远程工作雷达

信息安全工程师 I, 信息技术

Security Engineer I, Information Technology

开发工程全球可投
公司Cision
薪资未公开
工作地点Remote - Hungary
地域资格全球可投
时区要求无特别要求
用工类型未标注
发布时间20 天前
数据来源Greenhouse
前往企业招聘页投递 →
全球可投:该职位未限制候选人所在地区。仍需注意薪资可能按地区折算,以及实际签约方式(正式雇佣 / 独立合同)。

在Cision,我们相信每个人都能产生影响。在这里,你的声音被听到,你的想法被重视,你的独特视角推动着我们的集体成功。作为我们全球团队的一员,你将在一个推崇好奇心、协作和创新的环境中茁壮成长,同时为我们在加速的品牌做出有意义的贡献。

加入我们,共同塑造沟通的未来,建立真正重要的联系。无论你是解决复杂问题还是推动大胆创新,你的成长就是我们的成功,我们一起创造明天的对话。

在Cision,赋能你的影响力。被看到,被理解,做你自己。

该职位通过审查现有的工具、应用程序和流程来加强和优化组织的安全能力,以识别差距。它建立并维护云安全架构的最佳实践,专注于云平台并集成新的和现有的安全平台。该职位与研发团队合作,维护安全架构,并分析安全事件中的异常活动。它有助于组织的安全态势,并确保安全环境。个人会处理需要分析相关因素的问题,并在既定程序内运用相当的判断力以确定适当的行动。

该个人将跨多个部门设计、实施和管理保护内部和第三方(供应商)系统及客户数据的安全解决方案。你将在确保安全实践符合合规要求的同时,在整个组织中推动安全系统和数据保护的技术解决方案方面发挥关键作用。

职责:
• 安全工程与架构:必须具备在云、第三方和本地环境中设计、实施和维护安全架构的专业知识,包括评估和整合新兴安全技术。
• DevSecOps:应具备在CI/CD流水线中嵌入安全知识,建立安全标准,并与开发团队进行安全代码审查的深入理解。
• 密码学:必须了解用于保护静态和传输中数据的加密技术,有管理加密密钥并确保符合行业标准的经验。
• 身份与认证:需要了解设计和管理安全的身份验证机制。

查看英文原文

At Cision, we believe in empowering every individual to make an impact. Here, your voice is heard, your ideas are valued, and your unique perspective fuels our collective success. As part of our global team, you'll thrive in an environment that champions curiosity, collaboration, and innovation, all while making meaningful contributions to the brands we accelerate.

Join us in shaping the future of communication and building authentic connections that matter. Whether you're solving complex problems or driving bold innovations, your growth is our success, and together, we’ll create the conversations of tomorrow.

Empower your impact at Cision. Be seen, be understood, be you.

This role strengthens and optimizes the organization's security capabilities by reviewing existing tools, applications, and processes to identify gaps. It establishes and maintains cloud security architecture best practices, focusing on cloud platforms and integrates new and existing security platforms. The role collaborates with R&D teams to maintain a secure architecture and analyzes security events for anomalous activity. It contributes to the organization's security posture and ensures a secure environment. The individual works on issues requiring the analysis of relevant factors and exercises considerable judgment within defined procedures to determine appropriate action.

This individual will work across multiple departments to design, implement, and manage security solutions that protect both internal and third party (vendor) systems and customer data. You will play a critical role in ensuring that security practices are aligned with compliance requirements while driving technical solutions for secure systems and data protection across the entire organization.

