Senior Security Engineer

MediaAlpha
Bellevue, WA, US
$140K-$210K a year
Full-time

Job Description

Job Description

MediaAlpha is a customer acquisition solutions provider powered by technology and data science. The company provides industry-leading solutions designed to reach consumers shopping within high-consideration categories such as property and casualty insurance, health insurance, life insurance, personal finance, travel, education, and more.

Our Senior Security Engineer is a generalist in overall information security practices necessary for an organization's operation, with a specialty in the technologies most relevant to MediaAlpha.

They are responsible for analyzing complex security issues to improve the company's overall posture, evaluating new functionalities to ensure production readiness, and ensuring our security objectives.

The security engineer shall maintain the day to day functions necessary to maintain the security operations of MediaAlpha while maintaining the security related technologies, and functions in the organization.

Responsibilities

  • Will ensure the secure implementation of our cloud environment in Amazon Web Services and our end user technology environment.
  • Evaluate security products with vendors and aid in the deployment. This may include server side, or end user side technologies.
  • Ensure safe, secure, and streamlined methods for our team members, customers, and partners to access information through MediaAlpha servers and products..
  • Evaluate new technologies or services and assist in the design and implement holistic security solutions.
  • Develop new playbooks and automation solutions for our security technologies.
  • Identify deficiencies in security services and propose plans for improvement and implementation.
  • Document security policies, controls, and processes, and develop runbooks and how-to guides for operational readiness of engineered solutions.
  • Evaluate and create cloud security baselines and implement monitoring to assure compliance.
  • Support the ongoing vulnerability and security testing tools used by the organization.
  • Address compliance requirements and provide evidence for audit.
  • Respond to security related concerns escalated by our monitoring providers.
  • Review system and security logs for issues daily. Ensure security patches / updates maintained on systems.
  • On-call 24 / 7 for security related issues.

Requirements

  • Minimum of 5 years of related experience
  • At least two certifications related to Information Security in the domains of Architecture, Networking, Engineering, or Operations required.
  • Expert level knowledge of Linux is required.
  • Prior experience working in a medium to large enterprise.
  • Expected to work in the office at least 2 days a week in Bellevue, WA or Los Angeles, CA

Additional Qualifications

  • Industry experience with AWS, Network security, and System security with demonstrable experience in Amazon Tools (Guard Duty, SNS, Route 53, Security Groups, Fargate Identity Center, and more )
  • Experience with vulnerability management, SIEM, compliance to security baselines, containers, and Identity and Access Management in the cloud (AWS Identity + OKTA).
  • Familiarity with industry standards, guidelines, and regulatory compliance requirements related to information security and cloud computing (NIST 800-171, SOC 2, etc..).
  • Experience with delivering reliable, available, and high-performance enterprise-scale solutions.

Familiarity with these is a plus :

  • Containers, CloudFormation, Pagerduty, Jira, OKTA, Crowdstrike, Hashicorp, Perl, Json, Linux, Bash, Apache
  • NIST 800-171, SOC 2
  • AWS such as : EC2, IAM, VPC, Route53, CloudWatch, Guard Duty, S3, Billing, Security Groups
  • Imperva WAF, ZScaler ZPA

Compensation & Benefits

We are excited to offer a competitive base pay range of $140,000 to $210,000 per year for this position, based on experience and qualifications.

But that's not all - as a valued member of our team, you will also have access to an array of top-notch benefits, including :

  • Annual bonus program and participation in our Restricted Stock Unit program
  • 100% Employer-paid health, dental, and vision insurance for you, your dependents, and spouse or registered domestic partner
  • 100% Employer paid long term disability, and life insurance
  • 401(k) retirement plan with matching contributions to help you plan for your future
  • Open Paid Time Off policy with a birthday day off and 11 holidays
  • Professional development reimbursement along with a subscription to Coursera
  • Cell Phone, Wellness, and Internet expense reimbursement, along with a subscription to the Calm App
  • 100% fully paid parental leave for team members up to 22 weeks for the primary caregiver and 12 weeks for the secondary caregiver
  • Dog-friendly offices (LA and AZ) along with a $300 pet adoption reimbursement

Diversity, Equity, and Inclusion

MediaAlpha is committed to fostering, cultivating, and maintaining a culture of diversity, equity, and inclusion. Our philosophy and actions are built on the premise that as an employer and citizens of our communities, we can create opportunities for lasting change.

Fair Chance

MediaAlpha will consider qualified applicants, including those with criminal histories, in a manner consistent with state and local "Fair Chance" laws.

We are also committed to providing reasonable accommodations for qualified applicants with disabilities and disabled veterans in our application process.

If you need assistance or an accommodation due to a disability, please contact us at [email protected] or (213) 316-6256.

30+ days ago
Related jobs
Promoted
VirtualVocations
Seattle, Washington

Key Responsibilities:Design, develop, and implement security architectures for on-chain and off-chain componentsLead incident response efforts and coordinate with internal and external teamsConduct regular penetration testing, forensic investigations, and develop security toolsRequired Qualification...

Promoted
TikTok
Seattle, Washington

Venture into the relatively uncharted domain of privacy engineering with us. As part of the broader TikTok Privacy & Security group, the Privacy Response team has a pivotal mission: to bolster TikTok's capabilities in managing and responding to privacy incidents and inquiries. Bachelor's degree ...

Apple
Seattle, Washington

This team collaborates closely with operating systems engineers and security engineers to improve the security and stability of C, C++, Objective-C, and Swift codebases in Apple’s platform and ecosystem. This role will involve developing compiler- and OS-assisted program analysis features, mentoring...

Lyft
Seattle, Washington

The security team designs and builds Lyft's security architecture, consults with other teams as they build and launch new products and features, proactively plans for the unexpected, and responds to incidents that occur. We try to approach security from a software engineering standpoint. Lyft’s engi...

Microsoft
Redmond, Washington

Senior Security Software Engineer. We want to reshape security and empower every user, customer, and developer with a security cloud that protects them with end to end, simplified solutions. The Microsoft Security organization accelerates Microsoft’s mission and bold ambitions to ensure that our com...

Snowflake
Bellevue, Washington

Projects focus on building a platform that makes it easy to deploy and maintain security services, unifying security experience for developers, increasing developer autonomy as it pertains to security, detecting security vulnerabilities, secure-by-default solutions, and leveraging data to drive secu...

Aurora
Seattle, Washington

Fundamental understanding of threat modeling, network security, OS security, AWS security best practices. Aurora’s Cloud Security team’s mission is to design and build security capabilities for Aurora Services. Experience with AWS security controls or equivalent cloud security experience. Aurora is ...

Oleria Security
Bellevue, Washington

Founded by cybersecurity industry veterans with decades of experience building and operating some of the world's largest security programs, Oleria allows organizations to pursue their best ideas, removing the barriers that keep team members from collaborating. Oleria was founded by notable industry ...

Foursquare
WA

The Senior Staff Engineer, Security will have responsibility for all data/information security policies, standards, evaluations, and determining, implementing, and supporting cyber security standards for the global enterprise. Senior Staff Engineer, Security . You will be involved in all facets...

Oleria Security
Bellevue, Washington

Founded by cybersecurity industry veterans with decades of experience building and operating some of the world's largest security programs, Oleria allows organizations to pursue their best ideas, removing the barriers that keep team members from collaborating. Oleria was founded by notable industry ...