Jobs
>
Minneapolis

    Senior Security Engineer - Minneapolis, United States - SPS Commerce

    Default job background
    Description
    Senior Security Engineer US-MN
    • Minneapolis Job ID: Type: Regular # of Openings: 1 Category: Technology SPS Commerce, Inc Overview SPS Commerce is hiring a Senior Security Engineer to ensure our development, infrastructure, and business practices have security defined, integrated, and implemented according to the SPS security incident monitoring program, and threat and vulnerability management best practices.
    You will work closely with cross-functional teams to ensure the effectiveness of our security tools and technologies.

    The ideal candidate will possess experience in information security, a strong understanding of various security tools, and proficiency in scripting and automation.

    Based in our office in downtown Minneapolis, our hybrid work model provides the best of both worlds. We #succeedtogether through in person collaboration, balanced with remote work to provide flexibility. Our team is typically in the office 1 day per week. Why join SPS? We solve retail supply chain problems by cutting through inefficiency with innovation and automation.

    At SPS we empower retailers, suppliers, distributors, grocers, and logistics partners to work better together with our people, our process, and our tech products.

    We have the world s largest retail network, and we don t just lead the industry, we are the industry.

    At SPS, we believe every employee makes a difference. We ensure employees have the tools, resources, and training to explore new ideas and execute them. Our success comes from playing as a team and always playing to win. Careers don t just grow here, they re made here. What is the day-to-day like? In this role you will have primarily responsibility as our security tools engineer. You will maintain all of our security platforms, keeping them up and running and ensuring the operate as intended.

    Your responsibility will be day-to-day management of the tools, keeping them efficient and identifying gaps so the team can work on driving improvements.

    * Design, deploy, and maintain security tools such as CrowdStrike and Rapid7 to enhance the organization's security posture.

    * Configure and manage SIEM (Security Information and Event Management) systems to monitor, detect, and respond to security incidents effectively.

    * Collaborate with internal teams to identify security requirements and implement solutions that meet business needs while adhering to industry best practices.

    * Develop and maintain custom scripts and automation tools, particularly using Python, to streamline security processes and enhance efficiency.

    * Conduct regular assessments of security tools and technologies to ensure they remain effective and aligned with evolving security threats.

    * Provide technical expertise and support to troubleshoot security tool-related issues and address vulnerabilities in a timely manner. * Stay updated on emerging security trends, vulnerabilities, and threat actors to proactively enhance the organization's security defenses. * Devise reasonable, risk-based security controls to monitor and protect SPS and align with our business objectives. * Guide daily security operations functions like (but not limited to): vulnerability scanning, threat monitoring, code scanning, etc. * Help implement the security program strategic plan that improves program maturity and compliance. * Create or write automation to orchestrate security-related processes leveraging COTS and custom code. * Perform security testing (incorporating methodologies like pen testing, red-teaming, SAST, DAST, etc.) of infrastructure and applications as needed.

    * Effectively communicate results of security program findings to a broad and diverse set of stakeholders across the company * Participate in development and evaluation of security toolsets to develop SecOps capability.

    * Support and/or lead periodic internal and external security assessments, third-party assessments and due diligence initiatives. * Develop, manage, and consult on the technical architectu e for enterprise security controls.

    * Partner with business and technology operations groups to maintain the security threat monitoring infrastructure and tools (perimeter controls, intrusion detection / protection devices, vulnerability scanning tools, security event correlation tools, content surveillance and filtering devices).

    What experience and skills do you need? * 5 years of experience with bachelor s degree in related business or technical areas; or 8 years of experience without a degree.

    * Equivalent work experiences include security engineering/architecture experience and designing and implementing standards, specifications, and procedures. * Experience in providing technical security guidance to technical and non-technical audiences.

    * Experience with compliance standards from SOC 2, SOX, ISO-27001, HIPAA, and PCI-DSS * Working knowledge of development operations practices accountable for driving the integration of security into development operations and existing continuous delivery / continuous improvement business processes * Strong proficiency in security tools such as CrowdStrike and Rapid7 * Experience with SIEM platforms, including configuration, management, and customization.

    * Proficiency in scripting and automation, with a focus on Python. * Familiarity with CI/CD pipelines and integration of security tools into the development lifecycle. * Excellent problem-solving skills and the ability to troubleshoot complex technical issues. * Strong communication skills and the ability to collaborate effectively with cross-functional teams.

    What experience is preferred? * System configuration and architecture experience * Strong knowledge of industry accepted information security best practices, standards, and policies such as NIST CSF, OWASP, CIS, STIG, MITRE , etc.

    * Proven ability to manage information security service and operation through effective management of resources.

    * Demonstrated experience and understanding of business security and compliance requirements and ability to translate into well-engineered & integrated business solutions.

    * Demonstrated ability to take initiative and accountability for achieving results. * Driven to understand & appropriately respond to customers' business needs. * Certifications & Licenses: One or more industry certification
    • CISSP, CISM, CISA, CCFE, GIAC, CCIE, CCSP, ABCP, MBCP, ISA, PCIP, CEH * Actively participates and contributes to the security community.
    SPS Commerce offers a comprehensive package of benefits including health, dental, vision, disability, and life insurance, paid time-off, 401(k), health and flexible spending accounts, stock purchase plan and more. * EOE including disability / veteran * Apply Here: PI

  • Tactile Medical

    Security Engineer

    3 weeks ago


    Tactile Medical Minneapolis, United States

    Overview: · Position Summary · The Security Engineer identifies, assesses, and manages security risks for Tactile Medicals data and infrastructure in the enterprise and cloud environments. The Security Engineer conducts vulnerability assessments to identify security risks from ...

