Platform Security Manager

| Hybrid
Sorry, this job was removed at 12:57 p.m. (EST) on Monday, August 5, 2019
Find out who's hiring in Greater Boston Area.
See all Cybersecurity + IT jobs in Greater Boston Area
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Rapid7 was founded in 2000 to give customers transparency into vulnerabilities in their IT environments with a comprehensive vulnerability management solution, something that didn’t exist at the time. Now Rapid7 continues to deliver state of the art solutions for our customers’ security and IT challenges with a variety of products and our Insight platform: a cloud-based analytics platform that powers our products for vulnerability management, incident detection & response, offensive security, application security, and DevOps + IT operations.

As Rapid7 and the Insight platform continues to grow, so does our attack surface. Because of this, we’re looking for an awesome Platform Security Manager to join our Information Security team in Cambridge, MA. This engineering leader is the kind of person who wants to build a product security engineering function from the ground up. Also, have you ever wondered what it's like to work on a security team at a security company? Hint: it's kind of amazing.

Your profile

For you InfoSec isn’t just a job: it’s a lifestyle. You're seeking a new opportunity to flex your security expertise by overseeing and building our AppSec team from the ground up. In this capacity you’ll work with product engineering teams to implement AppSec best practices, help us build security into our distributed CI/CD pipeline, and build tooling to enable product engineers to move fast and be secure. You’re passionate about continuously evolving product security to stay one step ahead of attackers.

Requirements

  • Lead a team of engineers with disciplines in both Application Security and Cloud Security
  • Extensive knowledge and experience with implementing best practices in a secure SDLC
  • Experience with SAST, DAST, IAST, SCA, RASP, and/or WAF tooling
  • Extensive knowledge and experience with one or more of the following: Java, Python, and JavaScript
  • Knowledge of integrating custom security controls and security tests in development and build environments
  • Automate IaaS assessments, reporting, remediation with a measurable and repeatable process
  • Extensive experience building “guardrails, not gates” into CI/CD environments
  • Working knowledge of one or more of the following technologies or design patterns:
    • Microservice design and architecture
    • Using and developing RESTful APIs
    • Message queueing systems
    • SQL and NoSQL databases (e.g. Cassandra)
    • Containerization and virtualization technology (e.g. VMs, Docker)
  • Ability to pivot quickly with changing priorities in a dynamic, hyper-growth environment
  • Strong capability to communicate security concepts and requirements at all levels of the business
  • Strong sense of project ownership and excellent time and task management skills
  • Strong desire to mentor teammates and provide leadership on key initiatives/projects
  • Education in Computer Science, Information Systems, or a similar field
  • 5+ years of experience in the InfoSec and/or software development fields

Pluses

  • Extensive knowledge of AWS security concepts and best practices
  • Working knowledge of managing infrastructure and resources in AWS using Terraform and Chef, Ansible, Puppet, or Salt
  • Experience with one or more of the following: Go, Ruby, and Erlang
  • Experience with Jenkins
  • Experience creating threat models and remediation plans
  • Working knowledge of identity and access management
  • Experience working in Agile Scrum environments
  • Exposure to Rapid7 products
Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • GolangLanguages
    • JavaLanguages
    • JavascriptLanguages
    • PythonLanguages
    • RLanguages
    • RubyLanguages
    • ScalaLanguages
    • SqlLanguages
    • jQueryLibraries
    • ReactLibraries
    • ReduxLibraries
    • DjangoFrameworks
    • ExpressFrameworks
    • FlaskFrameworks
    • HadoopFrameworks
    • Node.jsFrameworks
    • Ruby on RailsFrameworks
    • SparkFrameworks
    • SpringFrameworks
    • TensorFlowFrameworks
    • CassandraDatabases
    • MongoDBDatabases
    • MySQLDatabases
    • PostgreSQLDatabases
    • RedisDatabases
    • Google AnalyticsAnalytics
    • OptimizelyAnalytics
    • IllustratorDesign
    • InVisionDesign
    • PhotoshopDesign
    • SketchDesign
    • AsanaManagement
    • ConfluenceManagement
    • JIRAManagement
    • WordpressCMS
    • SalesforceCRM

Location

Rapid7 is conveniently located between the North End and West End of Boston, with plenty of restaurants and public transport close by.

An Insider's view of Rapid7

What does your typical day look like?

For the majority of the day it’s a mix of weekly check-ins with various teams, project updates, and the occasional brainstorm.

When I’m not in meetings I’ve got headphones in while planning, writing, or designing — at my desk or perched somewhere around the office.

Grace

Senior Brand Storyteller

How has your career grown since starting at the company?

Ive been on many teams in my time at Rapid7 and they have certainly “grown” from a size perspective, but more importantly, they all evolved with the changing times and needs. Some of the teams I was on were critical for our sales grown in an emerging market and though they no longer exist by name, I can see the tangible impact we made.

Sarah

Manager, Commercial Sales

What are Rapid7 Perks + Benefits

Culture
Volunteer in local community
Once a year, Rapid7 offices across the globe close for the day so employees can volunteer.
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Hybrid work model
President's club
Employee awards
Flexible work schedule
Remote work program
Our remote work program includes full-time remote for specific positions, Work remotely on occasion as needed.
Diversity
Documented equal pay policy
Dedicated diversity and inclusion staff
Highly diverse management team
Rapid7 is led by a diverse management team that represent the security community we serve. We believe that we all have a responsibility to continuously improve our DE&I efforts.
Mandated unconscious bias training
We believe in continuous learning, our in-house trainers conduct consistent diversity trainings. We advocate for diverse thinking and strive to cultivate a workforce that mirrors the best minds.
Diversity employee resource groups
We have so many amazing and organically created employee resource groups! These internal Rapid7 communities allow for an authentic experience where diverse employees and allies can come together.
Hiring practices that promote diversity
We've taken the Parity Pledge, we reinforce strategic recruitment, we are committed to diversity partnerships, and we understand the importance in training around unconscious bias.
Health Insurance + Wellness
Flexible Spending Account (FSA)
Dental insurance
Vision insurance
Health insurance
Life insurance
Pet insurance
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
401(K) matching
Company equity
Employee stock purchase plan
Performance bonus
Child Care & Parental Leave
Generous parental leave
Family medical leave
Vacation + Time Off
Unlimited vacation policy
Generous PTO
Paid volunteer time
Our employees receive unlimited hours per year of paid volunteer time.
Paid holidays
Paid sick days
Employees receive unlimited hours per year of paid sick leave.
Bereavement leave benefits
Company-wide vacation
Office Perks
Commuter benefits
Company-sponsored outings
Free snacks and drinks
Rapid7 has a fully stocked kitchen including unlimited snacks, coffee, tea and all of the flavored sparkling water you can handle.
Some meals provided
Employees get free lunch during quarterly in-office Town Halls and some team meetings.
Company-sponsored happy hours
Onsite office parking
Fitness stipend
Home-office stipend for remote employees
Meditation space
Mother's room
Onsite gym
Professional Development
Job training & conferences
Lunch and learns
Promote from within
Continuing education stipend
Variable.
Continuing education available during work hours
Online course subscriptions available
Paid industry certifications

More Jobs at Rapid7

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about Rapid7Find similar jobs like this