Information Security Engineer II
About the role
The Senior Information Security Engineer will support and maintain enterprise security tools, focusing on the day-to-day operation of an LLM-based code vulnerability detection and reporting capability. The role involves operating and monitoring an LLM-based code vulnerability detection capability on AWS Bedrock, executing runbooks, patching, and resolving defects in the deployed scanner and its pipelines, and participating in a rotating 24/7 shift schedule.
Responsibilities
- Operate and monitor an LLM-based code vulnerability detection capability on AWS Bedrock, including scanner health, job execution, and consumption against defined thresholds.
- Maintain and improve runbooks, operational procedures, and support documentation based on observed incidents.
- Execute documented runbooks during an assigned shift and escalate to senior engineering per established procedures.
- Perform structured shift handoff, including documentation of open issues and in-flight changes.
- Apply patches, dependency updates, and configuration changes through established change management processes.
- Maintain and improve runbooks, operational procedures, and support documentation based on observed incidents.
- Implement assigned changes at the Story level within an established architecture, including Terraform and pipeline configuration updates.
- Monitor Splunk dashboards and alerts for scanner health, coverage, and throughput.
- Participate in a four-person rotating shift schedule providing 24/7 coverage, including nights, weekends, and holidays.
- Maintain appropriate controls and documentation to ensure compliance with all company and regulatory requirements.
Requirements
- 1+ years of related engineering or technical operations experience, including hands-on information security, infrastructure, or software support work.
- 1+ year(s) of Gen AI related development experience.
- Working knowledge of AWS fundamentals, including console and CLI navigation, IAM basics, and CloudWatch.
- Experience with DevOps practices and tools such as Jenkins, Github, CI/CD, and Terraform.
- Ability to read and troubleshoot CI/CD pipeline failures.
- Ability to read and make guided modifications to Terraform and scripting in Python or equivalent.
- Basic understanding of application security concepts and common vulnerability classes.
- Willingness and availability to work an assigned shift within a rotating 24/7 schedule.
Preferred Qualifications
- Prior experience supporting a 24/7 operational environment.
- Exposure to Amazon Bedrock or equivalent hosted LLM platforms.
- Hands-on experience with AWS ECS Fargate or other container orchestration platforms.
- Splunk experience, including search and dashboard use.
- Experience with Linux systems administration.
- Experience working with ServiceNow or equivalent incident and change management tooling.
- Experience working in Agile methodologies.
- Prior experience in a regulated financial services environment.
- Industry standard certifications such as AWS Cloud Practitioner, AWS Solutions Architect Associate, or CompTIA Security+.
Benefits
Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans, an ESPP (employee stock purchase program), a 401K program with a company match, a Health Savings Account (HSA) on the HDHP plan, a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program, and other discounts. Professional development includes an on-demand training program, access to certification prep and a library of technical and leadership courses/books/seminars, and certification discounts and other perks to associations like CompTIA and IIBA. A dedicated customer service team addresses questions about benefits and other resources, and a certified Career Coach is available. For more information, see the 'Welcome Packet' provided by an Everforth Apex team member. Everforth Apex is an equal opportunity employer and considers qualified applicants with criminal histories in a manner consistent with applicable law. For ADA accommodations, contact the Benefits Department at [email protected] or 804-523-8228.