• Product Security Engineer - LATAM

    Location AR-Remote
    Posting date 5 days ago(12/6/2018 6:38 AM)
    Job ID
    64774
    Category
    Software Engineering
    Remote base
    Latam
  • Company Description

    At Red Hat, we connect an innovative community of customers, partners, and contributors to deliver an open source stack of trusted, high-performing solutions. We offer cloud, Linux, middleware, storage, and virtualization technologies, together with award-winning global customer support, consulting, and implementation services. Red Hat is a rapidly growing company supporting more than 90% of Fortune 500 companies.

    Job summary

    Help us protect Red Hat’s customers from possible security risks that could arise when using our software. The Red Hat Product Security team is looking for a Product Security Engineer to join us in Latin America (LATAM). In this role, you’ll work with various security issues across Red Hat’s portfolio of solutions, using open source principles every day. You will become part of a team protecting customers and communities from digital security threats and providing quality information needed to mitigate risk and privacy concerns. You will perform security analysis on vulnerabilities in the Red Hat Enterprise Linux (RHEL) solutions and supported applications and escalate them as appropriate. You’ll need to be able to think fast to analyze complex problems and will be called upon to exercise judgement to prioritize issues that warrant immediate attention and to work with fellow Red Hat's engineers and security analysts to help protect customers from these security threats. In addition, you will be performing various audit reviews on software that is included in Red Hat’s solutions. This position is remote and you can be hired in any country of LATAM where Red Hat has office locations, namely Argentina, Brazil, Chile, Colombia, or Mexico. Successful applicants must reside in a country where Red Hat is registered to do business.

    Primary job responsibilities

    • Be ready to quickly respond to and provide a quality in-depth analysis of security issues
    • Code and audit various Red Hat Enterprise Linux (RHEL) components and web applications
    • Properly prioritize tasks to ensure that serious vulnerabilities get immediate attention
    • Communicate quickly and efficiently with various internal stakeholders about security vulnerabilities
    • Write proper technical documentation on vulnerabilities, including mitigations and their fixes, in a clear and easy-to-understand manner
    • Coordinate effectively with upstream communities and vendors for embargoed bugs, their patches, and common release dates
    • Understand current and emerging threats in the enterprise product space

    Required skills

    • Bachelor's degree in computer science or equivalent work experience
    • Demonstrated good understanding of current security technologies
    • Experience with and skills in debugging and analysis, using tools like the GNU Debugger (GDB), Valgrind, strace, and other programming or system-level debuggers
    • Programming experience in C or C++ or proficiency in multiple languages like Python, Java, Ruby, or Go
    • Solid experience with and proficiency in the Linux operating system
    • Fluent written and verbal communication skills in English
    • Familiarity with open source software
    • Ability to work in a fast-paced environment with diverse teams distributed across the globe
    • Experience working in a cross-functional, collaborative environment
    • Organized with analytical thinking skills and the ability to quickly learn new technologies

    Experience with the following is a plus:

    • Reverse engineering and security research
    • Interactive Disassembler (IDA) Pro or equivalent disassembly tools
    • SecDevOps or DevSecOps and rapid deployment of web applications
    • Auditing and pen testing of various web applications

    Red Hat is proud to be an equal opportunity workplace and an affirmative action employer. We review applications for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, citizenship, age, veteran status, genetic information, physical or mental disability, medical condition, marital status, or any other basis prohibited by law.


    Red Hat does not seek or accept unsolicited resumes or CVs from recruitment agencies. We are not responsible for, and will not pay, any fees, commissions, or any other payment related to unsolicited resumes or CVs except as required in a written contract between Red Hat and the recruitment agency or party requesting payment of a fee.

     

    Options

    Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
    Share on your newsfeed