Security Engineer (L5) – Application and Infrastructure Security

Netflix is the world’s leading streaming entertainment service with 250 million paid me

Other Jobs You May Be Interested In

mberships in over 190 countries, enjoying TV series, documentaries, feature films, and mobile games across a wide variety of genres and languages. Employees have tremendous freedom in their work, along with the corresponding responsibility to do the right thing for Netflix. Instead of controlling engineers with process and security gates, we enable them to build secure systems and provide them with clear security context to make the right decisions for Netflix.
The Security Engineering organization exists to ensure that Netflix can appropriately address top enterprise security risks while maintaining overall business agility, velocity, and scale.
The Application and Infrastructure Security (AIS) team within Security Engineering aims to manage risk in our engineering ecosystem through strategic security initiatives in high-risk or high-leverage areas. We conduct risk discovery, security strategy development and execution, and identification and execution of high impact security initiatives across Netflix applications and infrastructure.
Desired Background
We are looking for a thoughtful and unusually responsible security professional — someone who’s self-motivated, self-aware and self-disciplined — to help advance the aforementioned mission. They will work closely with our infrastructure and platform teams to help advance our security posture in these areas to meet dynamic business demands. We encourage you to apply even if you don’t meet every single one of the listed criteria. We value the unique perspectives, skills, and experiences each candidate brings with them.

Execution, Collaboration, Influence, and Decision Making:

 

  • Experience with an engineering-focused approach to infrastructure, platform, and application security.
  • Demonstrated skill and judgment in prioritizing, influencing, and driving remediation and risk reduction strategies at scale through complex organizations.
  • Strong written and verbal communication skills, and an ability to articulate security objectives to a variety of audiences.
  • Can build understanding and develop sound security strategies amidst ambiguity.
  • Comfortable both driving broad initiatives and digging deep in technical domains.

Security Domain Expertise:

 

  • Security architecture, threat modeling, secure design.
  • Experience conducting security assessments and developing, then driving remediation.
  • Platform security, e.g. securing critical control planes, interconnected services, API security, and secure-by-default practices.
  • Operating systems security, e.g. hardening, patch and vulnerability management, access management, monitoring.
  • Network security strategy, e.g. zero trust architecture, secure network design and management.