Forma parte del equipo de NIKE, Inc.
NIKE, Inc. hace más que equipar a los mejores atletas del mundo. Es un lugar para explorar el potencial, eliminar barreras y superar los límites establecidos. La empresa busca personas que puedan crecer, pensar, soñar y crear. Su cultura se nutre de la diversidad y fomenta la creatividad. La marca busca triunfadores, líderes y visionarios. En NIKE, Inc., se trata de que cada persona aporte sus habilidades y pasión para afrontar un mundo desafiante y en constante evolución.
WHO YOU’LL WORK WITH
You will report to the Director, Cyber Security Engineering located at India Technology Center (ITC). We are a diverse, cross-functional team that collaborates globally across the organization with a variety of stakeholders from service desk technicians to system architects, developers and lawyers. You will partner closely with Cyber Defense, Enterprise Cyber Security Consulting, Data Protection, Windows Client/Server Platform and Cloud Security/Automation teams to assess, analyze, and optimize operational tasks, functions, documenting and processes.
WHO WE ARE LOOKING FOR
We’re looking for an Senior Security Automation Engineer. This role on the team will be focused on the automation and integration of various security tools to drive accountability & visibility of Nike's high-risk findings. Work with multiple data sources, including all data and other enterprise data, for contextual enrichment to drive actional output and automated vulnerability management lifecycle. In addition, you will work with technical and business teams to understand customer use cases for remediation of vulnerabilities/Risks and provide solutions to create self-service visibility into security findings for mitigation and automated reporting. You will also improve Nike's security posture by advocating for security best practices and implementation. Ours is a fast-paced, forward-thinking team constantly innovating and passionate about data and risk reduction.
WHAT YOU’LL WORK ON
- Bachelor’s or Master’s degree preferred in computer science, information assurance with minimum 7+ years of relevant experience.
- Expertise in interpreted languages (Python is a must) and high-level languages (Java script, .Net, PowerShell) with full-stack development experience
- Hands on experience with ETL tools (i.e. GIT hub, Apache Nifi, MS-SSIS, jasper) and concepts
- Software development background and strong knowledge of software development lifecycles
- Previous experience deploying and maintaining configuration as code systems, services, containers and applications in AWS, Azure and/or GCP
- Ability to develop and communicate recommendations to management
- Ability to translate technical security vulnerabilities into business risk through automation.
- Strong problem-solving and conceptual thinking abilities
- Strong ability to reverse engineer tools, exploits and open-source applications and ability to develop them
- Experience looking for application security vulnerabilities such as Cross Site Scripting, SQL Injection, Cookie Manipulation, Buffer Overflows, etc.
- Familiarity with Windows and Unix Operating Systems
- If someone have worked on cloud automation would be a added advantage.
- Developing automation & complex orchestration to scale out the vulnerability or risks, output of vulnerability data and correlated (enrichment) data across the organization.
- Assist in developing automated solutions with scripting language like Python, Ansible, Perl, Powershell etc. with maintaining pipeline integration of security tools into various development SDLCs.
- Educate Engineers, developers, and product teams on the importance of vulnerability management(Risks), effectively utilize the tools and remediate findings identified in an automated fashion.
- Continually evaluate the current state of the program; work with the team constantly find ways to automate and develop future roadmap.
- Communicate complex technical issues simply to different audiences.
- Ability to quickly learn new Information Security concepts and adapt to a fast-paced, ever-changing organization.
- Will be working on Azure, AWS, GCP and AliCloud cloud platforms to automate our security challenges.
NUESTRO PLAN DE CONTRATACIÓN
01 Postúlate
Nuestros equipos están formados por diversos conjuntos de habilidades, bases de conocimientos, contribuciones, ideas y antecedentes. Queremos que encuentres la opción perfecta: revisa las descripciones de los puestos, los departamentos y los equipos para descubrir la función ideal para ti.
02 Habla con un reclutador o haz una evaluación
Si te seleccionan para un puesto corporativo, un reclutador se pondrá en contacto contigo para iniciar tu proceso de entrevistas y será tu contacto principal durante todo el proceso. En el caso de los puestos de Retail, tendrás que realizar una evaluación interactiva que incluye una conversación y cuestionarios. Te tomará entre 10 y 20 minutos completarla. Independientemente del puesto, queremos conocerte a ti, a tu yo en su totalidad, así que comparte quién eres, qué te hace singular y qué deseas hacer.
03 Entrevista
Entra en esta fase con confianza: investiga, entiende lo que buscamos y prepárate para las preguntas que nos harán saber más sobre ti y tus antecedentes.