Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

Veeva Systems is a mission-driven organization and pioneer in industry cloud, helping life sciences companies bring therapies to patients faster. As one of the fastest-growing SaaS companies in history, we surpassed $2B in revenue in our last fiscal year with extensive growth potential ahead.


At the heart of Veeva are our values: Do the Right Thing, Customer Success, Employee Success, and Speed. We're not just any public company – we made history in 2021 by becoming a public benefit corporation (PBC), legally bound to balancing the interests of customers, employees, society, and investors.


As a Work Anywhere company, we support your flexibility to work from home or in the office, so you can thrive in your ideal environment.


Join us in transforming the life sciences industry, committed to making a positive impact on its customers, employees, and communities.


The Role


This role requires an experienced Security Engineer to bolster the security operations team's incident response, automation, and vulnerability management processes. This engineer will be expected to aid in streamlining incident response playbooks, have extensive knowledge of AWS architecture, and craft/tune SIEM rules to align with certain specific anomalous behaviors. This role will be an on-call position in a team rotation.


What You’ll Do
  • Serve in an incident response capacity: triage alerts, analyze behaviors, coordinate with stakeholders, and execute containment actions to mitigate threat activity to the network
  • Craft and tune alerts to minimize false positive rates and indicate specific adversarial behavior
  • Develop playbooks to automate various processes such as threat intel IOC ingestion, IOC database integration with other security tools, incident response scripts, and logging queries
  • Vulnerability management refinement to include automation of ticket dissemination or closure and crafting specific policies and alerts for specified cyber terrain
  • Maintain excellent awareness of the status of all on-prem and cloud devices’ reporting capabilities to the overarching tool suite, and take prompt action to ensure proper functionality and health of the tools
  • Collaborate with various stakeholders to identify gaps and pitfalls in security issues
  • Engage in security exercises and purple team events based upon gathered threat intelligence and relevant actors to simulate and understand the true risk to business operations
  • Develop and maintain relevant performance metrics in incidents and vulnerabilities to influence decisions at higher leadership levels


Requirements
  • 4+ years’ experience as a Security Engineer or equivalent
  • Significant experience in setting up and maintaining AWS infrastructure
  • Significant experience in automation languages in the context of incident response
  • Strong experience in evaluating and assessing a vulnerability severity level based on a variety of internal and external factors surrounding it
  • Strong communication skills with tactical personnel and senior-level leadership
  • Strong understanding of various methods to address vulnerabilities
  • Strong experience in coordinating with various teams’ solutions to manage and prioritize vulnerability remediation
  • Extensive experience in vulnerability management-related tools
  • Extensive skills in developing, tuning, and crafting specific behavioral alerts that are tailored to unique and relevant cyber threats
  • Extensive background in the incident response life-cycle and engaging in decision-making processes to take actions that align with company's best interests
  • Complex problem-solving skills with the ability to work with minimal supervision
  • Legally eligible to work in the United States


Nice to Have
  • Strong familiarity with Atlassian products
  • Strong familiarity with the python automation language
  • Strong knowledge of governing regulations such as HIPAA, GDPR, ISO 27001, and SOC 2 compliance standards
  • Exceptional skill in excel data transformations, pivot table creation, and gathering key statistical insights
  • Good understanding of attack surface management principles
  • Good familiarity in automating scanning results to different reporting media (excel sheets, Jira, etc)


Perks & Benefits
  • Medical, dental, vision, and basic life insurance
  • Flexible PTO and company paid holidays
  • Retirement programs
  • 1% charitable giving program


Compensation
  • Base pay: $90,000 - $125,000
  • The salary range listed here has been provided to comply with local regulations and represents a potential base salary range for this role. Please note that actual salaries may vary within the range above or below, depending on experience and location. We look at compensation for each individual and base our offer on your unique qualifications, experience, and expected contributions. This position may also be eligible for other types of compensation in addition to base salary, such as variable bonus and/or stock bonus.


#LI-RemoteUS


Veeva’s headquarters is located in the San Francisco Bay Area with offices in more than 15 countries around the world.


Veeva is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity or expression, religion, national origin or ancestry, age, disability, marital status, pregnancy, protected veteran status, protected genetic information, political affiliation, or any other characteristics protected by local laws, regulations, or ordinances. If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us at talent_accommodations@veeva.com.

Average salary estimate

$107500 / YEARLY (est.)
min
max
$90000K
$125000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Veeva Systems

Veeva Systems is on the hunt for a talented Security Engineer to join our dynamic team in Boston, Massachusetts. We’re a mission-driven company that pioneers cloud solutions for life sciences, making a real difference by helping to bring therapies to patients faster than ever before. As one of the fastest-growing SaaS companies, we prioritize our core values of Customer Success, Employee Success, Speed, and of course, Doing the Right Thing. In this role, you’ll be at the forefront of our security operations, enhancing our incident response processes, and collaborating with various teams to identify and address security gaps. We believe in flexibility, and as a Work Anywhere company, you can choose whether to work from home or in the office. Your expertise in AWS architecture and incident response will be crucial as you help streamline our security protocols. If you have a flair for crafting and tuning SIEM rules to capture specific behaviors, and you enjoy the challenge of enhancing vulnerability management practices, we want you to be part of our mission to transform the life sciences industry. With perks like flexible PTO, medical benefits, and a focus on charitable giving, the security engineer role at Veeva Systems is not just a job, but a chance to make a lasting impact while growing with an exceptional team.

