Zostań członkiem zespołu NIKE, Inc.
NIKE, Inc. to nie tylko firma, która ubiera najlepszych sportowców na świecie. To miejsce, w którym możesz odkryć swój potencjał, przekroczyć granice oraz sprawić, że niemożliwe staje się możliwe. Firma poszukuje ludzi, którzy chcą się rozwijać i potrafią myśleć, marzyć oraz tworzyć. Jej kultura rozwija się dzięki różnorodności i wspieraniu kreatywności. Potrzebni są w niej ludzie ambitni, urodzeni liderzy i prawdziwi wizjonerzy. W NIKE, Inc. każda osoba wnosi do gry swoje umiejętności oraz pasje. Dzięki temu ciągle się rozwijamy.
WHO YOU’LL WORK WITH
You will report to the Director, Cyber Security Engineering located at India Technology Center (ITC). We are a diverse, cross-functional team that collaborates globally across the organization with a variety of stakeholders from service desk technicians to system architects, developers and lawyers. You will partner closely with Cyber Defense, Enterprise Cyber Security Consulting, Data Protection, Windows Client/Server Platform and Cloud Security/Automation teams to assess, analyze, and optimize operational tasks, functions, documenting and processes.
WHO WE ARE LOOKING FOR
We’re looking for an Senior Security Automation Engineer. This role on the team will be focused on the automation and integration of various security tools to drive accountability & visibility of Nike's high-risk findings. Work with multiple data sources, including all data and other enterprise data, for contextual enrichment to drive actional output and automated vulnerability management lifecycle. In addition, you will work with technical and business teams to understand customer use cases for remediation of vulnerabilities/Risks and provide solutions to create self-service visibility into security findings for mitigation and automated reporting. You will also improve Nike's security posture by advocating for security best practices and implementation. Ours is a fast-paced, forward-thinking team constantly innovating and passionate about data and risk reduction.
WHAT YOU’LL WORK ON
- Bachelor’s or Master’s degree preferred in computer science, information assurance with minimum 7+ years of relevant experience.
- Expertise in interpreted languages (Python is a must) and high-level languages (Java script, .Net, PowerShell) with full-stack development experience
- Hands on experience with ETL tools (i.e. GIT hub, Apache Nifi, MS-SSIS, jasper) and concepts
- Software development background and strong knowledge of software development lifecycles
- Previous experience deploying and maintaining configuration as code systems, services, containers and applications in AWS, Azure and/or GCP
- Ability to develop and communicate recommendations to management
- Ability to translate technical security vulnerabilities into business risk through automation.
- Strong problem-solving and conceptual thinking abilities
- Strong ability to reverse engineer tools, exploits and open-source applications and ability to develop them
- Experience looking for application security vulnerabilities such as Cross Site Scripting, SQL Injection, Cookie Manipulation, Buffer Overflows, etc.
- Familiarity with Windows and Unix Operating Systems
- If someone have worked on cloud automation would be a added advantage.
- Developing automation & complex orchestration to scale out the vulnerability or risks, output of vulnerability data and correlated (enrichment) data across the organization.
- Assist in developing automated solutions with scripting language like Python, Ansible, Perl, Powershell etc. with maintaining pipeline integration of security tools into various development SDLCs.
- Educate Engineers, developers, and product teams on the importance of vulnerability management(Risks), effectively utilize the tools and remediate findings identified in an automated fashion.
- Continually evaluate the current state of the program; work with the team constantly find ways to automate and develop future roadmap.
- Communicate complex technical issues simply to different audiences.
- Ability to quickly learn new Information Security concepts and adapt to a fast-paced, ever-changing organization.
- Will be working on Azure, AWS, GCP and AliCloud cloud platforms to automate our security challenges.
NASZ PLAN ZATRUDNIENIA
1. Aplikuj
Nasze zespoły składają się z osób o różnych umiejętnościach, wiedzy, pomysłach i doświadczeniach, a każda z nich może dać od siebie coś innego. Chcemy, żebyś znalazł(a) tu coś dla siebie – zapoznaj się z opisami stanowisk, działami i zespołami, aby odkryć, jakie stanowisko będzie dla Ciebie odpowiednie.
2. Poznaj osobę rekrutującą lub przystąp do oceny
W przypadku stanowisk korporacyjnych rekruter(ka) skontaktuje się z Tobą w celu rozpoczęcia procesu rekrutacyjnego i przez cały okres jego trwania będzie pozostawać z Tobą w kontakcie. Rekrutacja na stanowisko związane ze sprzedażą wymaga przeprowadzenia procesu interaktywnej oceny, który obejmuje czat i quizy, a jego ukończenie zajmuje około 10–20 minut. Niezależnie od stanowiska, chcemy jak najlepiej poznać naszych kandydatów i nasze kandydatki, więc zachęcamy do opowiedzenia nam o tym, jak rozumiesz pojęcie obsługi klienckiej na światowym poziomie oraz co sprawia, że jesteś osobą wyjątkową.
3. Rozmowa kwalifikacyjna
Warto podejść do tego etapu z pewnością siebie. W tym celu zapoznaj się z naszymi oczekiwaniami i przygotuj się na pytania, które pomogą nam pogłębić wiedzę o Tobie i Twoim doświadczeniu.