Engineer Security jobs in United States
cer-icon
Apply on Employer Site
company-logo

JetBlue · 11 hours ago

Engineer Security

JetBlue Airways Corporation is seeking an Engineer Security to design, deploy, maintain, and monitor security solutions across all environments. The role involves conducting tests, identifying security gaps, and driving projects to completion to enhance security capabilities.

Air TransportationTransportation
badNo H1Bnote

Responsibilities

Design, develop, and implement security solutions
Enforce information security policies, standards, and develop procedures supporting security solutions
Create project plans, define milestones, identify dependencies, and bring projects to closure
Deliver technical reports and formal testing results on test findings
Develop and maintain internal tools which automate redundant operation Intrusion Prevention System (IPS) al tasks
Respond to escalations for service issues, problems, and critical situations to support resolution and response procedures
Evaluate new technologies and/or processes to enhance security capabilities
Automate security operations using scripting (Python, Bash, PowerShell) and orchestration tools
Apply data-driven approaches to threat analysis, leveraging metrics and trends to guide remediation and prevention
Integrate automation frameworks and pipelines for security deployment
Engineer and administer SIEM platforms (e.g., Splunk, Cribl, Nxlog), including data source onboarding, log parsing, field extraction, and index optimization
Design and secure containerized and cloud-native architectures using Docker, Kubernetes, and microservices
Collaborate with teams to strengthen application and web security controls, including secure web gateways, Web application Firewall (WAF), API protection, and mitigation of OWASP Top 10 vulnerabilities
Other duties as assigned

Qualification

Security solutions designInformation security policiesIntrusion Prevention SystemsCloud technologiesLinux systems administrationIdentityAccess managementNetworkingACLsRiskComplianceSIEM platformsSecurity Automation PlatformsAutomationOrchestrationWeb application securityCommunication skillsCollaborative work

Required

Bachelor's Degree in Computer Science, Information Technology, or an Engineering or relevant field; OR demonstrated capability to perform job responsibilities with a High School Diploma/GED and at least four (4) years of previous relevant work experience
Three (3) years of information security or other relevant experience
Proficiency with identity and access management principles
Proficiency with Cloud technologies such as Storage, Messaging Queues, Container Services, APIs, EventHubs, VMs
Proficiency with Networking, ACLs, and network device functions (routers, firewalls, load balancers)
Proficiency with security device functions such as Intrusion Detection and Prevention Systems, Web Application Firewalls, Data Loss Prevention, encryption, and endpoint security
Proficiency with risk, security controls, compliance, authentication, authorization, and accountability
Extensive hands-on experience with Linux-based systems (e.g., RHEL, Ubuntu, Debian), including system administration, service management (systemctl), log analysis, text editing (vim/nano), and backup operations (tar, rsync)
Strong background in cloud platforms such as Microsoft Azure, AWS, and Google Cloud Platform (GCP), including cloud-native security and architecture design
Available for occasional overnight travel (10%)
Must pass a pre-employment drug test
Must be legally eligible to work in the country in which the position is located
Authorization to work in the US is required, this position is not eligible for visa sponsorship

Preferred

Security+ (or equivalent) certification
Knowledge of Information Security principles
Ability to work collaboratively during incidents involving potential attacks (e.g., scans, MITM, DoS/DDoS, malware)
Experience in Security Automation Platforms such as Cortex XSOAR
Experience with container security and securing distributed microservice environments
Hands-on experience with SIEM tools, logging pipelines, and data analytics to support proactive threat hunting
Strong understanding of automation, orchestration, and infrastructure-as-code (Terraform, Ansible)
Demonstrated expertise in web and application security, including WAFs, secure APIs, and OWASP Top 10 mitigation
Willingness and aptitude to develop in-depth knowledge of network and endpoint security technologies and continuously improve these skills
Strong communication skills to articulate technical processes to diverse audiences

Benefits

Access to healthcare benefits
A 401(k) plan and company match
Crewmember stock purchase plan
Short-term and long-term disability coverage
Basic life insurance
Free space available travel on JetBlue
And more

Company

When JetBlue first took flight in February 2000, our founding goal was to bring humanity back to air travel, and over two decades later, we still put our customers, crewmembers and communities at the center of everything we do.

Funding

Current Stage
Public Company
Total Funding
$400M
2024-08-12Post Ipo Debt· $400M
2002-04-12IPO

Leadership Team

leader-logo
Joanna Geraghty
CEO
linkedin
leader-logo
Ursula Hurley
Chief Financial Officer (CFO)
linkedin
Company data provided by crunchbase