This job might no longer be available.
Information Security Engineer
4 years ago
Position Intro
Linden Lab, a pioneer in the creation of virtual worlds, is poised for the public launch of “Sansar”, a social virtual reality platform that will democratize the creation of VR experiences. Linden Lab has been in business since 2003 and is best known for “Second Life”, the world’s largest user-generated economy.
As an Information Security Engineer you will work with engineering, product, legal and compliance teams to help provide a secure customer experience and to develop and enhance security solutions for all of Linden Lab’s virtual worlds.
This would be a perfect role for an Information Security Engineer with a software development or dev ops background. The ideal candidate will have strong networking and programming knowledge and will be eager to help secure both traditional datacenter and cloud hosting projects.
Primary Functions
Supports the company-wide information security program that is intended to safeguard customer information and to address applicable Federal and State regulatory requirements, as well as technical and procedural best practices. Assists with proactive security auditing, analysis, and incident response procedures. Develops tools that automate common security processes.
Responsibilities
- Work with Development teams to integrate security testing tools such as Ruby Bundle Audit and Py Safety into a CI/CD pipeline
- Recommend security enhancements to senior Security and IT staff
- Work with IT and Ops teams to maintain a complete network map
- Work with IT and Ops teams to create and maintain an inventory of all servers, workstations, and cloud services in use, and to ensure that all are subject to appropriate security controls and covered by security scans
- Maintain Nessus scan configurations, and review weekly differential scan reports for abnormal configurations, TLS deficiencies, and other risks. Work with IT, Ops and Development to backlog and verify fixes
- Work with IT, Ops, and Development teams to maintain an inventory of all software in use, including libraries and middleware. Oversee vulnerability patching or approve and validate any alternate mitigation.
- Work with IT, Ops, and Development to maintain a list of all data stores, and to approve backup strategies appropriate to each data type and location. Create and maintain tools to automate backup validation for each data type and location.
- Train developers and end users on new security products and procedures
- On-call shifts to triage Ops or Support reports of potential security incidents
- Perform other duties as assigned by supervisor
*Other duties may be assigned
Knowledge, Skills, Abilities
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Deep networking knowledge in office, data center, and public contexts
- Ability to identify and document network security issues
- Ability to create Python scripts to enhance monitoring and automate common tasks
- Excellent written and verbal communication skills
- Ability to multi-task in a fast-paced, changing environment
- Willingness to learn and apply new skills
Education
- Bachelor’s degree or 4 years industry experience
- IT Networking and Security certifications (e.g., Network+, Security+, CySA+, CISSP) are a plus
Experience
- Prior experience with a large scale production Linux Environment is essential
- Experience with Docker or other containerized server environments a plus
- Experience with Amazon Web Services a plus
- Experience with Nessus and JIRA a plus
Travel Requirements
Possibility of infrequent visits to our satellite offices in Seattle, Boston, and Virginia.
Physical Demands & Work Environment
The physical demands and work environment described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use the computer and communicate with coworkers in an office environment. The employee frequently is required to stand or sit to complete work and may occasionally lift and/or move up to 10 pounds.
Linden Lab seeks to maintain a diverse and welcoming workplace; therefore candidates from all backgrounds are encouraged to apply.
Fine Print:
The statements herein are intended to describe the general nature and level of work being performed by employees in this job. They are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of personnel so classified.
Create Your Profile — Game companies can contact you with their relevant job openings.