Job Description
Software Engineer (L4), Cloud Security
The Role
Netflix Cloud Security is looking for a cloud infrastructure software engineer. As a Software Engineer for Netflix Cloud Security, you will drive product development for our industry-leading innovative security tools such as ConsoleMe and Weep. This work involves development on both existing and new tools to discover, self-serve, right-size, and manage cloud resources while maintaining operational excellence to managing cloud security risk.
This is a distinct role within Cloud Security, to expand our capacity for software development work on our extensive collection of cloud security tools.
In this role, as a software engineer within a multidisciplinary cloud security team, you will be responsible for the challenges of configuring cloud resources at a massive scale. This role is perfect for you if you get excited about any of the following topics: resilience, observability, operations, debugging, resource thrashing, tagging namespaces, configuration management, system design, distributed systems, devops, observability, replication, monitoring, usability, metrics.
Prior security experience is not required, though you should be interested to learn about the security landscape at Netflix, and work on security-related products. You don't need to be a security expert, but you do need to understand what could go wrong if we expose a critical control plane to an attacker.
The Team
Netflix Cloud Security, within the wider Security Engineering Organization, is responsible for securing our cloud environments. Netflix operates our streaming service control plane on Amazon Web Services, which has led to one of the largest and most sophisticated AWS environments in the world. The tools we build and operate include foundational, load-bearing components of Netflix's cloud infrastructure.
Netflix's Cloud Security tooling includes robust capabilities around Infrastructure as Code, secure configuration orchestration for IAM policies and SCPs, and cloud access and credential management for both developers and applications. In particular, we focus on access and configuration of cloud-native abstractions, while other teams are responsible for securing the data plane and for what happens within each instance (e.g., system security or the content of an S3 bucket). Our work takes the form of tool development, cloud security operations, guidance, and strategy - though not every role is responsible for every part of this work.
Our team operates through empathetic accountability, humanely candid feedback, proactive communication, and inclusion, in order to cultivate a psychologically safe and productive work environment. To learn more about this team, watch our past talks from AWS re:Invent on Multi-account Deployments, Security insights using AWS SDK Instrumentation, and Multi-account management with ConsoleMe. You can also explore the team's open source software and prior contributions: ConsoleMe, Weep, Repokid, and Snare.
You should have:
• A broad understanding of AWS cloud infrastructure fundamentals (hey you! don't disqualify yourself by underestimating your expertise)
• Experience developing software with Python or Golang
• Familiarity with overall system design and architecture, and how to progressively improve software
What you'll need to be successful:
• When you solve a problem, you seek to solve that entire class of problems through templated or automated patterns
• You take a pragmatic approach by engaging transparently with the nuances and tradeoffs of software development
• You thrive by identifying high-leverage opportunities to improve the systems around you, and leave things better than you found them
• You can communicate good, to convey complex technical issues cross-functionally through written and verbal communication
• You believe a diverse and inclusive team is a critical aspect of a sustainable and effective work environment
Nice to have:
• Experience building robust systems or easy to use abstractions for AWS native services such as EC2, Lambda, S3, SNS, SQS, DDB, etc.
• Experience leveraging AWS Config, Cloud Control API, CloudFormation, and CloudTrail
• Experience with Infrastructure as Code (IaC) tools
No certifications or degrees are required for this role.
We are looking for a thoughtful professional who enables our mission and supports our unique culture. We encourage you to ask questions to understand how we strive to create a safe and productive work environment.
Our compensation structure consists solely of an annual salary; we do not have bonuses. You choose each year how much of your compensation you want in salary versus stock options. To determine your personal top of market compensation, we rely on market indicators and consider your specific job family, background, skills, and experience to determine your compensation in the market range. The range for this role is $100,000 - $720,000.
Inclusion is a Netflix value and we strive to host a meaningful interview experience for all candidates. If you want an accommodation/adjustment for a disability or any other reason during the hiring process, please send a request to your recruiting partner.
We are an equal-opportunity employer and celebrate diversity, recognizing that diversity builds stronger teams. We approach diversity and inclusion seriously and thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.
Job is open for no less than 7 days and will be removed when the position is filled.
Inclusion is a Netflix value and we strive to host a meaningful interview experience for all candidates. If you want an accommodation/adjustment for a disability or any other reason during the hiring process, please send a request to your recruiting partner.
We are an equal-opportunity employer and celebrate diversity, recognizing that diversity builds stronger teams. We approach diversity and inclusion seriously and thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.
Job is open for no less than 7 days and will be removed when the position is filled.
Jobcode: Reference SBJ-yjp8yp-18-117-10-61-42 in your application.