Grafana LabsGL

Senior Security Engineer, Security Assurance (Remote, Canada EST)

Query, visualize, alert on, and understand your data no matter where it’s stored.

Grafana Labs

Employee count: 501-1000

Salary: 166k-199k CAD

Canada only
Apply now

This is a remote position and we are looking for candidates in Canada Eastern timezones.

About the team

The Security team advances Grafana’s overall security posture through critical initiatives and coordination of large security projects. We build technologies, tools, and processes to enable engineering squads to better develop secure software, protect customer and employee data, deploy systems with appropriate security controls, and securely operate a remote workforce.

We are building a security system that’s automated at scale, rigorously data-driven, and built from the ground up with defense-in-depth and self-healing in mind. This system will support a highly autonomous, remote-first, cloud-native organization. We’re taking the best of open-source and commercial tooling and making them talk to each other to arrive at some very special outcomes. We also want to open-source as much of our work as possible to security practitioners.

To support our growth and ambitious vision, we embrace agile principles and values, share openly, apply context-driven security mechanisms, default to action, and have an OSS-first mindset. We are a 100% remote company.

For all that, we believe absolutely in agreeing on high-velocity but reasonable expectations and timeframes and giving people the room to do great work in a setting that prioritizes health, happiness, and work-life balance.

Role

The Senior Security Assurance Engineer will collaborate with teams in engineering, security, cloud platforms, information technology, vendor management, and other stakeholders to articulate security policies, implement continuous monitoring, automate workflows, and configure alerts on policy failures.

Ideally, you would be familiar with operating in a cloud-native, remote organization. This is an opportunity to help implement a security strategy and build the underlying platforms and workflows.

You will get to work on expanding the capabilities of our asset intelligence and governance program, security posture monitoring, compliance automation, customer security observability automation, and supplier security monitoring. Think about all the layers to build observability for system uptime, but now extending that to other layers of security that impact confidentiality and integrity (encryption, access control, incident response, etc.).

While deep knowledge of security standards and frameworks is essential for this role, you should also have provable experience automating security posture management, automating repetitive processes, and maximizing the suite of Grafana products to build self-serve security posture observability. You will work alongside other security engineers, full-stack developers, and customer-facing teams.

This is an individual contributor role reporting to the Director of Security Assurance.

Responsibilities

A successful candidate in this role would be able to:

  • Work autonomously to develop, build, and roll out information, cyber, open source, and cloud security governance frameworks.
  • Design, build, launch, and scale the asset intelligence & governance program on Grafana.
  • Establish a cadence for security program reviews, support existing accreditations, and identify strategic maturity opportunities for compliance.
  • Design and deliver monthly technology and security risk management workshops.
  • Build reasonable and self-serve partnerships with cross-functional stakeholders who are decision-makers and contributors to security initiatives.
  • Socialize and provide awareness of policies, standards, processes, and controls with relevant stakeholders.
  • Serve as the security SME to partner with engineering and operations teams on the business continuity and disaster readiness program.
  • Design, build, and manage Security GRC and Disaster Readiness reporting metrics and dashboards.

What you’ll bring to the role

This role would be a good fit for you if you:

  1. Are comfortable working in a remote-first company and understand the importance of adapting and contextualizing the security controls.
  2. Enjoy learning, growing, and supporting others to do the same.
  3. Be very comfortable with at least one scripting language and a query language like SQL.
  4. Enjoy navigating cloud-native environments and building automated processes for security posture management, compliance engineering, and continuous controls monitoring (indicative platforms and tools include GCP, AWS, Azure, Kubernetes, cloudquery, Grafana, LogicGate, Secureframe, Jira, ServiceNow GRC, anecdotes.ai, Drata, Vanta).
  5. Have some experience working with Platform and Security to scope, operationalize, and scale Business Impact Assessments (BIAs), Business Continuity Management Systems (BCMS), and Disaster Readiness Strategies for cloud-first companies.
  6. Know how to define a project plan, milestones, and key performance indicators to determine the effectiveness of your work delivery.
  7. Enjoy working on complex solutions – Grafana is a highly technical solution with avid followers who rely on it everyday and care deeply about their workflows.
  8. Enjoy working autonomously. While we defer to collaboration and teamwork, you should enjoy taking a problem and autonomously designing the solution, engaging the right stakeholders, and demonstrating the “own it” mindset to run through implementation.
  9. Have an interest in Grafana’s stack and a desire to contribute to our open-source foundations - We love dogfooding and giving back!
  10. Are able to communicate clearly in written and spoken English.
  11. Can create impact in a pragmatic, structured, simple and quick way.

Education

  • BS/MS degree in engineering, computer science, or information security, or equivalent experience.
  • CISSP, CISA, CISM, and cloud security solutions are a plus.

In Canada, the Base compensation range for this role is CAD 165,882 - CAD 199,058. Actual compensation may vary based on level, experience, and skillset as assessed in the interview process. Benefits include equity, bonus (if applicable) and other benefits listed here.

*Compensation ranges are country-specific. If you are applying for this role from a different location than listed above, your recruiter will discuss your specific market’s defined pay range & benefits at the beginning of the process.

