Title: Application Security Engineer
Location: Remote initially and can be onsite at any one of these locations (Hopkinton, MA or San Francisco Bay area or Austin TX)
Duration: 9+ months contract with possible extension
Responsibilities
Network Security
Microsoft Antivirus
Wireshark
Authentications
Public Key Infrastructure
Location: Remote initially and can be onsite at any one of these locations (Hopkinton, MA or San Francisco Bay area or Austin TX)
Duration: 9+ months contract with possible extension
Responsibilities
- Architect, design and implement security controls for maintaining a secure Open RAN solution
- Recommend system security measures and architectural security guidelines for our 5G solution
- Guide the Engineering organization's security and privacy initiatives by leading design reviews and threat modeling sessions
- Build tooling, automation, and infrastructure that empowers our engineering organization to go fast while simultaneously improving product security.
- Assist engineering teams with assessing and improving the security posture of their SW and applications
- Do hands on security development work
Qualifications - Linux security
- Strong Red Hat Linux, RHEL8 & SElinux experience
- Security Policies, Linux kernel hardening, LSM
- Container security, Cloud Linux (Azure) .
- Network Security (DNS, iptables, squid, snort, etc)
- IPSEC/SSH/TLS/HTTPS (Data in Transit)
- Storage, Encryption (Data at Rest)
- Linux Virtualization (VMWare, QEMU, etc)
- System monitoring, logging and alerting
- Security automation, Shell scripting, basic devops
- Security scanning and penetration testing (nmap, nessus, Metasploit, etc..)
- Strong, hands-on expertise
- Working knowledge of DevOps methods and CI/CD automation practices
- Working knowledge of containerization technologies and container orchestration (Docker, Kubernetes)
- 5+ years of NW Security Engineering experience
Will be a plus - Experience with embedded linux systems development, 5G or RAN applications a plus.
- Knowledge of PKI, cryptography and encryption algorithms a plus
- Familiarity with FIPS140-2 / NIST certifications a plus.
- Strong expertise in secure SDLC practices
- Golang and/or Python experience
Recommended Skills
Intrusion Detection And PreventionNetwork Security
Microsoft Antivirus
Wireshark
Authentications
Public Key Infrastructure