Frequently Asked Questions (FAQs) for Security Engineer Role at Veeva Systems
What responsibilities does a Security Engineer at Veeva Systems have?

As a Security Engineer at Veeva Systems, you'll be responsible for triaging alerts, analyzing behaviors, and executing containment actions to mitigate threats. You’ll also develop automated processes for incident response and vulnerability management, ensuring that our security posture remains strong.

Join Rise to see the full answer
What qualifications are needed for the Security Engineer role at Veeva Systems?

Candidates applying for the Security Engineer position at Veeva Systems should have at least 4 years of relevant experience, a deep understanding of AWS infrastructure, and strong skills in incident response automation. Familiarity with regulations like HIPAA and GDPR would be advantageous.

Join Rise to see the full answer
How does Veeva Systems support ongoing professional development for Security Engineers?

Veeva Systems encourages continuous learning and professional growth by providing access to training programs, workshops, and resources that allow Security Engineers to stay updated with the latest security trends and technologies.

Join Rise to see the full answer
Is the Security Engineer role at Veeva Systems remote?

Yes! At Veeva Systems, we embrace flexibility with our Work Anywhere approach, allowing Security Engineers to choose their ideal working environment, whether it's from home or in the office.

Join Rise to see the full answer
What are the common challenges faced by a Security Engineer at Veeva Systems?

You may encounter challenges such as mitigating emerging cyber threats, maintaining communication across teams to address vulnerabilities, and automating incident management processes effectively in a fast-paced environment.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
What experience do you have with incident response as a Security Engineer?

In answering this question, be specific about your past roles where you've handled incident response. Discuss examples where you triaged alerts, executed containment actions, and the tools you used to manage these incidents, showcasing your proactive approach to cybersecurity.

Join Rise to see the full answer
How do you prioritize vulnerabilities in a security context?

Explain your methodology for assessing vulnerability severity, citing relevant frameworks or criteria you've used. Emphasize your experience in coordinating with teams to ensure timely remediation based on risk levels.

Join Rise to see the full answer
Can you describe a complex security challenge you faced and how you resolved it?

Share a specific incident that required complex problem-solving skills. Detail the steps you took to diagnose the issue, your analysis, the stakeholders involved, and the measures implemented to prevent future occurrences.

Join Rise to see the full answer
What tools are you proficient in for managing vulnerabilities?

Mention specific vulnerability management tools you've utilized, such as Tenable, Qualys, or custom scripts. Highlight your experience in automating processes or leveraging these tools to enhance the organization's security posture.

Join Rise to see the full answer
How do you stay updated with the latest security trends?

Discuss the resources you utilize such as blogs, webinars, industry conferences, or certifications. Mention specific certifications you hold that demonstrate your commitment to staying informed, such as CISSP or CEH.

Join Rise to see the full answer
What experience do you have with AWS security?

Explain the depth of your experience with AWS services, including setting security policies, managing IAM roles, and securing cloud environments. Use examples of how you’ve applied best practices and resolved security challenges in AWS.

Join Rise to see the full answer
Describe how you engage with teams to improve security measures.

Highlight your collaborative approach—describe how you initiate security drills or joint reviews with stakeholders to identify gaps and develop better protocols to enhance overall security awareness and processes.

Join Rise to see the full answer
How do you craft effective alerts to minimize false positives?

Talk about your methodology for tuning alerts and the criteria you consider to ensure accuracy. Share examples where your adjustments led to improved incident response rates and decreased noise.

Join Rise to see the full answer
What scripting or automation languages do you prefer for incident response tasks?

Mention your familiarity with languages like Python and how you have employed them to create scripts for automating security tasks. Provide real examples of scripts you've developed for specific incidents or tasks.

Join Rise to see the full answer
What strategies do you use for effective communication during security incidents?

Discuss the importance of clear and concise communication, especially during high-stakes incidents. Share your tips for keeping all stakeholders informed and involved, and your approach to writing post-incident reports.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Family Medical Leave
Maternity Leave
Paternity Leave
Lactation Facilities
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Time-Off
Paid Volunteer Time
Photo of the Rise User
Veeva Systems Remote California - San Luis Obispo
Posted 2 days ago
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Family Medical Leave
Maternity Leave
Paternity Leave
Lactation Facilities
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Time-Off
Paid Volunteer Time
Photo of the Rise User
DLH Hybrid Bethesda, Maryland
Posted 13 days ago
Posted 24 hours ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Generix Group Remote R. Lionesa, 4465 Leça do Balio, Portugal
Posted 13 days ago
Photo of the Rise User
Posted 14 days ago
Photo of the Rise User
Posted 11 days ago

Veeva Systems is a leading cloud-computing company for the global life sciences industry. The company is based in the San Francisco Bay Area and serves more than 950 customers, ranging from the world’s largest pharmaceutical companies to biotechs.

181 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Family FriendlyBadge Flexible CultureBadge Work&Life Balance
CULTURE VALUES
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
BENEFITS & PERKS
Family Medical Leave
Maternity Leave
Paternity Leave
Lactation Facilities
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Time-Off
Paid Volunteer Time
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
January 3, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!