Serve as an integral member of our Secure Image Factory: create OS and containers images, and harden
Work closely with our software development teams, product, and cloud infrastructure engineers to build and configure delivery environments supporting CI/CD tools using an agile development methodology for static security code analysis, 3rd party component analysis, vulnerability scanning and management platforms
Install, configure, test, and maintain operating systems, application software, and system management tools
Represent and be a part of the Agile development teams to deliver end-to-end automation of hardening, deployment, monitoring, and infrastructure management in a distributed cloud environment
Ensure applications, systems, and cloud services are monitored in accordance with security controls related to SOC 2, ISO 2700x and RMS Information Security Policy
Assisting in the development, documentation and automation of vulnerability management and patch management processes
Develop new data feeds and services for continuous monitoring and detection capabilities, including the writing of data parsers, installation of data connectors and log collectors
Qualifications
Minimum 2 \xe2\x80\x93 5+ years of experience in a DevOps role and an understanding of Security vulnerabilities & security engineering practices
Demonstrated ability to facilitate automation and integration through scripting in PowerShell, Python, etc., highly preferred
Foundational experience in container-based deployments using Kubernetes and Docker (orchestrating, scaling, and management)
Foundational experience in creating OS and containers images and pushing images to registries and deploying and maintaining micro services and automation and integration through scripting in PowerShell, Python, Perl, etc. in monthly operations
Basic proficiency in setting up and/or maintaining CI/CD pipelines using various tools like Azure DevOps, Git, Jenkins, Bamboo, SVN, Packer, Ansible, Terraform Nexus highly desired
Foundational experience with AWS services such as EC2, VPC, AMI, SNS, RDS, EBS, Cloud Watch, CloudFormation, Autoscaling, SNS, EMR, Cloud Front, IAM, S3, Dynamo DB
Other cloud: Microsoft Azure and Azure services that mimic those in AWS
Security fundamentals: working knowledge of TCP/IP addressing and standards including network design, firewall configuration, load balancing, remote access, authentication, and vulnerability scanning and patching
Experience in creating detailed procedure documents & diagrams
Knowledge of technical security control environments and compliance frameworks including ISO 270001 and SOC 2 is highly desired
An interest in learning more about any of the following specific areas would be appreciated: XML, Service Oriented Architectures, Microservices, WEB Services, REST Services, automated test frameworks, distributed computer architectures and Web-based architectures
About RMS
There\xe2\x80\x99s a 1% chance an earthquake will cause $50 billion of insured loss within the next 12 months and a 5% chance that a hurricane will cause $60 billion of insured losses next year. At RMS, we turn risks into real numbers. How? By building simulation models that allow insurers and investors to understand and manage their global risks--from hurricanes, quakes, and wildfires, to cyberattacks, terror attacks, and pandemics. Why? We want to build a more resilient world, and we\xe2\x80\x99re on a mission to help make every risk known.
Insurers, reinsurers, investors, financial institutions, governments, and NGOs trust RMS solutions to better understand and manage catastrophe risks. RMS was founded in 1989 by Stanford scientists who created our first model for California Earthquake. Today, RMS has some 1,300 employees across 13 offices in the US, London, Bermuda, Zurich, India, China, Japan, Singapore, and Australia, and over 1000 products and models now covering six continents.
RMS helped pioneer the natural catastrophe model market we now lead \xe2\x80\x93 and we continue to innovate. In May 2019, we announced , an open-standard platform for strategic risk management. Through this purpose-built platform, clients can tap into RMS HD models, rich data layers, intuitive applications and APIs that simply integrate into existing enterprise systems to support business decisions across underwriting, risk selection, mitigation, and portfolio management.
How we understand and manage risk affects everyone and our passion is nothing less than creating a more resilient world through a better understanding of catastrophic events. Join our team of leading scientists, developers, industry experts, and world-class professionals. Together, RMSers make a difference on a truly global scale.
Visit to learn more and follow us on and .
RMS is proud to be an equal opportunity workplace. We are committed to equal employment opportunity without regard to race, color, creed, gender, religion, marital status, registered domestic partner status, age, national origin or ancestry, physical or mental disability, genetic characteristics, sexual orientation, or any other classification protected by applicable local, state, or federal law.
To all recruitment agencies: RMS does not accept unsolicited agency resumes and will not be responsible for the payment of placement fees related to unsolicited resumes submitted to open positions, job aliases, or to our employees