Staff Cloud Security Engineer

| Greater NYC Area | Remote
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

See all roles


Your mission? Ensure that our environment and customer content remain secure in the cloud. Our mission? Hire you. 


About Frame.io

Frame.io is changing the future of how videos are made by helping over 1 million creative professionals seamlessly collaborate from all over the world.

We’re backed by Accel, FirstMark, Insight Partners, SignalFire, Jared Leto, and a host of other amazing investors. Our market-leading product is used and loved by companies such as Disney, NASA, Snapchat, BBC, BuzzFeed, TED, Adobe, Udemy, and many more.

We’re in an exciting period of growth and are on the hunt for talented and passionate individuals who share our vision for helping visual content creators produce their best work.

 

About the Role

As a Senior member of the security team at Frame.io, you will have the opportunity to shape the security of our cloud infrastructure. You will research the latest threats on cloud infrastructure, Kubernetes, Containers and develop methods and controls to prevent, detect, and respond to attacks to keep them secure. Your mission will be to ensure that the Frame.io environment and customer content remain secure in the cloud.

You'll work across many teams including infrastructure, engineering, product, and across multiple streams including infrastructure security, security operations, and incident response. We’re looking for someone that has deep technical expertise and experience to join a fast-paced, growing team of security engineers tackling challenging problems at scale. 


Requirements

  • 7+ years of experience working and securing AWS and its services such as EC2, Lambda, ELB, ECS, IAM, S3, RDS, CloudTrail, CloudFront, AWS Config, etc.
  • Strong experience in security automation and tool development to secure the cloud
  • Experience and knowledge of building security data analysis pipelines in the cloud using AWS Kinesis Firehose/AWS Lambda/AWS ElasticSearch
  • Extensive experience in security operations and threat detection in the cloud before they cause material damage to the business. In the event an alert is identified as a security incident, you will kick off Incident Response.
  • Extensive experience in incident response in the cloud. Incident response includes but is not limited to log analysis, memory and disk forensics, reverse engineering, network containment, threat eradication and postmortems. You will also develop and refine processes, plans and procedures and partner closely with other stakeholders across the business.
  • Experience in docker containers and Kubernetes security such as pod-security policy, network security policy.
  • Experience in developing infrastructure-as-a-code using Terraform, CloudFormation, CI/CD, GitHub.
  • Experience in working with various AWS logs such VPC Flowlog, CloudTrail, S3, Route53, Elb, CloudFront, WAF, etc.
  • Experience in one or more programming languages (Python, Node.js, Go, Elixir) and shell scripting
  • Experience in patch management, container scanning, and vulnerability scanning in the cloud.
  • Experience in memory analysis, forensic, and network analysis tools such as Wireshark, TCPDump, and Scapy.
  • Multi-cloud experience is a plus.

Responsibilities

  • As a strong hands-on person in the team, you will write code to perform security automation and tool development to improve the security of Frame.io infrastructure. 
  • Create an effective set of controls for all of our AWS infrastructure.
  • Design and develop controls on all aspects of the security lifecycle -- protect, detect, contain, respond, and recover.
  • Always be identifying newer and more secure ways to access and protect assets.
  • Analyze and secure computing clusters such as Kubernetes and ECS.
  • Analyze the threats detected by the threat intelligence system and tools in the cloud before they cause material damage to the business. In the event an alert is identified as a security incident, you will kick off the incident response.
  • Provide technical and security expertise throughout the incident; then, implement any improvements assigned to Cloud Security. Incident response process includes log analysis, memory and disk forensics, reverse engineering, network containment, threat eradication and postmortems.
  • Work closely with engineering teams while developing your controls and talk about the usefulness of those controls.
  • Develop and update relevant documentation, including security runbooks, specifications and diagrams.
  • Be part of an on-call rotation.
  • Be able to measure and prove the effectiveness of your control to auditors as needed.

Benefits

  • Competitive salary and equity
  • Paid parental leave for primary or secondary caregivers
  • Unlimited PTO and designated Volunteering paid time off
  • Work From Anywhere Week
  • Yearly stipend for learning and development
  • Medical, Dental, Vision Insurance and OneMedical membership
  • Pre-tax commuter benefit and Flexible Spending Account
  • Daily catered lunch & fully stocked kitchen with cold brew on tap
  • Discounted gym membership, Classpass discount and Free Citi-Bike membership

Our Philosophy 

Our philosophy is simple. At Frame.io, we believe that working with people of different backgrounds and perspectives allows us to elevate each other and helps us build a better product for our users.

We’re proud to be an equal opportunity employer, and are committed to providing all employees with a work environment that celebrates individuality and remains free from any form of discrimination and harassment. We base our employment decisions on the needs of our business, job requirements, and applicants' qualifications. In other words, we only care that you’re the best person for the job.

