Description
The Security Engineer II develops, enhances, and maintains applications that support automated information security processes, vulnerability management, threat intelligence, and compliance enforcement, with supervision, to advance CMEG information security capabilities. The incumbent should have knowledge of the Java programming language and a basic knowledge of information security tooling and automation. They should have some ability to work independently and as part of a team and also have good written and oral communication skills.
Security Engineer II
- Designs, develops, tests, and maintains Java-based systems supporting security tools and platforms, with supervision.
- Develops, tests, and maintains integrations with third-party security, collaboration, and ITSM tools such as Qualys, Google Container Analysis, Jira, Archer, Remedy, and Service Now, with supervision.
- Writes automation supporting vulnerability management and sensitive data remediation workflows, with supervision.
- Uses best practices when developing solutions.
- Writes unit tests with minimal supervision.
- Follows secure coding practices.
Principle Accountabilities
- Improves effectiveness of the vulnerability management program through automation.
- Ensures timely and accurate execution of automated security tasks.
- Collaborates with more senior team members to continuously identify automation opportunities and implement solutions.
- Defines simple problems. Gathers and compares data about problems and documents the details to assist more senior engineers.
- Exhibits basic proficiency with programming language, can write code and tests with guidance
Skills & Software Requirements
- Java experience (1-3 years)
- Basic knowledge of Linux environments and shell scripting
- Familiarity with issue tracking systems ( eq. Jira)
Nice to Have
- Experience with security tooling and automation
- Familiarity with containerization and cloud platforms
- Basic knowledge of SQL commands and programming with databases
- Scripting language experience (Python, Perl, Powershell, 1-3 years)
- Familiarity with REST and JSON
- Familiarity with secure coding practices and basic security concepts