Cision

Cision

Cision is a global provider of PR software and marketing solutions, empowering communication pros to engage audiences effectively.

Professional Services
5K-10K
Founded 1892
$83M raised

Description

  • Review security tools, applications, and processes to identify gaps and improve organizational security capabilities.
  • Design, implement, and maintain security architectures across cloud, on-premises, third-party, and vendor environments.
  • Integrate emerging and existing security platforms, including monitoring and detection technologies.
  • Embed security controls into CI/CD pipelines, establish DevSecOps standards, and conduct secure code reviews.
  • Design and manage encryption, cryptographic key management, identity, SSO, federation, and authentication solutions.
  • Perform risk assessments, threat modeling, vulnerability assessments, and mitigation planning.
  • Analyze security events for anomalous activity and collaborate with SOC and incident-response teams.
  • Align technical controls with GRC frameworks, regulatory requirements, and audit expectations.
  • Collaborate with R&D and cross-functional teams, mentor junior engineers, and serve as a security subject matter expert.

Requirements

  • 5+ years of relevant experience in security engineering and GRC-focused security solution development.
  • Deep understanding of NIST, ISO 27001, CIS Controls, GDPR, HIPAA, PCI-DSS, and related compliance requirements.
  • Hands-on experience with IDS/IPS, SIEM, vulnerability scanners, and penetration-testing platforms.
  • Experience securing cloud platforms and cloud-native applications on AWS, Azure, GCP, OCI, or Alibaba.
  • Proficiency in Python, Java, C++, or similar programming languages, plus Terraform or Ansible automation.
  • Strong knowledge of networking protocols, firewalls, VPNs, proxies, and security monitoring tools.
  • Extensive DevSecOps experience integrating security into CI/CD pipelines and supporting secure coding practices.
  • Expertise in cryptography, including encryption, key management, and digital signatures.
  • Knowledge of SSO, IdPs, SAML, OAuth, and OpenID Connect; Okta and Keycloak experience preferred.
  • Availability for after-hours incident response and participation in a hands-on technical interview exercise.

Benefits

  • 25 vacation days, with additional vacation days based on age and children.
  • Medicover private health insurance for employees and family members.
  • Cafeteria benefit through a SZEP card.
  • Flexible working arrangements, including work from home.
  • 10% of working time for personal projects, reading groups, and tech talks.
  • People development programs, including access to Udemy.
  • Welcoming environment focused on learning and development.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Platform Security Engineer

Glean 11-50 Internet Software & Services

Glean is hiring a security-focused software engineer to build and maintain security foundations across its Work AI platform, including authentication, secure communications, data protection, and security testing.

C++ Go Java Penetration Testing Python
9 hours, 54 minutes ago

Staff Security Engineer, Proactive Security - Dasher

DoorDash 10K-50K Air Freight & Logistics

DoorDash is seeking a Staff Security Engineer, Proactive Security to lead forward-deployed security product engineering for its global Dasher ecosystem, building controls that strengthen application, anti-reversing, and payment security across its delivery network.

Go Java
1 day, 9 hours ago

Staff Security Engineer, Proactive Security - AI

DoorDash 10K-50K Air Freight & Logistics

DoorDash is seeking a Staff Security Engineer, Proactive Security to lead AI Security Product Engineering and build secure-by-default controls into the company’s global consumer, merchant, and Dasher platforms in a US-remote role.

Go Java
1 day, 9 hours ago

Cybersecurity Engineer

Dark Wolf Solutions 51-250 Internet Software & Services

Dark Wolf Solutions is seeking a Cybersecurity Engineer to lead security authorization and risk management for systems and applications while supporting cyber defense operations in compliance with NIST and DoD requirements; the role is primarily remote with a hybrid schedule from a Dark Wolf office.

Cybersecurity
1 day, 9 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers