More jobs:
Job Description & How to Apply Below
E INC is the parent company of EBlock and EDealer, unifying our approach to products, services, and strategies under one Vision and one Mission: to create the best digital auction and retailing platform in the world by connecting the automotive wholesale and retail experiences. Our brands and their technologies make it easy for a vehicle to move between buyers and sellers throughout its entire ownership lifecycle.
We are seeking an experienced, detail‑oriented Cybersecurity Engineer to strengthen our organization’s information security posture across endpoints, networks, cloud services, and applications.
In This Role, You Will
Own threat and vulnerability management, driving remediation of misconfigurations and weaknesses across our environment.
Manage and tune our security monitoring and incident response capabilities using SIEM and observability tools (e.g., Datadog, log pipelines).
Administer our endpoint, web, and Zero Trust security stack, including Sentinel One for EDR/CNAPP, Zscaler for secure access and DLP, and Cloudflare for WAF, DNS, and Zero Trust web security.
Support compliance and governance efforts (with a focus on SOC 2, and exposure to frameworks like ISO 27001 and NIST).
Work closely with development and cloud teams to secure workloads in AWS and fix vulnerable packages and dependencies in existing applications, not just new builds.
Threat & Vulnerability Management
Identify, assess, and prioritize vulnerabilities and misconfigurations across endpoints, networks, cloud environments, and applications.
Work with infrastructure and application owners to define and maintain secure configuration baselines and ensure timely remediation.
Use vulnerability management and configuration assessment tools (including data from platforms like Sentinel One, cloud‑native security services, and code‑repository/package alerts) to track progress and risk reduction over time.
Partner with development teams to review and remediate vulnerable third‑party packages and libraries in existing applications (e.g., upgrading dependencies, adjusting configurations, and validating fixes).
Security Monitoring & Incident Response
Configure, manage, and tune SIEM / security monitoring solutions (for example, Datadog, cloud logs, and other telemetry sources) to ensure high‑quality, actionable alerts.
Act as an escalation point for high‑severity security incidents, including triage, containment, investigation, and recovery.
Maintain and improve Incident Response runbooks and procedures, including playbooks for phishing, malware, account compromise, and data exfiltration.
Participate in and help design Disaster Recovery (DR) and Business Continuity Planning (BCP) tabletop exercises, ensuring security scenarios are built into testing.
Endpoint, Network & Cloud Security
Administer and optimize Sentinel One for endpoint detection and response, ensuring policies, detections, and exclusions are well‑tuned.
Configure and manage Zscaler (Internet, Private Access, and DLP modules) to enforce secure internet and application access and prevent data loss.
Oversee Cloudflare security configurations for web applications and network services (including Zero Trust, WAF, DNS, and related controls).
Work with cloud and infrastructure teams to secure AWS workloads (e.g., IAM, security groups, logging, and encryption) and to integrate security controls into existing services running on AWS.
Collaborate with network and infrastructure teams to ensure Zero Trust and defense‑in‑depth principles are consistently applied across offices, remote users, and auction environments.
Application & Change Security
Collaborate with developers and product teams to understand application architectures and remediate security findings in existing services.
Provide security input into change management processes, ensuring significant changes consider security impact and include an appropriate rollback and validation plan.
Contribute to secure coding and dependency management guidance that is practical for teams maintaining existing systems.
Compliance, Governance & Audit Support
Support SOC 2 and related compliance programs by maintaining and providing technical…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×