Information Security Engineer II (EIAM)

Posted:
11/6/2024, 4:00:00 PM

Location(s):
Oregon, United States ⋅ Beaverton, Oregon, United States

Experience Level(s):
Junior ⋅ Mid Level

Field(s):
IT & Security

WHO WE ARE LOOKING FOR

As an Information Security Engineer on the Enterprise Identity and Access Management (EIAM) team, you will support Nike engineers and architects with their encryption and certificate needs. This includes assisting Nike users in utilizing approved enterprise tools, providing guidance, and researching or deploying new solutions as needed. EIAM is a core business unit responsible for implementing critical access controls across the enterprise. As part of Nike’s Global Technology organization, the EIAM team manages access controls across systems, including technologies like Access Management, Authentication & Single Sign-On, Digital Certificates, Public Key Infrastructure (PKI), Privileged Access & Session Management (PAM), and Identity Governance.

The ideal candidate should have experience as an IT Security Professional, adaptability to meet the demands of a production environment, an appropriate sense of urgency for security incident response, and strong collaboration skills with partners, business users, and compliance teams. Familiarity with certificates, PKI, and encryption is essential. Experience with DevOps deployment models and automated pipelines for code deployment is also beneficial. This role is located in Beaverton, OR, at Nike World Headquarters. This opportunity is not remote eligible.

WHAT YOU WILL WORK ON

In this role, you’ll work with the EIAM team, engaging in tasks like process or feature design, routine administration of security platforms, developing innovative solutions for complex technical security challenges, driving global risk mitigation, and collaborating with diverse business units. A typical week involves working with peers and internal customers to implement tailored security solutions, handle vulnerability remediations, enhance features, support platform development, and promote automation. The team operates in two-week sprints, with daily stand-up meetings for progress updates. You will have many opportunities to collaborate with peers, compliance and risk teams, and other business units across Nike.

WHO YOU WILL WORK WITH

This position reports directly to the Director of EIAM Engineering, with collaborative lines to the Director of EIAM Production Engineering and the IAM Engineering Manager at our India Technology Center. Your work will involve regular collaboration with the EIAM Production Engineering team, the EIAM Architect, the Corporate Information Security Governance, Risk, and Compliance Team, and other platform engineers within Nike.

Responsibilities include

Implementing Enterprise Encryption and Certificate Services

Collaborating with Business IT teams to enhance the security posture of applications

Helping teams identify suitable solutions and providing examples, guidance, and support

Creating sustainable security frameworks to standardize secure technology use

Collecting input from across Nike Inc. on needed security capabilities

Performing other duties as assigned

WHAT YOU BRING

Hands-on development experience with Python, Java, C, C++, or Go

Strong communication skills, with the ability to explain complex concepts simply and visually

Quick learning ability with strong attention to detail

Knowledge of information security standards, principles, and practices

Familiarity with browser and application keystores, OpenSSL

Strong organizational and interpersonal skills

Ability to balance and prioritize tasks effectively

Trustworthiness in handling sensitive data

Team-oriented approach, with professional maturity, integrity, and excellent interpersonal skills

Preferred Experience

PKI/Hardware Security Modules/KMIP/Certificate Management/Cryptography

Database/Application encryption using products like Vormetric, Voltage, Safenet, Gemalto, etc.

Enterprise Key Management, distribution, and administration

Experience with Venafi, KeyFactor, AppViewX

Knowledge of ACME, CertBot, K8S