Coinbase

Staff Security Engineer, Network Security

Coinbase

full-time

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Manual Apply

Salary

💰 $218,025 - $256,500 per year

Job Level

Lead

Tech Stack

AWSCloudFirewallsGoGoogle Cloud PlatformTerraform

About the role

  • Enhance network security across multiple cloud environments for Coinbase Cloud Security (CloudSec).
  • Lead design, implementation, and continuous improvement of security posture.
  • Leverage skills in WAF management, DDoS protection, network segmentation, and firewall policy management to enforce robust security measures while enabling developer efficiency.
  • Design, implement, and maintain network security controls across multi-cloud (AWS, GCP, etc.) and on-prem infrastructure.
  • Own and optimize Web Application Firewalls (WAF) and DDoS protection services for scalability and resilience.
  • Enforce network segmentation and firewall rules that minimize blast radius without impairing productivity.
  • Review configuration changes and write policies to detect security invariants.
  • Drive continuous improvement of secure-by-default network patterns for developers.
  • Write code for automations that support security requirements like threat detection, incident containment, and network access management.
  • Partner with engineering teams to review network and routing architecture design changes.

Requirements

  • At least 8 years of experience in network security with deep expertise in AWS and cloud edge security experience.
  • An ability to deploy cloud infrastructure with Terraform and to develop automations or guardrails with Golang.
  • An execution-focused mindset, capable of navigating through ambiguity and delivering results.
  • Your passion for building an open financial system that brings the world together drives you to excel in this role. Nice to haves:
  • Proficiency in crafting Rego rules for Open Policy Agent (OPA) or comparable policy-as-code solutions.
  • Proven experience implementing AWS Network Firewall or GCP Cloud Firewall in large-scale production environments.
  • Demonstrated expertise in managing Cloudflare.
  • Experience with both GCP and/or on-premise infrastructure.