  • Motion Recruitment Partners, LLC

    Security Engineer

    3 weeks ago


    Motion Recruitment Partners, LLC Minneapolis, United States

    This national bank is looking for a Lead Cloud Security Engineer to join their Identity and Access Management team. It is a generalist role that involves DevSecOps, endpoint security, incident mitigation, and more. The position involves a little bit of everything, but the focus w ...

  • Motion Recruitment Partners LLC

    Security Engineer

    3 days ago


    Motion Recruitment Partners LLC Minneapolis, United States

    Security Engineer / GCP Required / IAM · Minneapolis, Minnesota · Hybrid · Contract · $75/hr - $84/hr · This national bank is looking for a Lead Cloud Security Engineer to join their Identity and Access Management team. It is a generalist role that involves DevSecOps, endpoi ...

  • Calabrio

    Security Engineer

    3 weeks ago


    Calabrio Minneapolis, United States

    Calabrio is looking for a Security Engineer to join our Information Security team The mission of Calabrio Information Security is to protect the confidential information of Calabrio and its customers. · Calabrio is seeking a Security Engineer to advance the efficiency and effect ...

  • Calabrio

    Security Engineer

    3 weeks ago


    Calabrio Minneapolis, United States

    Calabrio is looking for a Security Engineer to join our Information Security team The mission of Calabrio Information Security is to protect the confidential information of Calabrio and its customers. Calabrio is seeking a Security Engineer to advance the efficiency and effective ...


  • Glocomms Minneapolis, United States

    Title: Cyber Security Engineer · Location: Minneapolis, MI · Compensation: Open/Competitive · Glocomms are partnered with a global boutique Hedge Fund in the search for an experienced Cyber Security Engineer to join a new division focused on Enterprise Infrastructure Security. I ...


  • Optomi Minneapolis, United States

    Cloud Security Engineer (Azure/100% Remote) · Optomi, in partnership with an industry leader, is seeking a Cloud Security Engineer. This person will help to manage an Azure security, environment, help with investigating incidents and remediation, and conduct rollouts of new tools ...


  • Allspring Global Investments Minneapolis, United States Full time

    Elevate Your Career · Work where your ideas have impact · COMPANY · Allspring Global Investments is a leading independent asset management firm that offers a broad range of investment products and solutions designed to help meet clients' goals. At Allspring, our vision is to ...


  • Collabera Minneapolis, United States

    Home · Search Jobs · Job Description · Information Security Engineer · Remote: Minneapolis, Minnesota, US · Salary: $45.00 Per Hour · Job Code: · End Date: · Days Left: 24 days, 3 hours left · Apply · **Contract-To-Hire** · Must-Have:5+ years of information security appl ...


  • Collabera Minneapolis, United States

    Home · Search Jobs · Job Description · Information Security Engineer · Remote: Minneapolis, Minnesota, US · Salary: $45.00 Per Hour · Job Code: · End Date: · Days Left: 26 days, 3 hours left · Apply · **Contract-To-Hire** · Must-Have:5+ years of information security appl ...


  • U.S. Bank Minneapolis, United States

    At U.S. Bank, were on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. We believe it takes all of us to bring our shared ambition to life, and each p ...


  • Rvohealth Minneapolis, United States

    RVO Health is a first-of-its-kind comprehensive consumer healthcare platform that meets people where they are in their personal journeys and connects them with both the information and the care they need. RVO Health is a partnership between Red Ventures and UnitedHealth Group. To ...


  • Randstad Minneapolis, United States

    application security engineer. · minneapolis , minnesota · posted 3 days ago · job details · summary · $120,000 - $125,000 per year · permanent · bachelor degree · category computer and mathematical occupations · reference · job details · job summary · Preferred Quali ...


  • Anaplan Minneapolis, United States

    Anaplan. As the engine behind back-office system connectivity, you might not recognize our name, but our customers rank among the who's who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, and Bayer are just a few of the 2,000+ companies that rely on our best-in-class platform and ...


  • C4 Technical Services Minneapolis, United States

    Security Engineer IV (AWS, Terraform) · Location: Richfield, MN (Hybrid Schedule) · Tell us about your department: · Cloud Native Foundations is creating a platform based on AWS Cloud Native capabilities that will allow product teams control their infrastructure and deployments o ...


  • WELLS FARGO BANK Minneapolis, United States Full time

    About this role: · Wells Fargo is seeking a Lead Information Security Engineer in Cybersecurity to support Wells Fargo Identity Access Management. This position is a technical role that will assist with support of the production and test infrastructure and system for the IBM Secu ...


  • U.S. Bank Minneapolis, United States

    At U.S. Bank, we're on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succeed. · We believe it takes all of us to bring our shared ambition to life, and ea ...


  • Adobe Minneapolis, United States

    Our Company · Changing the world through digital experiences is what Adobes all about. We give everyonefrom emerging artists to global brandseverything they need to design and deliver exceptional digital experiences Were passionate about empowering people to create beautiful and ...


  • Consolidated Communications Minneapolis, United States

    Responsibilities · Classification: Exempt/Non-BargainingPosition may be located remote. #LI-RemoteJoin a team that offers growth potential, competitive compensation, an excellent benefits package and the opportunity to make a significant impact on the lives of customers and comm ...


  • CrowdStrike Minneapolis, United States

    CrowdStrike, Inc. Full time R18713 About The Role: Help us protect CrowdStrike and its customers from the most advanced threats by securing our applications. CrowdStrike s Product Security team breaks the mold of traditional internal security, and focuses on active threats to Cro ...