Security Strategist at Uber (Austin, TX)

| Austin, TX
Sorry, this job was removed at 5:42 p.m. (CST) on Saturday, March 12, 2022
Find out who's hiring in Austin, TX.
See all Operations jobs in Austin, TX
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.
About the job
Uber's Security team works to ensure the security of personal and payment information for our full set of users - riders, drivers and partners. Our ultimate goal is to ensure that every single experience with Uber is simple, secure, and safe.
We are seeking a talented Security Strategist to join our Security Assurance team, who will concentrate their efforts on developing and maintaining Uber's security compliance program. The Security Strategist will dive head first into developing sustainable solutions for complex compliance requirements, helping secure everything from the corporate network to the production computation environment.
Who you are
You immerse yourself in all aspects of security. You are passionate to optimize costly, time consuming processes and automate mundane manual tasks. You are familiar with open source technologies and tools used to support Uber's Microservice Architecture focusing on microservices communication, authentication, and fault tolerance. You have an understanding of DevOps and infrastructure automation techniques, including good knowledge of supporting tools and technologies.
What you'll do
You'll be tasked with developing and maintaining Uber's security compliance program. The security compliance program helps Uber meet complex regulatory and industry standard requirements, at significant scale. You will:
  • Drive the execution of control implementation across Uber's technology environment to address wide variety of regulatory and compliance requirements.
  • Identify and evaluate control gaps and oversee remediation efforts, in partnership with controls owners.
  • Prepare, maintain and improve documentation to support compliance efforts (e.g., Policies, Standards, Narratives).
  • Help enhance GRC tool features, control automation and real-time controls monitoring.
  • Act as a liaison between Internal Audit, Security and Engineering to develop, test, and report on various compliance related requirements.
  • Collect control evidence and artifacts to present to external auditors
  • Bring together leading technical and security experts to solve problems efficiently.
  • Assist with reporting on program performance via dashboards, KPIs, etc.
  • Identify opportunities to enhance communications and processes supporting compliance programs to improve efficiency.

Basic Qualifications
  • 2+ years of experience implementing and operating programs for security compliance, IT compliance, or security risk management.
  • BA/BS or MS degree in Computer Science, Engineering, Information Security, Management Information Systems, or equivalent practical experience.
  • Experience implementing some of the following frameworks and standards: ITIL, COBIT, ISO 27001/2, NIST, PCI DSS, SANS CIS, HIPAA, SOX, SOC, CIS top 20, GDPR.
  • Experience working side-by-side with engineers.
  • Strong program management background.
  • Excellent organizational and communications skills.
  • Detail oriented and thorough in analysis and deliverables.
  • Experience in basic data analysis and reporting.

Preferred Qualifications
  • Experience developing new and/or advanced technical solutions.
  • Technical certifications in IT Audit or Security - e.g., CISSP, CISA, CISM, etc.
  • GRC tool experience.
  • Experience working in a devops or microservice environment.
  • Experience working on various external customer-facing activities to ensure customer understanding and comfort over Uber's security controls and processes.
  • Experience assessing third-party vendors.
  • Experience working with engineers for the automation of security controls.
  • Experience in working directly with auditors or as an auditor for compliance assessments.
Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • C#Languages
    • C++Languages
    • GolangLanguages
    • JavaLanguages
    • JavascriptLanguages
    • KotlinLanguages
    • PerlLanguages
    • PHPLanguages
    • PythonLanguages
    • RLanguages
    • RubyLanguages
    • ScalaLanguages
    • SqlLanguages
    • SwiftLanguages
    • GoLanguages
    • ReactLibraries
    • ReduxLibraries
    • Twitter BootstrapLibraries
    • ASP.NETFrameworks
    • HadoopFrameworks
    • Node.jsFrameworks
    • SparkFrameworks
    • TensorFlowFrameworks
    • AccessDatabases
    • Microsoft SQL ServerDatabases
    • MySQLDatabases
    • Google AnalyticsAnalytics
    • FigmaDesign
    • PhotoshopDesign
    • FigmaDesign
    • AsanaManagement
    • ConfluenceManagement
    • JIRAManagement
    • WordpressCMS
    • DocuSignCRM
    • SalesforceCRM
    • SplashCRM
    • SendGridEmail
    • Adobe CampaignLead Gen

An Insider's view of Uber

What’s the vibe like in the office?

When I went into the office for my final interview with Uber, I had the same feeling that I did when I stepped onto my college’s campus for the first time: it just felt like the right fit. The office was high-paced but also relaxed and you could immediately tell that people were friends and genuinely enjoyed being there.

Paige Sammarco

Account Executive, Uber Eats

What kinds of technical challenges do you and your team face?

One of the big challenges today with experimentation is around guaranteeing correctness, especially for small changes to ensure confidence in results. Was that change the cause of new behavior? Did other experiments get in the way? It all comes down to how accurately you can detect small changes within consumer behavior.

Azarias Reda

Head of Uber's Experimentation API team

What makes someone successful on your team?

"It’s not just about the individual contributor. The most successful people are the ones learning from others. On my team, I make sure that everyone shares best practices and we foster a collaborative culture. So when you’re on a call, you’re never really alone. And that applies to everyone."

Ali Faivus

Head of Mid-Market Sales

How do you empower your team to be more creative?

We make sure we don’t ship org structures, but rather aligned products. How can our products complement one another, building upon each other to achieve our primary goals? Whether it’s scheduling, routing, predictive analytics, or operational excellence, we are acting as one, and smartly leveraging our domains and strengths.

Joe Chang

Director of Engineering, Uber Freight

How does your team reward individual success?

I believe recognizing someone’s contributions are a big part of team play. On our weekly meetings, we always start with a shout-out, and it’s amazing how this simple topic stimulates the team to recognize small victories and accredit colleagues for their accomplishments. This brings our team together and fosters a more collaborative environment.

Silvia Penna

Sr Manager, Central Operations

More Jobs at Uber

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
View Uber's full profileSee more Uber jobs