Read Full Job Description
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Technology we use

  • Engineering
    • JavascriptLanguages
    • SwiftLanguages
    • ElixirLanguages
    • ReactLibraries
    • ReduxLibraries

Location

22 Cortlandt Street, New York, NY 10007

An Insider's view of Frame.io

What are some social events your company does?

Even with fun seasonal events, there are 2 recurring ones that stick out to me. We have a Meet the New Hires happy hour where new folks get to meet others from the company that otherwise they might not. The other is the monthly birthday celebration where we hang out, have some treats, and hype up that month's birthdays as they spin our prize wheel.

JP

Workplace Experience Coordinator

What projects are you most excited about?

At Frame.io we’re re-imagining workflows and encountering unique problems all the time. I love tackling projects that at first feel like a completely tangled mess. Being heads-down on it for a while, then pulling back to see the full picture and going “Aha! This totally makes sense now.” I love that feeling!

Carolina

Sr. Product Designer

What makes someone successful on your team?

Organization, time management, and grit are three traits that make someone successful on the Business Development Team. Sales in general is definitely a rollercoaster ride and not every month is the same. As a BDR, staying even-keeled through both the good & tough times always leads to success!

Matt

Sr. Business Development Representative

How do you make yourself accessible to the rest of the team?

Being accessible requires self-awareness as a manager. I communicate consistently with my team that I’m available to help tackle issues remotely or in person. In the office, I sit in a visible area close to my team so that swinging by my desk to AMA feels casual. Ultimately, it’s about creating an environment where asking for help feels low stakes.

Rachael

Director of Sales Strategy

What's the biggest problem your team is solving?

Our mission is to build the future of cloud collaboration for video. Our challenge is to realize that mission with an application that is performant, fluid, and delightful to use, even when you’re working with massive amounts of media. Every day we come to work and ask how we can push the limits of what’s possible in a web application.

Sam

Director of Enterprise Product

What are Frame.io Perks + Benefits

Culture
Volunteer in local community
We offer 16 paid hours of Volunteer time each year to make sure that our employees feel empowered to volunteer wherever motivates them, and have a running list of opportunities to choose from.
Partners with Nonprofits
Friends outside of work
Eat lunch together
Intracompany committees
We have a DE&I Core Team whose 10 members span across all our departments. This Core Team works on initiatives across the company to ensure we're working toward DE&I in every way possible.
Daily stand up
Open door policy
Team owned deliverables
Team based strategic planning
Group brainstorming sessions
Pair programming
Open office floor plan
Diversity
Dedicated Diversity/Inclusion Staff
Unconscious bias training
Someone's primary function is managing the company’s diversity and inclusion initiatives
Diversity Employee Resource Groups
Right now for ERGs, we have our Ladies of Frame.io group and our Frame.io Pride group and hope that employees will feel compelled to start more groups!
Hiring Practices that Promote Diversity
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability Insurance
Dental Benefits
Vision Benefits
Health Insurance Benefits
Life Insurance
Pet Insurance
Our Pet Insurance is through Nationwide, and there are options for 50%, 70%, or 90% reimbursement on eligible expenses
Wellness Programs
Mental Health Benefits
Retirement & Stock Options Benefits
401(K)
Company Equity
Child Care & Parental Leave Benefits
Generous Parental Leave
Flexible Work Schedule
Remote Work Program
Family Medical Leave
Vacation & Time Off Benefits
Unlimited Vacation Policy
Paid Volunteer Time
Paid Holidays
Paid Sick Days
Perks & Discounts
Casual Dress
Commuter Benefits
Company Outings
Free Daily Meals
Stocked Kitchen
Happy Hours
Pet Friendly
Recreational Clubs
Relocation Assistance
Fitness Subsidies
Professional Development Benefits
Job Training & Conferences
Frame.io offers employees professional development opportunities like annual individual budgets for training, onsite training courses, and the ability to attend job related conferences and seminars.
Diversity Program
Lunch and learns
Promote from within
Customized development tracks
Paid industry certifications
More Jobs at Frame.io22 open jobs
All Jobs
Design + UX
Dev + Engineer
Marketing
Operations
Sales
Content
Developer
new
New York
Design + UX
new
New York
Marketing
new
New York
Sales
new
New York
Operations
new
New York
Design + UX
new
New York
Developer
new
New York
Design + UX
new
New York
Developer
new
New York
Developer
new
New York
Developer
new
New York
Developer
new
New York
Developer
new
New York
Developer
new
New York
Design + UX
new
New York
Developer
new
New York
Sales
new
New York
Content
new
New York
Sales
new
New York
Design + UX
new
New York
Design + UX
new
New York
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.
Save jobView Frame.io's full profileSee more Frame.io jobs