Responsibilities:
• Security Engineering & Architecture: Must have expertise in designing, implementing, and maintaining security architectures across cloud, third-party, and on-premises environments, including evaluating and integrating emerging security technologies.
• DevSecOps: Should possess deep knowledge of embedding security within CI/CD pipelines, establishing security standards, and conducting secure code reviews with development teams.
• Cryptography: Must understand encryption technologies for securing data at rest and in transit, with experience managing cryptographic keys and ensuring compliance with industry standards.
• Identity & Authentication: Requires knowledge of designing and managing secure identity solutions, including Single Sign-On (SSO), Identity Providers (IdPs), and federation protocols such as SAML, OAuth, and OpenID Connect. Familiarity with Okta and Keycloak preferred.
• Secure Coding: Should be proficient in secure coding practices, training teams, and developing standards to prevent vulnerabilities like injection flaws, XSS, and authentication issues.
• Governance, Risk, & Compliance (GRC): Must have a strong grasp of GRC frameworks (e.g., NIST, SOC2, ISO 27001, Cyber Essentials etc) and experience in aligning technical controls with regulatory and audit requirements.
• Threat Management: Requires expertise in performing risk assessments, threat modeling, vulnerability assessments, and mitigation planning to address security risks.
• Incident Response & Monitoring: Should have knowledge of incident response strategies, SOC collaboration, and implementing continuous monitoring tools to ensure compliance and security standards.
• Collaboration & Leadership: Must demonstrate the ability to work with cross-functional teams, mentor junior engineers, and act as a subject matter expert in security technologies, tools, and frameworks.

Requirements:
• Deep understanding of security standards and frameworks such as NIST, ISO 27001, CIS Controls, and industry compliance regulations (GDPR, HIPAA, PCI-DSS).
• Hands-on experience with security tools such as IDS/IPS, SIEM, vulnerability scanners, and penetration testing platforms.
• Experience with cloud platforms (AWS, Azure, GCP, OCI or Alibaba) and securing cloud-native applications.
• Proficiency in programming languages (e.g., Python, Java, C++) and automation tools (e.g., Terraform, Ansible).
• Strong knowledge of networking protocols, firewalls, VPNs, proxies, and security monitoring tools.
• 5+ years of relevant experience in security engineering and GRC-focused security solutions development.
• Extensive hands-on experience in DevSecOps, integrating security in CI/CD pipelines, and supporting development teams in secure coding practices.
• Proven expertise in cryptography, including encryption, key management, and digital signatures.

What we offer:

  • Friendly and welcoming environment focused on people, learning & development
  • 25 vacation days and extra vacation days after age and after children
  • Cafeteria benefit via SZEP card
  • Medicover private health insurance for employees and their family members
  • 10% of your time to work on anything you like, reading groups, tech talks
  • Flexible working and working from home
  • An extensive people development program, including access to Udemy

Please note:

  • Candidates must be available for after-hours incident response when urgent security events require investigation or support.
  • The interview process will include a hands-on practical exercise conducted through screen sharing, where candidates will be asked to demonstrate relevant technical skills.

Cision is the global leader in consumer and media intelligence, engagement, and communication solutions. We equip PR and corporate communications, marketing, and social media professionals with the tools they need to excel in today's data driven world. Our deep expertise, exclusive data partnerships, and award-winning products, including CisionOne, Brandwatch, and PR Newswire, enable over 75,000 companies and organizations, including 84% of the Fortune 500, to see and be seen, understand and be understood by the audiences that matter most to them.

Cision is committed to fostering an inclusive environment where all employees can be their authentic selves and perform at their best. We believe diversity, equity, and inclusion is vital to driving our culture, sparking innovation and achieving long-term success. Cision is proud to have joined more than 600 companies in signing the CEO Action for Diversity & Inclusion™ pledge and named a “Top Diversity Employer” for 2021 by DiversityJobs.com.

Cision is proud to be an equal opportunity employer, seeking to create a welcoming and diverse environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or other protected statuses.

Cision is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Cision will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact hr.support@cision.com

Cision, Inc. "the Company" only communicates with candidates and extends job offers through direct channels, not third parties.

Please review our Global Candidate Data Privacy Statement to learn about Cision’s commitment to protecting personal data collected during the hiring process.

本页面信息整理自 Greenhouse,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

应付账款专员

CisionRemote - India今天
职能支持限定地区(需当地身份)

← 返回全部职位