The Senior Cybersecurity Engineer safeguards digital assets, implements security systems, conducts risk assessments, and integrates security into the software lifecycle.
Security at TRACTIAN
In a data-driven company like TRACTIAN, Security is essential for protecting sensitive information and maintaining the integrity of our systems. This team implements rigorous security protocols, continuously monitors threats, and ensures compliance with industry standards to safeguard our data infrastructure. By securing data flows and preventing unauthorized access, the Data Security team plays a crucial role in protecting both our internal operations and the data we manage for clients.
What you will do
As a Cybersecurity Engineer, you will be responsible for safeguarding the company’s digital assets, ensuring that all systems, applications, and data are protected from vulnerabilities and threats. Your role will be to spearhead the development and implementation of advanced security systems, protocols, and measures to protect our organization's digital infrastructure. This position requires deep technical knowledge and hands-on skills to evaluate, design, and implement state-of-the-art cybersecurity solutions.
Responsibilities
- Oversee and implement secure, scalable, and highly available cybersecurity solutions across diverse platforms, with a primary focus on cloud-based environments.
- Architect, deploy, and maintain security infrastructure components, including Intrusion Detection/Prevention Systems (IDS/IPS), Security Information and Event Management (SIEM) platforms, Endpoint Detection and Response (EDR) solutions, and Web Application Firewalls (WAFs).
- Collaborate with development and engineering teams to integrate security into the software development lifecycle through activities such as code reviews, threat modeling, and vulnerability assessments.
- Develop and maintain CI/CD pipelines with a strong emphasis on security checks, tests, and analysis of code and dependencies.
- Manage advanced security tools (e.g., SAST, DAST, IAST) and endpoint protection solutions to proactively detect, monitor, and respond to threats and security incidents.
- Conduct risk assessments, threat analyses, and forensic investigations, addressing vulnerabilities and responding to security incidents in a timely and effective manner.
- Contribute to the development, maintenance, and execution of incident response plans, ensuring readiness for potential security events.
- Stay current with emerging technologies and industry trends, offering expert guidance on best practices to enhance the organization’s security posture.
Requirements
- 5+ years of advanced technical experience in cybersecurity or security engineering roles.
- Comprehensive understanding of cloud security services, including AWS (e.g., IAM, Security Groups, GuardDuty) and GCP (e.g., Cloud Armor, Security Command Center).
- Experience with Cloudflare for DNS, CDN, and WAF services.
- In-depth knowledge of security systems, intrusion detection, encryption technologies, network protocols, and best practices for securing cloud environments.
- Proficiency with security tools such as vulnerability scanners, SIEM, DAST, and intrusion detection systems (e.g., Wazuh, Zeek, Suricata), as well as endpoint protection solutions (e.g., Sentinel One).
- Expertise in vulnerability assessments and incident response processes.
- Familiarity with security standards (e.g., OAuth, OpenID Connect, SSL/TLS) and compliance frameworks (e.g., ISO 27001, NIST 800-61, SANS, SOC 2).
- Proficiency in scripting languages such as Python, PowerShell, or Bash for security automation and tool integration.
- Relevant certifications such as CISSP, OSCP, or CISM are highly preferred.
- Strong problem-solving skills with the ability to respond effectively to security incidents and vulnerabilities.
Compensation
Competitive Salary
Premium Medical, Dental, and Vision Coverage
Paid Time Off (PTO): 15 Days
401(k) Retirement Plan
Language Learning Opportunities - Take advantage of optional, fully funded Portuguese or Spanish courses to enhance your skills and global reach.
Gympass Membership - Access a wide range of gyms and training programs.
Sports Incentive - Receive a monthly bonus when you regularly participate in physical activities.
Long-Term Benefit - After four years of service, earn a fully funded trip anywhere in the world.
Top Skills
AWS
Bash
Cloudflare
Edr
GCP
Ids/Ips
Powershell
Python
SIEM
Waf
Similar Jobs
Security • Software
Design and implement core components for a Windows security agent, focusing on kernel-mode drivers and real-time threat detection.
Top Skills:
C++MicrokernelsNanokernelsWin32Windows InternalsWindows Kernel-Mode DriversWinsockWskX86/X64 Assembly
Cybersecurity
Design and implement security-focused software tools, contribute to open-source security projects, and develop practical solutions for complex security challenges.
Top Skills:
AIC++GoJavaMlPythonRust
Computer Vision • Healthtech • Information Technology • Logistics • Machine Learning • Software • Manufacturing
The role involves building and improving computer vision models, working with 3D data, implementing MLOps, and collaborating with product teams.
Top Skills:
PythonPyTorch
What you need to know about the Colorado Tech Scene
With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.
Key Facts About Colorado Tech
- Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
- Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
- Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
- Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute