Security Engineer
Gusto is a modern, online people platform that helps small businesses take care of their teams. On top of full-service payroll, Gusto offers health insurance, 401(k)s, expert HR, and team management tools. Today, Gusto offices in Denver, San Francisco, and New York serve more than 100,000 businesses nationwide. At Gusto, we serve small businesses by giving them peace of mind and helping them build great workplaces to attract and retain the best talent.
Gusto processes billions of dollars in payroll every month for small businesses and their employees. Our clients trust us with a huge amount of personally identifiable information (PII) and protected health information (PHI), including SSNs, EINs, salaries, home addresses, and more. Our business is largely built on trust, as a result protecting our clients’ PII and PHI is one of the top considerations in anything we do at Gusto.
Here’s what you’ll do day-to-day:
- Build, Deploy, and Perfect! Implement and fine-tune our security tools towards capability determined goals of advancing our detection and response capabilities.
- Detect and fix the Bad Stuff! Take the lead on threat hunting, deriving and deploying detections, IOC analysis, and incident response, always thinking about attack vectors in which PII and PHI can be compromised.
- Positive Company Influence! Work across the organization to affect positive security change as an active collaborator, contributor, and communicator.
- Automate everything! Build and deploy automation to cover our core capabilities to provide efficiency and reproducibility in results for the entire team.
- Engage & Educate! Assist employees with security questions, and engage with employees as a member of our helpdesk rotation
- Experiment, Expand, and Extract! Turn ideas into reality securing Gusto for its customers and employees. We support open source, and can release our good ideas to show how we protect our customers and to assist teams in other companies.
Here’s what we’re looking for:
- 8+ years in security analysis and engineering roles, focused on creating detections and data analysis.
- Experience with incident response, either in-house or through an outsourced service provider. Have been involved in multiple large scale incident response processes as an incident manager or other significant contributor.
- Ability to partner closely with cross-functional internal (and possibly external) stakeholders to manage incidents and create positive change for the organization.
- Demonstrated knowledge of AWS and other cloud technologies as well as on-premise systems and data centers, including networks and systems (Linux and Windows).
- 2+ years of experience with infrastructure as code and standard build process, terraform and buildkite preferred.
- Strong proficiency in one or more programming/scripting languages, ability to mentor others on best practices in at least one language. Ruby, Javascript, python, and golang are good options.