Security Engineer

Posted:
8/27/2024, 5:46:17 PM

Location(s):
New South Wales, Australia ⋅ Sydney, New South Wales, Australia

Experience Level(s):
Mid Level ⋅ Senior

Field(s):
IT & Security

Workplace Type:
Hybrid

The Company  

Cover Genius is a Series E insurtech that protects the global customers of the world’s largest digital companies including Booking Holdings, owner of Priceline, Kayak and Booking.com, Intuit, Uber, HopperRyanair, Turkish Airlines, Descartes ShipRush, Zip and SeatGeek. We’re also available at AmazonFlipkarteBay, Wayfair and SE Asia’s largest company, Shopee. Our partners integrate with XCover, our award-winning insurance distribution platform, to embed protection for millions of customers worldwide each year.
 
Our team and products have been recognized with dozens of awards including by the Financial Times which ranked Cover Genius as the #1 fastest-growing company in APAC in 2020. Our diverse team across 20+ countries and many language groups commit itself to diverse cultural programs, in particular “CG Gives” which makes social entrepreneurs out of us all and funds development initiatives in global communities.

Our People are
Bold, Authentic, Purposeful and Inspired

Our People are not
Perfect, Traditional, Complacent or Cautious

About the role

As a Security Engineer, you’ll maintain and improve the security of the organization's data and systems. You will be working across a wide range of technical functions to improve the platform and corporate security.

The ideal candidate will have a robust understanding of information security standards, a flair for strategizing and implementing security measures, and a track record of managing employee compliance. Familiarity with identity providers such as Okta is vital. This role will also work independently to improve application and platform security, collaborate with other teams, and undertake regular security testing.

Responsibilites include:

Incident Management: Detect, investigate, and respond to security incidents as part of the security team, including on-call duties, to promptly and effectively handle security issues.
Security Strategy: Develop, execute, and maintain the company's information security strategy in accordance with evolving industry standards and threats.
Risk Assessment & Mitigation: Identify, analyze, and document all potential security risks, and develop and implement effective mitigation strategies.
Training & Compliance: Create and deliver comprehensive training materials to all employees about their security and compliance responsibilities. Oversee employee adherence to these policies, addressing non-compliance as required.
Security Automation & Software Implementation: Develop and manage security automation tools and oversee the implementation of new software, ensuring seamless integration with existing security systems. 
Third-Party Management: Handle due diligence questionnaires submitted by third-party partners.
Vendor Assessment: Conduct thorough assessments of new and existing IT vendors, including reviewing their certifications and processes to ensure that they comply with our security requirements and best practices.
Identity Management: Manage and oversee the operations of identity providers, such as Okta, to ensure secure and efficient access across the organization.
Application & Platform Security: Work independently to enhance the security of our applications and platforms. Collaborate with various teams across the organization for regular security testing and to implement platform security improvements.