Who are we?
Equinix is the world’s digital infrastructure company®, operating over 250 data centers across the globe. Digital leaders harness Equinix's trusted platform to bring together and interconnect foundational infrastructure at software speed. Equinix enables organizations to access all the right places, partners and possibilities to scale with agility, speed the launch of digital services, deliver world-class experiences and multiply their value, while supporting their sustainability goals.
Our culture is based on collaboration and the growth and development of our teams. We hire hardworking people who thrive on solving challenging problems and give them opportunities to hone new skills and try new approaches, as we grow our product portfolio with new software and network architecture solutions. We embrace diversity in thought and contribution and are committed to providing an equitable work environment that is foundational to our core values as a company and is vital to our success.
Senior Staff Engineer, Product Software Security
Product Software, Platform Services
Equinix is a global leader in interconnection and data center services, empowering businesses to connect their digital infrastructure securely and reliably. With a presence in more than 50 markets worldwide, Equinix provides cutting-edge solutions that enable companies to accelerate their digital transformation and thrive in today's interconnected world.
As we continue to prioritize the security of our customers' data and infrastructure, we are seeking a talented and driven Software Security Engineer to join our passionate team of experts at Equinix and help us maintain the highest level of security for our platform services that serve all Equinix’s products and customers.
Job Summary
As a Software Security Engineer at Equinix, you will play a pivotal role in enhancing the security posture of our software systems and services. Your expertise will be instrumental in safeguarding critical data and ensuring the uninterrupted operation of our platform services. You will collaborate closely with product and information security teams, as well as platform services’ engineering teams, architects, and other DevSecOps professionals across the organization.
Together, you will implement robust security measures, address potential vulnerabilities identified by InfoSec stakeholders, and promote security best practices throughout the software development lifecycle. This is a technical, hands-on engineering role designed for security specialists familiar with Java/Spring Boot and microservices architecture. Experience with distributed, highly automated environments and a developer’s understanding of security, coupled with a willingness to learn new concepts, are essential for success in this role.
Responsibilities
Collaborate with internal InfoSec stakeholders to address security requirements and enhance security awareness across the organization
Collaborate with platform services’ engineering teams to implement security practices into the software development process, ensuring secure coding standards, design principles, and threat mitigation strategies are followed
Monitor and analyze security events and incidents, providing timely resolution and implementing preventive measures to protect against future threats
Adhere to the defined SLOs to address the security vulnerabilities
Conduct security training and awareness programs for developers and other team members to promote a security-conscious culture within the organization
Contribute to the development and maintenance of security policies, procedures, and guidelines that align with industry best practices and regulatory requirements
Conduct comprehensive security assessments, including code reviews, penetration testing, SAST/DAST scanning, and threat modeling, to identify and address potential security risks in the services that the platform team owns
Manage configurations of security tools for platform services in alignment with other products and InfoSec
Adopt and improve cloud and infrastructure security controls
Assess the security of authentication, authorization, and encryption mechanisms to safeguard sensitive data and ensure secure access control.
Actively research and keep abreast of the latest security threats, vulnerabilities, and industry best practices, and apply this knowledge to continuously improve our security strategies
Qualifications
Minimum 7 years of professional engineering experience in Software Security , or a related field
Minimum 5+ years of full-stack expertise in application design & development with Java technologies, with knowledge of Spring, JPA/Hibernate, Message Queues & Workflow Engines in a microservices architecture
Strong hands-on ability to fixing vulnerable libraries/packages in Java, Spring Boot, ReactJS, NodeJS, Go, Kotlin, Message Queue frameworks or workflow engines
Strong understanding of software security principles, secure coding practices, and common security vulnerabilities (OWASP Top 10, CWE, etc.)
Proven work experience as a Software Security Engineer or similar role with a focus on securing large-scale, distributed software systems including secure configuration of AWS, docker, K8s, service mesh, and NACL configuration management
Hands-on experience with security tools and frameworks for code analysis, vulnerability scanning, and penetration testing in software & network systems
Hands-on experience with cloud security best practices and technologies using AWS
Solid knowledge of network protocols, web application security, and data protection mechanisms
Understanding of compliance frameworks like ISO, GDPR and SOC
Demonstrated ability to collaborate effectively with cross-functional teams and communicate complex security issues to both technical and non-technical stakeholders
Strong analytical and problem-solving skills with a keen eye for detail
Passion for staying up-to-date with the latest security trends and technologies to proactively address emerging threats
Apply now and be a key player in shaping the future of the security of Equinix’s platform services
Equinix is committed to ensuring that our employment process is open to all individuals, including those with a disability. If you are a qualified candidate and need assistance or an accommodation, please let us know by completing this form.
Equinix is an Equal Employment Opportunity and, in the U.S., an Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to unlawful consideration of race, color, religion, creed, national or ethnic origin, ancestry, place of birth, citizenship, sex, pregnancy / childbirth or related medical conditions, sexual orientation, gender identity or expression, marital or domestic partnership status, age, veteran or military status, physical or mental disability, medical condition, genetic information, political / organizational affiliation, status as a victim or family member of a victim of crime or abuse, or any other status protected by applicable law.