Company

ButterflymxSee more

addressAddressRemote - United States
CategoryInformation Technology

Job description

Founded in 2014, ButterflyMX is on a mission to empower people to open and manage doors & gates from a smartphone. Our products are installed in more than 10,000+ multifamily, commercial, gated communities, and student-housing properties worldwide, including properties developed, owned, and managed by the most trusted names in real estate.

Our features are designed for developers, owners, property managers, and tenants. And our products lower operating costs and improve tenant satisfaction. Developers and owners no longer need to run building wiring or install in-unit hardware. Property managers can grant building access, revoke permissions, and review entry logs from an online dashboard. Residents can open doors from their smartphones, issue visitor access, and see who is trying to enter the building.

Fantastic people are the key to our success. As a distributed, primarily remote workforce, we’re looking for more intelligent, passionate, collaborative, and down-to-earth individuals to join our growing team. Our culture is transparent and flexible; our benefits range from a 401(k) match to quarterly stipends for self-care. While we work incredibly hard to improve the experience of everyone who lives, works, and visits our communities, we always have time for a good laugh

Are you ready for an exciting, unique & game-changing opportunity? Join us as our first Security Engineer at ButterflyMX, where you will assume a pivotal role in delivering substantial value to the organization by prioritizing the protection of clients', tenants’ & employees' information assets, ensuring the comprehensive security of systems & data. You will mature, build, scale & operationalize our information security program as our first dedicated Security Engineer. Your expertise will be instrumental in safeguarding our innovative solutions & protecting our valuable assets &, most importantly, our customers & tenants. 

As our Security Engineer at ButterflyMX, you'll be a leader wearing multiple “security hats” to ensure the resilience, safety, confidentiality, availability & integrity of our cloud, IoT, mobile, web-based solutions & data throughout the environment. This role will report directly into our VP of Information Security & Privacy.

What you'll do...

  • Design, implement, mature & maintain our robust security controls & processes across our technology stack to protect sensitive data & systems
  • Lead vulnerability management & remediation efforts to improve the security posture & resiliency of ButterflyMX – prioritizing issues, implementing mitigations, & designing strategic preventative controls 
  • Extend our detection & response capabilities – building scalable solutions to identify malicious activity, triage alerts, & investigate & remediate incidents
  • Drive security incident response efforts, including containment, investigation, recovery, post-incident analysis, lessons learned & ensuring remediation
  • Ensure security controls are implemented to enable compliance with industry standards, regulations, frameworks,& best practices (e.g., SOC2, ISO, NIST, CIS, GDPR, CCPA)
  • Evaluation, analysis & implementation of new security technologies & solutions to enhance the organization’s security posture
  • Collaborate with cross-functional teams to integrate security seamlessly into our product development lifecycle
  • Stay up-to-date with the latest security threats, technologies, & trends to proactively protect our systems
  • Develop & conduct regular security awareness training & security education programs for employees
  • Serve as a point of contact for customers & partners regarding security-related inquiries.
  • Foster a culture of security awareness & accountability throughout the organization.

Requirements

  • 5+ years of Security Engineering experience building, managing & scaling security operations at a fast-paced, agile/dynamic, cloud native, technology-driven startup 
  • You enjoy working as a Security Engineer in organizations that develop software as a service &/or operate managed infrastructure & technology services for their own customers
  • Experience securing a tech stack/solution that includes SaaS, Mobile, & IoT
  • Experience working with cross-functional teams to identify & mitigate security, compliance & data privacy risks
  • Proficiency with deploying, operationalizing & managing security solutions in a remote first organization, with a cloud tech stack built for providing SaaS. 
    • AWS Security SME - experiential knowledge of securing EC2, S3, Lambda, EKS
    • AWS Security Stack Experience - WAF, Inspector, Security Hub, GuardDuty, etc..
    • Security Overlay Solutions: EDR, SIEM, CNAPP/CSPM, DSPM, DLP, IDS/IPS..
    • Google Workspace, Apple, Windows, MDM, Secure Email Gateway
  • Extensive experience & expertise across multiple security domains including Cloud Security, data security, network security, application security, incident management, threat/vulnerability/patch/configuration management, identity & access management..
  • Strong understanding of security best practices, frameworks, standards, & compliance requirements, & particularly how these apply to a startup environment through enterprise environments. Experience maturing security controls as an organization matures.
    • Experience maintaining SOC 2 Type II compliance & associated security controls within an organization
    • Demonstrated technical expertise in implementing data privacy controls & safeguards to include facilitating the deployment of technical measures to ensure compliance with data privacy regulations such as GDPR & CCPA
  • Expertise in DevSecOps practices, such as automating security testing within CI/CD pipelines & conducting static & dynamic code analyses, through remediation of findings.
  • Experience automating security controls. Proven technical proficiency using Terraform & other infrastructure as code tools, with a strong track record of managing vulnerabilities in ephemeral cloud infrastructure environments. 
  • Incident response management: Experience in developing & implementing incident response plans, conducting investigations, & managing security incidents effectively
  • Demonstrated ability to educate an engineering audience about technical application security vulnerabilities, i.e., OWASP Top Ten, OWASP API Security Top 10
  • Adept in a data-driven approach for decision-making & a risk-based mindset to prioritize & address security concerns effectively.
  • Experience with implementing Security & Privacy by design principles into a development lifecycle involving incorporating threat modeling to identify potential risks & ultimately design appropriate security controls.
  • Customer focused & Solution oriented, Enthusiastic, Empathetic, Adaptable/Flexible, Bias for Action, Forward thinking, Optimistic, Trusted Advisor. Everyone is a customer & everyone is on the security team!
  • A strong inclination to dive into the details, actively engaging in hands-on work.
  • Continuous improvement mindset. Pursues ongoing professional development, stays updated with emerging threats & technologies.
  • Industry certifications such as AWS Security Certified, CISSP, CCSP, CSSLP, GXPEN, OSCP, SANS Certifications, Burp Suite Certified, Security+, CEH, CIPP, CIPT