About Grafana Labs: There are more than 20M users of Grafana, the open source visualization tool, around the globe, monitoring everything from beehives to climate change in the Alps. The instantly recognizable dashboards have been spotted everywhere from a NASA launch and Minecraft HQ to Wimbledon and the Tour de France. Grafana Labs also helps more than 3,000 companies -- including Bloomberg, JPMorgan Chase, and eBay -- manage their observability strategies with the Grafana LGTM Stack, which can be run fully managed with Grafana Cloud or self-managed with the Grafana Enterprise Stack, both featuring scalable metrics (Grafana Mimir), logs (Grafana Loki), and traces (Grafana Tempo). Benefits: For more information about the perks and benefits of working at Grafana, please check out our careers page. Equal Opportunity Employer: At Grafana Labs we’re building a company where a diverse mix of talented people want to come, stay, and do their best work. We know that our company runs on the hard work and the dedication of our passionate and creative employees. If you're excited about this role but your experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. We will recruit, train, compensate and promote regardless of race, religion, color, national origin, gender, disability, age, veteran status, and all the other fascinating characteristics that make us different and unique. We believe that equality and diversity builds a strong organization and we’re working hard to make sure that’s the foundation of our organization as we grow. For information about how your personal data is used once you’ve applied to a job, check out our privacy policy.

Elevate your application

Let our AI craft your perfect cover letter and align your resume to this job's criteria.

By using our AI tools, you consent to sharing your profile with our AI partner for this purpose.

Apply now

Please let Grafana Labs know you found this job on Himalayas. This helps us grow!

Apply now

About the job

Apply before

Jul 16, 2024

Posted on

May 17, 2024

Job type

Full Time

Experience level

Senior

Salary

Salary: 166k-199k CAD

Location requirements

Hiring timezones

Canada +/- 0 hours

About Grafana Labs

Learn more about Grafana Labs and their company culture.

View company profile

Query, visualize, alert on, and understand your data no matter where it’s stored. With Grafana you can create, explore, and share all of your data through beautiful, flexible dashboards.

We work in a big tent where everyone is welcome. Come on in.

OK, it’s not an actual big tent, but it is one of our core philosophies.

We know that data has incredible power to solve complex problems, transform business, drive innovation, and ultimately make the world a better place. The unfortunate reality is that the data we need often lives all over the place in disparate systems across geos, platforms, servers, and more. It’s our mission as Grafanistas to unite data, no matter where it lives, and empower our users to analyze, take action, and make smart decisions.

Building a powerful product takes a village — from engineering to customer success to people operations and beyond. What’s your calling?

What we value

Shared values are foundational to culture. They empower us, as both individuals and teams, to have an impact and achieve our mission, because we’re aligned on what’s really important to us. We’ve established these guiding principles to drive independent thinking, thoughtful decision-making, and result-oriented action that stays true to our mission.

Share openly and default to transparency

We share anything and everything we can — some might even call us over-sharers, and we’re OK with that. We want to ensure that Grafanistas have all the context they need to make smart, informed decisions in their daily work.

Respectfully empowered

We encourage our team members to be autonomous — this is essential for a distributed team. Freedom and empowerment are built on respect for one’s commitments and colleagues. We default to action. We value team members who take the initiative to get things done, ask when they need help, and dive into the job with both feet.

OSS is in our DNA

We have a big tent philosophy. We work with competitors and value interoperability. Decisions at Grafana are made with the long-term health of the company in mind. We aren’t distracted by short-term gains. We understand that our commercial success as a company is linked to our users’ success with our software.

We keep our commitments

We care about the say/do ratio, and for all our math friends out there, we like to see a good 1:1 ratio here. We do what we promise for each other, customers, and users, and we are personally accountable for delivering on our commitments. We dislike indecision: An imperfect or controversial decision is better than no decision. Debates are won with data and reason, not job titles.

Seek diverse perspectives

Each and every one of us prioritizes an open and inclusive culture at Grafana Labs, and we strive to bring diverse perspectives to the table to come up with the best ideas. We’re building a company where a diverse mix of talented people want to come, to stay, and to do their best work. We believe this will create the best results: Diversity drives innovation, and that innovation drives our success.

Don’t let perfect get in the way of great

We should all aim to do our best, but if perfection is the goal, we’ll probably never produce anything. Instead, we determine requirements to make something great and work hard to hit them. What can be squeaked out as an MVP at 60%? What actually needs to be done closer to 90%? From there, we iterate. This requires more than talent to succeed; it requires grit and determination. We want to get a great product out to our customers now and continue to iterate on it with fresh ideas and innovation. We’re a startup; we’re far from perfect. Get super comfortable with things not being perfect, while continuing to hold high standards for yourself and the team.

Help each other thrive

Supporting each other, our users, and our customers is a priority and core part of what we do. We pitch in where needed and do what it takes to get things done, even if it isn’t necessarily our job to do so. We win together, as one global team.

Employee benefits

Learn about the employee benefits and perks provided at Grafana Labs.

View benefits

Grafana Shutdown Days

Grafana Labs offers additional shutdown days throughout the year for an extra breather, enhancing work-life balance.

Wellbeing Resource Group

Grafana Labs organizes sessions with fellow team members and external trainers to promote mindfulness and well-being.

Parental & Sick Leave

Grafana Labs provides parental leave and sick leave, supporting team members during important life events and personal health needs.

Tech Choice

Grafana Labs empowers employees to choose their own laptop and accessories required for the job, with a tech refresh every two years.

View Grafana Labs's employee benefits
Claim this profileGrafana Labs logoGL

Grafana Labs

View company profileVisit grafana.com

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

173 remote jobs at Grafana Labs

Explore the variety of open remote roles at Grafana Labs, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Grafana Labs

Remote companies like Grafana Labs

Find your next opportunity by exploring profiles of companies that are similar to Grafana Labs. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join thousands of other remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan