הצטרפו לצוות של NIKE, Inc.
NIKE, Inc. לא רק מלבישה את הספורטאים הטובים בעולם. זה מקום שבו תוכלו לגלות את הפוטנציאל שלכם, לפרוץ מחסומים ולמתוח את גבולות האפשר. החברה מחפשת אנשים שיכולים לצמוח, לחשוב, לחלום וליצור. התרבות שלה מעודדת גיוון ומתגמלת דמיון, וזה מוביל לשגשוג. המותג זקוק לאנשים ששואפים להגיע להישגים, להנהיג ולממש חזון משלהם. ב-NIKE, Inc., הרעיון הוא שכולם מביאים את המיומנויות והמסירות שלהם לידי ביטוי בסביבת משחק מאתגרת שמשתנה ללא הרף.
WHO YOU’LL WORK WITH
You will report to the Director, Cyber Security Engineering located at India Technology Center (ITC). We are a diverse, cross-functional team that collaborates globally across the organization with a variety of stakeholders from service desk technicians to system architects, developers and lawyers. You will partner closely with Cyber Defense, Enterprise Cyber Security Consulting, Data Protection, Windows Client/Server Platform and Cloud Security/Automation teams to assess, analyze, and optimize operational tasks, functions, documenting and processes.
WHO WE ARE LOOKING FOR
We’re looking for an Senior Security Automation Engineer. This role on the team will be focused on the automation and integration of various security tools to drive accountability & visibility of Nike's high-risk findings. Work with multiple data sources, including all data and other enterprise data, for contextual enrichment to drive actional output and automated vulnerability management lifecycle. In addition, you will work with technical and business teams to understand customer use cases for remediation of vulnerabilities/Risks and provide solutions to create self-service visibility into security findings for mitigation and automated reporting. You will also improve Nike's security posture by advocating for security best practices and implementation. Ours is a fast-paced, forward-thinking team constantly innovating and passionate about data and risk reduction.
WHAT YOU’LL WORK ON
- Bachelor’s or Master’s degree preferred in computer science, information assurance with minimum 7+ years of relevant experience.
- Expertise in interpreted languages (Python is a must) and high-level languages (Java script, .Net, PowerShell) with full-stack development experience
- Hands on experience with ETL tools (i.e. GIT hub, Apache Nifi, MS-SSIS, jasper) and concepts
- Software development background and strong knowledge of software development lifecycles
- Previous experience deploying and maintaining configuration as code systems, services, containers and applications in AWS, Azure and/or GCP
- Ability to develop and communicate recommendations to management
- Ability to translate technical security vulnerabilities into business risk through automation.
- Strong problem-solving and conceptual thinking abilities
- Strong ability to reverse engineer tools, exploits and open-source applications and ability to develop them
- Experience looking for application security vulnerabilities such as Cross Site Scripting, SQL Injection, Cookie Manipulation, Buffer Overflows, etc.
- Familiarity with Windows and Unix Operating Systems
- If someone have worked on cloud automation would be a added advantage.
- Developing automation & complex orchestration to scale out the vulnerability or risks, output of vulnerability data and correlated (enrichment) data across the organization.
- Assist in developing automated solutions with scripting language like Python, Ansible, Perl, Powershell etc. with maintaining pipeline integration of security tools into various development SDLCs.
- Educate Engineers, developers, and product teams on the importance of vulnerability management(Risks), effectively utilize the tools and remediate findings identified in an automated fashion.
- Continually evaluate the current state of the program; work with the team constantly find ways to automate and develop future roadmap.
- Communicate complex technical issues simply to different audiences.
- Ability to quickly learn new Information Security concepts and adapt to a fast-paced, ever-changing organization.
- Will be working on Azure, AWS, GCP and AliCloud cloud platforms to automate our security challenges.
תוכנית המשחק שלנו לגיוס עובדים
01 הגישו מועמדות
הצוותים שלנו מורכבים מאנשים שונים מבחינת המיומנויות, הידע, התרומה, הרעיונות והרקע שלהם. אנחנו רוצים שתמצאו את מה שמתאים לכם – עיינו בהגדרות של התפקידים השונים ובתיאורי המחלקות והצוותים כדי לגלות מה התפקיד שמתאים לכם.
02 היפגשו עם מגייס או עברו הערכה
אם נבחרתם לתפקיד במטה החברה, מגייס ייצור איתכם קשר כדי להתחיל את תהליך הריאיון והוא יהיה איש הקשר העיקרי שלכם לאורך כל התהליך. אם מדובר בתפקידים בחנויות, תצטרכו להשלים הערכה אינטראקטיבית שכוללת צ'אט ובחנים. ההערכה לוקחת בין 10 ל-20 דקות בערך. אנחנו רוצים לדעת מי אתם, לא משנה באיזה תפקיד אתם מתעניינים – אז נשמח שתספרו לנו מה הגישה שלכם לשירות ברמה עולמית ומה מיוחד בכם.
03 בואו לריאיון
כדאי להגיע לשלב הזה בתחושת ביטחון, אז מומלץ לבצע מחקר משלכם, להבין מה אנחנו מחפשים ולהיות מוכנים לענות על שאלות שמיועדות לגלות עוד פרטים עליכם ועל הרקע שלכם.