Forma parte del equipo NIKE, Inc.
NIKE, Inc. hace más que equipar a los mejores atletas del mundo. Es un lugar para explorar el potencial, borrar las fronteras y ampliar los límites de lo que se puede ser. La empresa busca personas que puedan crecer, pensar, soñar y crear. Su cultura aumenta al adoptar la diversidad y recompensar la imaginación. La marca busca a los triunfadores, los líderes y los visionarios. En NIKE, Inc. se trata de que cada persona aporte sus habilidades y pasión a un juego desafiante y en constante evolución.
WHO YOU’LL WORK WITH
You will report to the Director, Cyber Security Engineering located at India Technology Center (ITC). We are a diverse, cross-functional team that collaborates globally across the organization with a variety of stakeholders from service desk technicians to system architects, developers and lawyers. You will partner closely with Cyber Defense, Enterprise Cyber Security Consulting, Data Protection, Windows Client/Server Platform and Cloud Security/Automation teams to assess, analyze, and optimize operational tasks, functions, documenting and processes.
WHO WE ARE LOOKING FOR
We’re looking for an Senior Security Automation Engineer. This role on the team will be focused on the automation and integration of various security tools to drive accountability & visibility of Nike's high-risk findings. Work with multiple data sources, including all data and other enterprise data, for contextual enrichment to drive actional output and automated vulnerability management lifecycle. In addition, you will work with technical and business teams to understand customer use cases for remediation of vulnerabilities/Risks and provide solutions to create self-service visibility into security findings for mitigation and automated reporting. You will also improve Nike's security posture by advocating for security best practices and implementation. Ours is a fast-paced, forward-thinking team constantly innovating and passionate about data and risk reduction.
WHAT YOU’LL WORK ON
- Bachelor’s or Master’s degree preferred in computer science, information assurance with minimum 7+ years of relevant experience.
- Expertise in interpreted languages (Python is a must) and high-level languages (Java script, .Net, PowerShell) with full-stack development experience
- Hands on experience with ETL tools (i.e. GIT hub, Apache Nifi, MS-SSIS, jasper) and concepts
- Software development background and strong knowledge of software development lifecycles
- Previous experience deploying and maintaining configuration as code systems, services, containers and applications in AWS, Azure and/or GCP
- Ability to develop and communicate recommendations to management
- Ability to translate technical security vulnerabilities into business risk through automation.
- Strong problem-solving and conceptual thinking abilities
- Strong ability to reverse engineer tools, exploits and open-source applications and ability to develop them
- Experience looking for application security vulnerabilities such as Cross Site Scripting, SQL Injection, Cookie Manipulation, Buffer Overflows, etc.
- Familiarity with Windows and Unix Operating Systems
- If someone have worked on cloud automation would be a added advantage.
- Developing automation & complex orchestration to scale out the vulnerability or risks, output of vulnerability data and correlated (enrichment) data across the organization.
- Assist in developing automated solutions with scripting language like Python, Ansible, Perl, Powershell etc. with maintaining pipeline integration of security tools into various development SDLCs.
- Educate Engineers, developers, and product teams on the importance of vulnerability management(Risks), effectively utilize the tools and remediate findings identified in an automated fashion.
- Continually evaluate the current state of the program; work with the team constantly find ways to automate and develop future roadmap.
- Communicate complex technical issues simply to different audiences.
- Ability to quickly learn new Information Security concepts and adapt to a fast-paced, ever-changing organization.
- Will be working on Azure, AWS, GCP and AliCloud cloud platforms to automate our security challenges.
PROGRAMA DE CONTRATACIÓN
01. Presenta una solicitud
Nuestros equipos son diversos y están formados por personas que aportan capacidades, conocimientos, ideas y experiencias diferentes. Queremos que encuentres el trabajo perfecto para ti, así que lee las descripciones de los puestos, los departamentos y los equipos.
02. Conoce al/a la responsable de la selección de personal o haz una evaluación
Si te seleccionan para ocupar un puesto corporativo, la persona responsable de la contratación te contactará para comenzar las entrevistas y será tu punto de contacto principal durante todo el proceso. Para los puestos de Retail, tendrás que completar una evaluación interactiva de entre 10 y 20 minutos que incluye una conversación y cuestionarios. Independientemente de tu puesto, queremos conocer todas tus facetas, así que no tengas reparo en enseñar cómo ofreces un servicio premium y qué es lo que te diferencia de los demás.
03. Haz una entrevista
Enfréntate a esta fase con confianza. Para ello, investiga, entiende lo que buscamos y prepárate para responder a las preguntas que te hagan para conocerte mejor a ti y a tu experiencia.