The Cloud Foundry team at Pivotal is looking for a great Sr. Security Engineer to join us in building our open platform as a service (PaaS), transforming how the world deploys and scales software.
You:
The Cloud Foundry team at Pivotal is looking for experienced security engineers to work on improving the security of the platform.
As a Sr. Security Engineer you will join our teams building the secure credential and identify management subsystems of the Cloud Foundry platform. If you have a love or hate for authentication and authorization systems, Oauth, PKI systems, RBAC and/or SAML, we need your help. You’ll be using the Spring framework to enhance the security of our open source platform and provide secure services to applications running on the platform.
The Cloud Foundry team works in small agile teams. As a security engineer you will regularly work on the security team, but you will also rotate to other teams either working on important security features or learning valuable things about the platform which are relevant to security. You should be comfortable writing code but also comfortable working on all aspects that improve security, e.g. human factors, penetration testing, and configuring security tools. You will also spread your domain knowledge to people on your own team as well as other teams. In addition, you will assist the Product Manager in story and overall product definition as well as in customer conversations. Overall you’ll be helping the greater Cloud Foundry team identify product gaps and opportunities around your domain.
Us:
Pivotal is on a mission to change the way the world builds software. The Cloud Foundry team is on a mission to change the way the world runs software. We are a building a platform that aims to make deploying, updating, scaling and monitoring all of an enterprise’s applications easy and secure.
Just as our platform is opinionated about the architecture of applications, we are opinionated about how software should be built. We pair program, all-day every-day, because we know it delivers remarkable results. We believe in working at a sustainable pace – you’ll typically code hard for 8 hours each day, but then you’re off work to relax, recharge, and refocus.
DESIRED QUALIFICATIONS:
Strong knowledge of web, security, and networking protocols
In-depth knowledge of security technologies such as cgroups, ACLs,RBAC, and OAuth2
Understanding of applied cryptography, including experience using cryptographic toolkits, such as OpenSSL, RSA BSAFE, Bouncy Castle, or similar
Experience with scalable web services and databases
Understand Kerberos, LDAP and Active Directory
5 years software development experience
2 years in security engineering, crypto, policy, auth or related technologies
Bachelor’s degree in Computer Science or equivalent experience
We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.
