Security Engineer (WAF) - Enterprise Security

Company:  Gartner
Location: Irving
Closing Date: 20/10/2024
Salary: £100 - £125 Per Annum
Hours: Full Time
Type: Permanent
Job Requirements / Description

Hiring near our US Centers of Excellence.

Hybrid, flexible environment

Irving, TX

Gartner offers a hybrid, flexible environment, with remote work that allows associates great flexibility to work from home, and opportunities to connect with colleagues for moments that matter on-site. Candidates that apply should be located within a reasonable proximity to one of Gartner’s Centers of Excellence office locations.

About Gartner IT:

Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting-edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome-driven approach to success, and the notion that great ideas can come from anyone on the team.

About this role

Gartner seeks a Security Engineer to join our top-tier Enterprise Security Team. You will be responsible for implementing and maintaining a robust security posture across Gartner's diverse technology landscape. Your expertise in security best practices, network security, data protection, and endpoint security will be essential in protecting Gartner's assets and ensuring the confidentiality, integrity, and availability of our information.

What you will do

  1. Optimize security solutions that align with industry best practices and Gartner's specific needs.
  2. Design and implement security controls for cloud environments.
  3. Create, deploy, maintain and troubleshoot Web Application Firewalls (WAF) policies for new and existing web applications.
  4. Review vulnerabilities that impact web applications and develop WAF solutions.
  5. Stay abreast of the latest security technologies and trends to identify opportunities for enhancing Gartner's security controls.
  6. Review WAF usage and define means to improve and mature protection policies.
  7. Collaborate with cross-functional teams to assess security risks, identify vulnerabilities, and develop remediation plans.
  8. Understand web applications at a sufficient level to work with developers to implement protective controls that may need to be customized for specific applications.
  9. Develop and maintain comprehensive documentation of security processes, procedures, and configurations.

Must have

  1. Proven experience as a security engineer working on IT security projects in a dynamic environment.
  2. Strong understanding of security principles, common attack vectors, and mitigation strategies.
  3. Experience network security, data protection, and endpoint security concepts.
  4. Experience with implementing security solutions across Amazon Web Services (AWS), Microsoft Azure or Google Cloud Platform (GCP).
  5. A proactive and adaptable approach to problem-solving, with a focus on continuous improvement.
  6. Understanding of OWASP, CVSS, the MITRE ATT&CK framework and the software development lifecycle.
  7. Define key performance indicators (KPIs) and metrics across business units to illustrate effectiveness with WAF controls.

Nice to have

  1. 3-5 years’ experience in managing and deploying web application firewalls, application security, or information security administration.
  2. Experience with cloud infrastructure (IaaS) in Azure or AWS is highly desirable.
  3. Cloud Industry certifications (AZ500, AWS CSS, CCSK, etc.) are a plus.
  4. Strong scripting/development skills in languages like Python, PowerShell, etc.

Who you are

  1. Bachelor’s Degree (or Master’s Degree) in Computer Science, Information Security, or a related field.
  2. Excellent communication and interpersonal skills.
  3. Strong problem-solving and analytical abilities.
  4. Proven experience in implementing and managing security solutions in a corporate environment.
  5. Ability to work independently and collaboratively within a team.
  6. Results-oriented mindset with a focus on delivering high-quality solutions.
  7. Self-motivated and driven to stay updated with the latest security trends, technologies, and best practices.
  8. Detail-oriented with a passion for maintaining a high level of accuracy in security assessments and documentation.
  9. Strong commitment to professionalism, ethics, and maintaining the confidentiality of sensitive information.
  10. Ability to adapt to a fast-paced and ever-changing security landscape.

What you will get:

  1. Competitive Compensation Package
  2. Ongoing mentorship and apprenticeship; Leadership courses, development programs, technical courses, certification opportunities and more!
  3. 20+ PTO days plus holidays and floating holidays in your first year
  4. Extensive Medical, Dental and Vision plans
  5. Hybrid environment with flexibility, remote work
  6. Parental leave
  7. Gartner Gives Charity Match
  8. Employee Assistance Program (EAP)
  9. Employee Stock Purchase Plan
  10. Health and wellness related allowance programs
  11. 401K with corporate match, immediate vesting
  12. Collaborative, team-oriented culture that embraces diversity
  13. Professional development and unlimited growth opportunities
#J-18808-Ljbffr
Apply Now
An error has occurred. This application may no longer respond until reloaded. Reload 🗙