Benefits

  • Comprehensive Medical (ButterflyMX covers 90% of the cost) starting day 1
  • Dental and Vision plans (ButterflyMX covers 100% of the cost) starting day 1
  • 401(k) plan with a match
  • 13 paid holidays and 25 days of PTO
  • Paid Family Leave
  • Employee Assistance Program
  • Quarterly self-care stipends
  • HealthAdvocacy Program
  • Access to optional benefits, including pre-tax flexible healthcare spending accounts (FSA and HSA), Dependent Care FSA, and Commuter Benefits, as well as optional Supplemental Life, AD&D, Hospital Indemnity, Disability, Legal, Accident, Critical Illness, Pet, and Personal Liability Insurance
  • Collaborative, dynamic work environment filled with kind, intelligent people who are working hard on an industry-defining product


EEO STATEMENT

ButterflyMX is an equal-opportunity employer, and we value diversity at our company. We strive to create an accessible and inclusive experience for all candidates and employees. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. You must have the authorization to work in the US to become an employee. Please let our recruiting team know if you need reasonable accommodation during the application or the recruiting process.

Benefits

401(k) matching, Career development, Flex hours, Flex vacation, Health care, Insurance, Medical leave, Startup environment
Refer code: 9242064. Butterflymx - The previous day - 2024-05-12 13:27

Butterflymx

Remote - United States
Jobs feed

Medical Research Specialist, Bacterial Research

Tulane University

Covington, LA

Principal Attorney I

York Power Authority

United States

Research Assistant

Tulane University

New Orleans, LA

Senior Research Scientist

University Of Denver

Denver, CO

Part-Time Faculty: Physics - Fall 2024

Quinnipiac University

Hamden, CT

General Production 2nd Shift in Sheboygan Falls WI

Johnsonville, Llc

Sheboygan Falls, WI

Production Supervisor 3rd shift in Fresno CA

Mission Foods

Fresno, CA

Research Intern | Cherry X-Disease

Washington State University

Wenatchee, WA

Research Technician

The University Of Oklahoma

Norman, OK

Share jobs with friends

Cloud Security Engineer, Senior

Mantech

Hamilton, VA

22 hours ago - seen

Cloud Security Engineer, Senior

Booz Allen Hamilton

Ark, VA

23 hours ago - seen

Cloud Security Engineer, Senior

Sabre Corporation

Ark, VA

23 hours ago - seen

Senior Cloud Security Engineer

Bluevoyant

Remote - United States

2 days ago - seen

Cloud Security Engineer

Stifel

Saint Louis, MO

3 days ago - seen

Cloud Security Engineer

Stifel

Memphis, TN

3 days ago - seen

Senior Cloud Security Engineer

Tempus

Chicago, IL

5 days ago - seen

AWS Cloud Security Engineer

Pieris Consulting, Llc

Dallas, TX

6 days ago - seen

Security Engineer, Cloud Infrastructure, Senior

Bloomberg Industry Group

United States, Virginia, Arlington

Arlington, VA

6 days ago - seen

Cloud Security Engineer

City National Bank Of Florida

Miami, FL

a week ago - seen

Senior Cloud Security Engineer

Hearst

Charlotte, NC

a week ago - seen

Software Development Engineer, Secure Cloud Gateway

Amazon Development Center Us Inc B02

Herndon, VA

2 weeks ago - seen

Cloud Security Engineer

Cybertec, Inc.

Illinois, United States

2 weeks ago - seen

Senior Cloud Security Engineer

Alludo

Austin, TX

2 weeks ago - seen

Cloud Security Engineer

The Aes Corporation

Indianapolis, IN

2 weeks ago - seen

Senior Security Engineer, Cloud Threat Intelligence

Google

Kirkland, WA

2 weeks ago - seen

Security Engineer, Cloud Threat Intelligence

Google

Kirkland, WA

2 weeks ago - seen

Senior Cloud Security Engineer (Remote)

York State Department Of Labor

New York, NY

3 weeks ago - seen