Sr. Infrastructure Security Engineer
Company: Marriott
Location: Tallahassee
Posted on: April 24, 2024
|
|
Job Description:
Job Number 24062158
Job Category Information Technology
Location Marriott International HQ, 7750 Wisconsin Avenue,
Bethesda, Maryland, United States
Schedule Full-Time
Located Remotely? Y
Relocation? N
Position Type Management
JOB SUMMARY
The Sr. Infrastructure Security Engineer ensures the stability,
integrity and efficient operation of information systems and
technologies across the global enterprise. This role serves as a
key technical resource designing, engineering, and delivering
system hardening and image creation automation for Windows and
Linux environments within the public cloud and private VMWare
environments. This role will also assist the team in vulnerability
management, patch and compliance activities, and public cloud
remediation efforts. They will work with systems, application, and
enterprise/solution architects to develop requirements and test
cases, implement, monitor, report, and tune applications,
infrastructure, and services for Marriott's enterprise
platforms.
CANDIDATE PROFILE
Education and Experience
Required:
Undergraduate degree in an engineering or computer science
discipline and/or equivalent experience/certification
7+ years' progressive experience in Information Technology
including:
Proven track record of engineering enterprise solutions for a large
global company
5+ years' experience in information technology application
development or systems engineering
5+ years Linux/windows experience
5+ years Cloud technologies including IaaS/PaaS/SaaS deployments in
Public Cloud
5+ years in OS scripting and automation
3+ years' experience with design and implementation of CIS/NIST
hardening standards applied at an enterprise level
3+ years' experience with design and implementation of a patch
management solution
3+ years professional experience in Infrastructure as a Service
(IaaS) modeling including infrastructure as code development
(Terraform or similar) or infrastructure engineering at enterprise
scale
3+ years experience implementing AWS Well-Architected security
framework
3+ years professional experience with cloud computing technology
and its concepts (e.g. AWS, Azure, GCP) and virtualized (e.g.
VMWare, OpenStack)
3+ years' experience with server patch management systems (e.g.
RedHat Satellite, BigFix)
3+ years' experience in script development using automation and
scripting languages such as python, ansible, packer, PowerShell,
and/or bash
2+ years professional experience in container operations (Docker,
OpenShift Enterprise, GKE, ECS) and orchestration (Docker Swarm,
Kubernetes)
Knowledge of security controls frameworks, such as NIST 800-53,
NIST CSF, COBIT, or CIS
Knowledge of vulnerability management, patching, and related
management tools (e.g. BigFix, RedHat Satellite Server, Nessus)
Preferred:
Graduate Degree in Computer Science or Computer Engineering
DevOps Engineer developing pipelines, administering Kubernetes, and
creating and hardening containers using Dockerfile
Experience in the design, implementation, and operational support
of mission critical solutions
Embraces DevOps/SRE mentality of automation first
Possesses base of experience within software development
(programming)
Very good understanding of network technologies (layer 2-3, IP
stack, CIDR routing)
Demonstrated experience delivering technology solutions in a
fast-paced, deadline driven enterprise environment
Demonstrated experience learning and applying new technologies to
solve business needs
Excellent problem-solving skills working both independently and
within cross-functional teams in a complex organizational
structure
Excellent understanding of change management, testing requirements,
techniques, and tools to ensure high system availability
Strong attention to detail with an ability to operate effectively
across multiple priorities
Excellent written and verbal communication skills for a wide range
of audiences including executives, business stakeholders and IT
teams
Experience in one or more of the following: C, C++, Java, Python,
Go, Perl, or Ruby
Experience across many of the following platforms:
Container platforms (Examples: OpenShift, Docker, Kubernetes,
GKE)
Operating Systems: Red Hat Enterprise Linux, Oracle Linux, Windows,
CentOS
Storage: Block Storage, Object Storage, Lifecycle Management and
Data Replication, Backup & Recovery Best Practices
Network Virtualization: Akamai Global Traffic Management and Edge &
Delivery Networks, Elastic Load Balancing Services,
Domain Name Services and Registration
Security: Compliance, Information Assurance, Data Protection using
industry-best practices and tooling (Crowdstrike Falcon,
Tenable.io, Splunk, HashiCorp Vault signers, PKI and Certificate
Management)
Applications Frameworks: Java Spring, node.js, NginX, JavaEE,
HTML5
Cloud security patterns: Rehydration, landing zone, ingress/egress
traffic management
Database: Relational (Oracle, MySQL/MariaDB, PostgreSQL, MSSQL
Server), non-relational (Cassandra, Couchbase, MongoDB)
