Salary
💰 $218,025 - $256,500 per year
Tech Stack
AWSCloudFirewallsGoGoogle Cloud PlatformTerraform
About the role
- Enhance network security across multiple cloud environments for Coinbase Cloud Security (CloudSec).
- Lead design, implementation, and continuous improvement of security posture.
- Leverage skills in WAF management, DDoS protection, network segmentation, and firewall policy management to enforce robust security measures while enabling developer efficiency.
- Design, implement, and maintain network security controls across multi-cloud (AWS, GCP, etc.) and on-prem infrastructure.
- Own and optimize Web Application Firewalls (WAF) and DDoS protection services for scalability and resilience.
- Enforce network segmentation and firewall rules that minimize blast radius without impairing productivity.
- Review configuration changes and write policies to detect security invariants.
- Drive continuous improvement of secure-by-default network patterns for developers.
- Write code for automations that support security requirements like threat detection, incident containment, and network access management.
- Partner with engineering teams to review network and routing architecture design changes.
Requirements
- At least 8 years of experience in network security with deep expertise in AWS and cloud edge security experience.
- An ability to deploy cloud infrastructure with Terraform and to develop automations or guardrails with Golang.
- An execution-focused mindset, capable of navigating through ambiguity and delivering results.
- Your passion for building an open financial system that brings the world together drives you to excel in this role.
Nice to haves:
- Proficiency in crafting Rego rules for Open Policy Agent (OPA) or comparable policy-as-code solutions.
- Proven experience implementing AWS Network Firewall or GCP Cloud Firewall in large-scale production environments.
- Demonstrated expertise in managing Cloudflare.
- Experience with both GCP and/or on-premise infrastructure.