Geico

Staff Software Engineer, Vulnerability Management

Geico$100K — $260K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of software engineering experience in large-scale distributed systems
  • Tech lead experience in architecture and design for 4+ years
  • Proficiency in modern programming languages (Java, Go, Python, C#) and scripting languages
  • Strong knowledge of CI/CD pipelines and infrastructure as code
  • Experience with security tools and frameworks (MITRE, CIS, NIST)
  • Professional security certification (CISSP, CCSP, CSSLP) is a plus

Responsibilities

  • Provide technical leadership for cybersecurity program strategy and software integration decisions
  • Lead design and delivery of security solutions for Vulnerability Management
  • Develop and conduct advanced research for automation initiatives
  • Achieve business outcomes through security program force multiplication
  • Integrate and maintain multilevel cybersecurity designs and policies
  • Influence partner teams to enhance engineering-first security systems
  • Mentor peers and communicate the value of security measures effectively

Benefits

  • Opportunities for professional growth and advancement
  • Exposure to complex security challenges and innovative solutions
  • Collaborative work environment with cross-functional teams
  • Access to advanced cybersecurity tools and technologies
  • Engagement in impactful projects that contribute to the organization’s mission
Full Job Description
GEICO is seeking an experienced full-stack engineer with a deep technical expertise and passion for building high-performance, low maintenance, zero-downtime, and highly scalable systems. The ideal candidate has a proven track record of design, development, and implementation of scalable solutions in hybrid environments using commercial and open-source products, preferably in Cybersecurity domain. This role will be responsible for leading enterprise initiatives and collaboration with cross-functional teams as well as designing and implementing secure and scalable solutions to drive Vulnerability Management initiatives. As a Senior Staff Engineer, you're not just a technical expert-you're a lead, a problem solver, an innovator who thrives in a fast-paced, constantly evolving environment. You will turn complex security challenges into elegant, practical solutions while fostering collaboration across teams and stakeholders. You have exposure to Cybersecurity and are well-versed with Vulnerability Management Lifecycle - asset discovery, internal/external scans, contextualization and risk-based assessment, triaging of CVEs, detection authoring, security data pipeline, reporting, and remediation. Senior Staff Engineer works closely with infrastructure, development, product, and other organizations across GEICO to integrate security into the ecosystem from design through deployment to sustainable operations. The Staff Engineer brings in expertise in requirements identification, feasibility analysis, secure infrastructure designs, technology evaluation and selection, and implementation of scalable systems using CI/CD and DevSecOps to raise the bar on engineering excellence and security best practices. As a Senior Staff Engineer, you will: - Provide technical leadership for cybersecurity program strategy, software development, integration decisions, analyzing design constraints and trade-offs in system and security design - Lead design, development, and delivery of security solutions to drive Vulnerability Management initiatives. - Deliver automation initiatives, conduct advanced research, and develop proofs of concept to enhance our security capabilities and improve overall efficiency - Achieve security business outcomes through force multiplication - Develop, integrate, and maintain multilevel cybersecurity designs, architectures, policies, and procedures - Provide secure design guidance and recommendations to developers, infrastructure, and product engineers - Influence and educate partner teams to bring an engineering first approach to develop sustainable security systems. - Mentor peers and team members in security technologies, enterprise solution design, deployment, and effective customer interaction - Provide motivating demonstrations and communications to show the value of our security measures to the business, highlighting the low impact on systems, improved operability and resiliency Qualifications - Tech-lead with full-stack software development and DevSecOps experience in a hybrid environment (AWS, Azure, on-prem) - Development and leadership in Cybersecurity domain, preferably in Vulnerability Management Engineering - Specialization with at least one modern language such as Java, Go, Python or C#, and a scripting language - Extensive knowledge and experience of building data intensive large-scale distributed systems on cloud - Experience building the architecture and design of new and current systems (architecture, design patterns, reliability, and scaling) - Fluency in DevOps concepts and best practices in CI/CD pipelines and infrastructure as a code - Experience with application performance monitoring tools and performance assessments - Ability to design, implement, deploy, and operate systems to solve complex security problems in a fast-paced, startup-like environment - Strong knowledge of industry-standard security tools, frameworks, and best practices including MITRE, CIS and NIST - Experience working with auditors and demonstrating security controls Experience - 8+ years of non-internship professional software engineering experience of building large-scale distributed systems - 4+ years of experience with architecture and design in a tech lead role - 4+ years of experience with AWS, GCP, Azure, or other cloud providers - 3+ years of experience in open-source frameworks - Foundational knowledge of security best practices for system design and development - Experience of building applications for security domain - Experience of assessing security vulnerabilities and driving their remediation is a plus - Professional security certification (e.g., CISSP, CCSP, CSSLP) is a plus Education - Bachelor's degree in Computer Science, Information Systems, Cyber Security, or equivalent education with work experience Annual Salary $100,000.00 - $260,000.00 The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate's work experience, education and training, the work location as well as market and business considerations. At this time, GEICO will not sponsor a new applicant for employment authorization for this position.

About Geico

GEICO (Government Employees Insurance Company) is an American auto insurance company with headquarters in Chevy Chase, Maryland. It is the second largest auto insurer in the United States, after State Farm. GEICO is a wholly owned subsidiary of Berkshire Hathaway that provides coverage for more than 24 million motor vehicles owned by more than 15 million policy holders as of 2017. GEICO writes private passenger automobile insurance in all 50 U.S. states and the District of Columbia. The insurance agency sells policies through local agents, called GEICO Field Representatives, and over the phone directly to the consumer, and through their website.
Learn more about Geico
Size
40,000 employees
Industry
Founded
1936

Similar Jobs

More Jobs at Geico

More Information Technology Jobs

Find similar Staff Software Engineer, Vulnerability Management jobs: