empty

Cybersecurity Engineer – Security Posture Management

CoStar Group

Job Description

Posted on: 
September 17, 2024

Summary and company overview

We are seeking a skilled and experienced Cybersecurity Engineer with expertise in the review, deployment, and hardening of Software as a Service (SaaS) Applications. The ideal candidate will have deep experience in implementing and managing robust security measures to ensure the secure configuration and compliance of SaaS applications, and be intrinsically motivated to learn new technologies and tools to move security forward within the CoStar Enterprise. Located in Washington, DC or Richmond, VA and offers a hybrid schedule of 3 days onsite, 2 days remote.

Responsibilities

SaaS Security Configuration:

  • Assess, design, and implement security configurations for various SaaS applications to meet industry best practices and compliance requirements.
  • Collaborate with cross-functional teams to ensure secure integration and utilization of SaaS solutions.

Continuous Monitoring:

  • Implement and manage continuous monitoring solutions for SaaS applications to detect and respond to security incidents promptly.
  • Develop and maintain real-time visibility into the security posture of our SaaS environment.

Compliance Management:

  • Ensure that SaaS applications adhere to regulatory requirements and industry standards.
  • Conduct regular audits and assessments to validate compliance with security policies and regulations.

Identity and Access Management (IAM):

  • Implement and manage IAM controls for SaaS applications, ensuring secure and efficient access to authorized users.
  • Enforce the principle of least privilege and conduct regular reviews of access permissions.

Security Automation and Orchestration:

  • Develop and implement automation and orchestration processes to streamline security configurations and responses within the SaaS environment.
  • Identify opportunities for automation to improve efficiency and reduce security risks.

Incident Response and Forensics:

  • Collaborate with the incident response team to develop and execute response plans specific to SaaS-related security incidents.
  • Conduct forensic investigations to identify the root cause of security incidents within the SaaS environment.

Job Requirements

Basic Qualifications

  • Bachelor’s Degree required from an accredited, not for profit university or college (preferably in Computer Science, Cybersecurity, or a related field)
  • A track record of commitment to prior employers
  • 5+ years total experience in engineering, including a minimum of 3 years in Security specific roles
  • Proven experience in implementing and managing SaaS posture management solutions.
  • Strong understanding of SaaS security principles, including configuration management and access controls.
  • Experience with SaaS application integration and deployment.
  • Knowledge of regulatory compliance requirements related to SaaS applications.
  • Familiarity with IAM principles and practices.
  • Excellent problem-solving and analytical skills.
  • Effective communication skills to collaborate with diverse teams and stakeholders.

Preferred Skills

  • Relevant certifications such as Certified Cloud Security Professional (CCSP) or Certified Information Systems Security Professional (CISSP). Experience with leading SaaS platforms, such as Microsoft 365, Google Workspace, Salesforce, etc. Scripting and automation skills for SaaS security tasks.

Additional commentary

When you join CoStar Group, you’ll experience a collaborative and innovative culture working alongside the best and brightest to empower our people and customers to succeed. We offer generous compensation and performance-based incentives, invest in your professional and academic growth with internal training, tuition reimbursement, and an inter-office exchange program. Our benefits package includes comprehensive healthcare coverage, life, legal, and supplementary insurance, mental health counseling services, commuter and parking benefits, 401(K) retirement plan with matching contributions, employee stock purchase plan, paid time off, on-site fitness center and reimbursement for fitness center membership costs, access to Diversity, Equity, & Inclusion Employee Resource Groups, and complimentary gourmet coffee, tea, hot chocolate, fresh fruit, and healthy snacks. CoStar Group is an Equal Employment Opportunity Employer; we maintain a drug-free workplace and perform pre-employment substance abuse testing.

Summary and company overview

We are seeking a skilled and experienced Cybersecurity Engineer with expertise in the review, deployment, and hardening of Software as a Service (SaaS) Applications. The ideal candidate will have deep experience in implementing and managing robust security measures to ensure the secure configuration and compliance of SaaS applications, and be intrinsically motivated to learn new technologies and tools to move security forward within the CoStar Enterprise. Located in Washington, DC or Richmond, VA and offers a hybrid schedule of 3 days onsite, 2 days remote.

Apply now