Ivalua Logo

Ivalua

Senior Offensive Security Engineer – Infrastructure & Cloud (Senior Security Engineer)

Reposted 16 Days Ago
In-Office
New York, NY
112K-208K Annually
Senior level
In-Office
New York, NY
112K-208K Annually
Senior level
As a Senior Security Engineer, you'll implement and monitor security controls, perform audits, manage vulnerabilities, and ensure compliance with security standards for infrastructure and cloud environments.
The summary above was generated by AI

Senior Offensive Security Engineer – Infrastructure & Cloud (Senior Security Engineer)

(New York City - NY)

Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.


COMPANY OVERVIEW

At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. 

We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. 


Learn more at www.ivalua.com. Follow us on LinkedIn and Twitter.

THE OPPORTUNITY

CONTEXT: 

Our team is dedicated to serve our clients post going-live the best way we can to secure an exceptional client experience.

With over 10 global team members, Infosec team needs to work with IT and R&D teams to keep our enterprise-class SaaS service secure from a variety of threats. 

ROLE: 

This is an exciting opportunity for a Senior Security Engineer role at Ivalua. You will engineer, implement, review and monitor technical security controls to protect and enhance the security of our hosting and corporate infrastructure, networks and applications. You will also help with operational security aspects which will include performing security reviews on infrastructure changes, reviewing firewalls rules, analyzing results from vulnerability or penetration testing reports, investigating security events by analyzing logs and identifying actionable plans to address in the infrastructure.


WHAT YOU WILL DO WITH US 

  • Perform technical security design, architecture, change and/or configuration audits/reviews on our hosting and corporate infrastructure systems including Azure cloud environments, servers, network devices, endpoints, and security technologies deployed (CNAPP, MDM, WAF, DDoS, etc.)
  • Act as the main SPOC for the network and cloud vulnerability management activities to perform scanning, internal and third-party penetration testing and red teaming as well as analysis and retesting of the reported security findings
  • Collaborate with the SOC team to enhance our detection and response processes and capabilities
  • Support the security initiatives for securing our Azure environments (EntraID Conditional Access, CSPM, Infrastructure as Code, NSG rules review etc.)
  • Provide support to the GRC team on the technical security controls related to compliance initiatives (such as FedRAMP, PCI, NIST 800-53 r5, IRAP, SANS CIS 20) and the technical security questions from customers and prospects
  • Act as the SME on infrastructure and cloud security topics, expand and develop sharing of technical knowledge and collaborate with multiple internal teams to review and improve the technical architecture and efficiency of IT and security operational processes

YOUR PROFILE

If you have the below experience and strengths this role could be for you:

Skills and Experience:

  • At least 5+ years of hands-on experience on infrastructure and network security engineering / architecture, protocols and technologies like CNAPP, CSPM, MDM, IAM, DDoS
  • At least 5+ years of hands-on experience in performing network and/or cloud penetration testing
  • Bachelor’s degree in related field preferred or equivalent experience with proven skills
  • Experience with scripting (such as Python, PowerShell etc.)
  • Knowledge of Active Directory (key concepts, protocols, services, tiering, main attacks, best practices for hardening etc.)
  • Knowledge of Cryptography concepts, encryption algorithms, protocols, keys and certificates management
  • Hands-on experience with security concepts on Azure cloud environments and services (Azure EntraID, Azure Key Vault, Azure encryption, Azure Sentinel, NSG, Azure firewall etc.)
  • Experience with security incident response and investigation
  • Ability to foster collaborative, open and working relationships with technology and other stakeholders
  • Experience with security standards and compliance programs such as OWASP, NIST, FedRAMP, PCI, SANS CIS 20
  • An Information Security qualification or evidence of starting to work towards e.g. OSCP, eJPT AZ-500, GIAC GPEN or similar certification
  • Ability to handle multiple tasks, prioritize and meet deadlines

Soft Skills :

  • Ability to handle multiple tasks, prioritize and meet deadlines
  • Ability to foster collaborative, open and working relationships with technology and other stakeholders

WHAT HAPPENS NEXT

If your application fits this specific position’s needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals – apply today! 

Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you! 

Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role. 

Interviews will be conducted virtually via video or on-site with face-to-face meetings.


LIFE AT IVALUA

  • Hybrid working model (3 days in the office per week)
  • We're a team dedicated to pushing the boundaries of product innovation and technology
  • Sustainable Growth, Privately Held
  • A stable and cash-flow positive Company since 10 years
  • Snacks and weekly lunches in the office
  • Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity
  • Unlock and unleash your full professional potential with our exceptional training and career development program
  • Join a dynamic and international team of top-notch professionals who are experts in their respective fields. Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work. Experience a truly diverse and inclusive work environment where your unique contributions are highly valued
  • Regular social events, competitive outings, team running events, and musical activities,
  • Comparably recognized Ivalua for the following (https://www.comparably.com/companies/ivalua) : 


Powered by People - Powered by You!

United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans. https://www.linkedin.com/company/ivalua/about/

Experience life at Ivalua - check out our captivating video! Gain insight into our unique company culture and get a glimpse of what it's like to work with us.





Ivalua’s core values include a priority on Care & Grow People. We take matters like pay equity very seriously and strive to reward our employees appropriately and fairly for their talents.

The compensation range for this position reflects the cost of labor across our US locations and is based upon careful and continual market research. In addition to location, compensation may also vary based upon job-related knowledge, skills, and experience.

Title: Senior Security Engineer

Range minimum: USD 112000

Range maximum: USD 208000

Additional compensation / rewards: Ivalua also offers exceptional benefits including medical, dental, vision and transportation.


#LI-PDE

#LI-HYBRID



Top Skills

Azure
Cnapp
Cspm
Ddos
Iam
Mdm
Powershell
Python

Ivalua New York, New York, USA Office

100 Wall St, New York, NY, United States, 10005

Similar Jobs

4 Minutes Ago
Remote or Hybrid
69 Locations
124K-280K Annually
Senior level
124K-280K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Lead the design and implementation of innovative data models for finance and actuarial use cases, mentoring team members and fostering client interactions.
Top Skills: SQL
4 Minutes Ago
Hybrid
68 Locations
155K-410K Annually
Senior level
155K-410K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
The UI/UX Director at PwC will lead the User Interaction Engineering team in designing user experiences for multiple products, set strategic directions, drive business development, and mentor emerging leaders while adhering to PwC's standards.
Top Skills: Artificial IntelligenceGraphic DesignRoboticsUser Experience DesignWcag Aa Or Aaa
4 Minutes Ago
Hybrid
9 Locations
77K-202K Annually
Mid level
77K-202K Annually
Mid level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
As a Senior Associate, you will leverage advanced analytics and AI tools to provide insights for M&A deals, mentor junior staff, and maintain client relationships while automating data processes.
Top Skills: Apache AirflowAws SagemakerAzure MlAzure Synapse AnalyticsDatabricksDbtGoogle Vertex AiHuggingface TransformersPower BIPythonPyTorchRScikit-LearnSpacySQLTableauTensorFlow

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account