Senior Network Security Engineer - Metal
Uber
Austin, TX, USA
Posted on Saturday, April 8, 2023
The security organization at Uber is dedicated to enabling safe and secure innovation while protecting the communities we serve both online and in the physical world. Our teams are responsible for protecting both people and their data across intersections of the digital and physical world. The primary objective for Uber Engineering Security team is to enable the technical ambitions of the company while maintaining the highest standards of security and privacy for our customers and partners. As cybersecurity threats evolve, so do we.
About The RoleThe Network Security team at Uber works to reduce the risks caused by insecure configurations, devices, and processes across Uber and it's subsidiaries across multiple environments and device types. Our team is on the frontlines, causing the blockage of thousands of risks, while working with our partner teams to ensure overall business success.
What You'll Do
- Work with our Corporate, Platform Production, and Subsidiary Network Engineer teams to improve overall configuration security
- Review ACL and firewall changes, as well as providing insights to improving our macro-zone filtering and monitoring
- Work with our Threat Detection team to improve visibility across the enterprise
- Own SASE deployments and connectivity to on-premise datacenters
- Work with our SWE team to create automations and services to ensure better visibility and compliance with our team's requirements
- Architect Network Security Architecture
- Embed or consult on partner team projects
- 5+ years of large, scalable and resilient Network Security Engineering and Architecture experience
- 5 years of engineering experience with Arista, Cisco, and/or Juniper Networking
- 3 years of professional software development in Python3 and/or GoLang experience to be able to automate common tasks
- 3 years of experience with a SD-WAN design, deployment and management
- Experience working with hybrid cloud environments
- Experience working with Network Incident Security response methods, techniques, and legal requirements for collection and preservation of artifacts
- Deep understanding of Zero Trust Architecture, NIST 800-83 and NIST 800-207
- Working understanding of optical and traditional encrypted tunnel systems and protocols (ie: IPSEC, Wireguard, OpenVPN, Layer 4 SSL) as well as MacSec
- Working understanding of Regex
- Working understanding of Threat Modelling and Threat Zoning
- Working understand of PCI, GDPR, NYDFS, and CCPA
- Strong interpersonal skills for multi-functional and cross-organizational project team management
- Zeek, Suricata, and other Network Security Monitoring platforms experience
- Secure Access Service Edge (SASE) platforms experience (ie: iBoss, ZScaler)
- OpenConfig Experience / Understanding
- Experience with Batfish Open Source Network Analyzer
- Working understanding of eBPF and XDP with module development experience and understanding of eBPF CNI’s such as Cilium
- Network Access Control (NAC) and 802.1X PEAP experience
See more open positions at Uber
Something looks off?