Security Engineer, Cloud Security
OpenAIFull Time
Mid-level (3 to 4 years), Senior (5 to 8 years)
Candidates must possess over 5 years of progressive experience in a similar role, with demonstrated leadership in penetration testing across public cloud infrastructure (AWS, Google Cloud), modern web applications, enterprise network assessments, or API testing. A thorough understanding of modern security best practices like OWASP Top 10 and the MITRE ATT&CK framework is essential, along with in-depth knowledge of networking and technology fundamentals, including TCP/IP stack, Linux, Docker, Kubernetes, and microservice architectures. Proven proficiency in at least one scripting language for automation, such as Python, Go, Bash, Ruby, etc., is required. Industry-leading certifications like OSCP, CRTE, CRTO, ARTE, or CPTS are highly valued, as is a track record of bug bounty submissions or independent research. Excellent written and verbal communication skills are necessary, as is the ability to triage findings and collaborate on remediation plans with partner teams.
The Cybersecurity Engineer will conduct security assessments and Red Team engagements across Workday's public and private cloud infrastructure, as well as its products. This role involves performing manual and automated offensive security activities across all levels of the application stack. Additionally, the engineer will support Workday's external and internal bug bounty programs, assisting developers and external researchers in uncovering and responsibly disclosing vulnerabilities.
Cloud applications for finance and HR management
Workday provides enterprise cloud applications that focus on finance and human resources for medium to large-sized businesses across various industries. Its main products include Workday Human Capital Management, Workday Financial Management, Workday Adaptive Planning, and Workday Student, which help organizations manage their workforce and streamline financial operations. The software operates on a subscription model, allowing clients to pay a recurring fee based on the number of users and specific modules needed. This model supports continuous updates and improvements to the software. Workday stands out from competitors due to its strong emphasis on customer satisfaction and employee engagement, offering tools like Workday Peakon Employee Voice to enhance workforce experience. The company's goal is to provide essential tools that improve operational efficiency and support businesses in managing their human resources and financial operations effectively.