanding of OWASP Top 10 vulnerabilities.

Use this question as an opportunity to briefly discuss each of the OWASP Top 10 vulnerabilities, providing examples of how you have worked to mitigate these risks in past projects. This shows your practical knowledge and experience in web application security.

Join Rise to see the full answer
What tools and technologies have you used for vulnerability scanning and assessment?

List specific tools you have experience with, such as Nessus, Burp Suite, or Qualys, and describe how you have used them for vulnerability assessments in past roles. Include any metrics that demonstrate the effectiveness of your scanning initiatives.

Join Rise to see the full answer
How do you approach security training and awareness for staff?

Discuss your strategies for conducting security training sessions and awareness programs, including how you tailor the content to different roles within the organization and measure the effectiveness of your training initiatives over time.

Join Rise to see the full answer
Can you explain the concept of zero-trust architecture?

Your answer should cover the fundamental principles of zero-trust architecture such as 'never trust, always verify'. Discuss your understanding of its implementation in real-world scenarios and how it can lead to enhanced security postures.

Join Rise to see the full answer
What experience do you have leading a security incident response team?

Share your leadership experiences during security incidents, detailing how you organized the incident response team, assessed the situation, and worked toward resolution. Highlight any successful outcomes or improvements made to the incident response process as a result.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Parspec Remote No location specified
Posted 8 hours ago
Photo of the Rise User
EY Hybrid Tennessee
Posted 10 days ago
Photo of the Rise User
Uni Systems Remote No location specified
Posted 9 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Inclusive & Diverse
Mission Driven
Empathetic
Collaboration over Competition
Growth & Learning
Posted 6 days ago
Photo of the Rise User
bioMérieux Hybrid No location specified
Posted 14 days ago

Parspec is transforming how $5 trillion in construction products are sold annually around the world by digitizing and structuring the industry’s product data. We are building a digital platform that helps buyers quickly identify the right products...

5 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
November 28, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!