Experience in developing technology roadmaps and strategies
CORE WORK ACTIVITIES
Provides technical leadership, oversight, governance, and direction
for services related to Marriott solution delivery for enterprise
image hardening, rehydration, and patch automation
Leads analysis of current environment for deficiencies and provides
solutions
Leads efforts to create hardening baseline and automation to
Windows and Linux systems in cloud and VMWare environments
Provides input into lifecycle, improvement, and standardization
strategies in coordination with Enterprise Architecture and Global
Information Security
Provides and presents status, analysis and reporting to internal
stakeholders, Executive Management and Senior Leadership
Trains and/or mentors other team members, and peers as
appropriate
Identifies opportunities to enhance the service delivery,
operations, and continual service improvement processes
Identifies best in class software and hardware products to meet the
needs of a world class development team
Develop implementation plans, test plans, and timelines for
projects and tasks
Develop strategies for large scale vulnerability remediation across
the enterprise
Communicate with cross-functional teams to consult, direct, and
track remediation activities
Performs other compliance-related functions as required
Delivering Technology
Provides technical expertise and leadership within own and other
teams
Provides recommendations to improve the effectiveness of processes
and programs
Understands second order effects and global perspective in their
work function
Questions the status quo in a relentless effort to modernize and
apply progressive technologies and techniques
Maintains currency with evolving and leading edge technology
Delivering on the Needs of Key Stakeholders
Understands and meets the needs of key stakeholders.
Communicates concepts in a clear and persuasive manner that is easy
to understand.
Demonstrates an understanding of business priorities.
Supports achievement of performance goals, budget goals, team
goals, etc.
Providing Technical Support and Consultation
Provides technical expertise and technical leadership within own
and other teams.
Provides recommendations to improve the effectiveness of processes
and programs.
Demonstrates advanced knowledge of job-relevant issues, products,
systems, and processes.
Applies knowledge/judgment to achieve business goals.
Foresees, identifies and resolves problems.
Keeps up-to-date technically and applies new knowledge to job.
Performs other reasonable duties as required for this position.
California Applicants Only : The salary range for this position is
$96,038.00 to $209,169.00 annually.
Colorado Applicants Only : The salary range for this position is
$96,038.00 to $190,154.00 annually.
Hawaii Applicants Only : The salary range for this position is
$116,205.00 to $209,169.00 annually.
New York Applicants Only : The salary range for this position is
$96,038.00 to $209,169.00 annually.
Washington Applicants Only : The salary range for this position is
$96,038.00 to $209,169.00 annually. In addition to the annual
salary, the position will be eligible to receive an annual bonus.
Employees will accrue 0.04616 PTO balance for every hour worked and
eligible to receive minimum of 7 holidays annually.
All locations offer coverage for medical, dental, vision, health
care flexible spending account, dependent care flexible spending
account, life insurance, disability insurance, accident insurance,
adoption expense reimbursements, paid parental leave, educational
assistance, 401(k) plan, stock purchase plan, discounts at Marriott
properties, commuter benefits, employee assistance plan, and
childcare discounts. Benefits are subject to terms and conditions,
which may include rules regarding eligibility, enrollment, waiting
period, contribution, benefit limits, election changes, benefit
exclusions, and others.
Marriott HQ is committed to a hybrid work environment that enables
associates to Be connected. Headquarters-based positions are
considered hybrid, for candidates within a commuting distance to
Bethesda, MD; candidates outside of commuting distance to Bethesda,
MD will be considered for Remote positions.
The application deadline for this position is 21 days after the
date of this posting, 04/09/2024.
Marriott International is an equal opportunity employer. We believe
in hiring a diverse workforce and sustaining an inclusive,
people-first culture. We are committed to non-discrimination on any
protected basis, such as disability and veteran status, or any
other basis covered under applicable law.
Marriott International is the world's largest hotel company, with
more brands, more hotels and more opportunities for associates to
grow and succeed. Be where you can do your best work,--- begin your
purpose, belong to an amazing global--- team, and become the best
version of you.
Keywords: Marriott, Tallahassee , Sr. Infrastructure Security Engineer, Engineering , Tallahassee, Florida
Click
here to apply!
|