Sr. Infrastructure Security Engineer

    • Marriott International
  • Bethesda, MD
  • Posted 46 days ago | Updated 3 hours ago

Overview

Remote
On Site
Hybrid
USD 96,038.00 - 209,169.00 per year
Full Time

Skills

Google Cloud Platform
NIST 800-53
Attention to detail
C++
Red Hat Enterprise Linux
Information Technology
Information systems
Hardening
Vulnerability management
Enterprise software
Test cases
Computer science
Application development
Systems engineering
Cloud computing
Patch Management
Security controls
Computer engineering
Software development
Data link layer
Problem solving
Organizational structure
Change management
Operating systems
Oracle Linux
Lifecycle management
Load balancing
Information assurance
Data security
Node.js
HTML5
Cloud security
IT management
Solution delivery
Enterprise architecture
Information security
Service delivery
Test plans
Technical Support
Health care
Life insurance
Management
Automation
Microsoft Windows
Linux
VMware
Regulatory Compliance
Reporting
IaaS
PaaS
SaaS
Scripting
Design
National Institute of Standards and Technology
Modeling
Terraform
Amazon Web Services
Microsoft Azure
OpenStack
Red Hat Linux
Satellite
BigFix
Python
Ansible
Windows PowerShell
Bash
Operations
Docker
Orchestration
Kubernetes
CSF
COBIT
Nessus
DevOps
Network
IP
Routing
Testing
Communication
C
Java
Perl
Ruby
CentOS
Storage
Data
Replication
Backup
Recovery
Virtualization
Akamai
IO
Splunk
PKI
Spring Framework
Nginx
J2EE
Database
Oracle
MySQL
PostgreSQL
Apache Cassandra
Couchbase
MongoDB
Roadmaps
Governance
Leadership
Computer hardware
Budget
Insurance
Recruiting
SAP BASIS
Law

Job Details

Job Number 24062158
Job Category Information Technology
Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAP
Schedule Full-Time
Located Remotely? Y
Relocation? N
Position Type Management
JOB SUMMARY

The Sr. Infrastructure Security Engineer ensures the stability, integrity and efficient operation of information systems and technologies across the global enterprise. This role serves as a key technical resource designing, engineering, and delivering system hardening and image creation automation for Windows and Linux environments within the public cloud and private VMWare environments. This role will also assist the team in vulnerability management, patch and compliance activities, and public cloud remediation efforts. They will work with systems, application, and enterprise/solution architects to develop requirements and test cases, implement, monitor, report, and tune applications, infrastructure, and services for Marriott's enterprise platforms.

CANDIDATE PROFILE

Education and Experience

Required:
  • Undergraduate degree in an engineering or computer science discipline and/or equivalent experience/certification
  • 7+ years' progressive experience in Information Technology including:
    • Proven track record of engineering enterprise solutions for a large global company
    • 5+ years' experience in information technology application development or systems engineering
    • 5+ years Linux/windows experience
    • 5+ years Cloud technologies including IaaS/PaaS/SaaS deployments in Public Cloud
    • 5+ years in OS scripting and automation
    • 3+ years' experience with design and implementation of CIS/NIST hardening standards applied at an enterprise level
    • 3+ years' experience with design and implementation of a patch management solution
    • 3+ years professional experience in Infrastructure as a Service (IaaS) modeling including infrastructure as code development (Terraform or similar) or infrastructure engineering at enterprise scale
    • 3+ years experience implementing AWS Well-Architected security framework
    • 3+ years professional experience with cloud computing technology and its concepts (e.g. AWS, Azure, Google Cloud Platform) and virtualized (e.g. VMWare, OpenStack)
    • 3+ years' experience with server patch management systems (e.g. RedHat Satellite, BigFix)
    • 3+ years' experience in script development using automation and scripting languages such as python, ansible, packer, PowerShell, and/or bash
    • 2+ years professional experience in container operations (Docker, OpenShift Enterprise, GKE, ECS) and orchestration (Docker Swarm, Kubernetes)
  • Knowledge of security controls frameworks, such as NIST 800-53, NIST CSF, COBIT, or CIS
  • Knowledge of vulnerability management, patching, and related management tools (e.g. BigFix, RedHat Satellite Server, Nessus)
Preferred:
  • Graduate Degree in Computer Science or Computer Engineering
  • DevOps Engineer developing pipelines, administering Kubernetes, and creating and hardening containers using Dockerfile
  • Experience in the design, implementation, and operational support of mission critical solutions
  • Embraces DevOps/SRE mentality of automation first
  • Possesses base of experience within software development (programming)
  • Very good understanding of network technologies (layer 2-3, IP stack, CIDR routing)
  • Demonstrated experience delivering technology solutions in a fast-paced, deadline driven enterprise environment
  • Demonstrated experience learning and applying new technologies to solve business needs
  • Excellent problem-solving skills working both independently and within cross-functional teams in a complex organizational structure
  • Excellent understanding of change management, testing requirements, techniques, and tools to ensure high system availability
  • Strong attention to detail with an ability to operate effectively across multiple priorities
  • Excellent written and verbal communication skills for a wide range of audiences including executives, business stakeholders and IT teams
  • Experience in one or more of the following: C, C++, Java, Python, Go, Perl, or Ruby
  • Experience across many of the following platforms:
    • Container platforms (Examples: OpenShift, Docker, Kubernetes, GKE)
    • Operating Systems: Red Hat Enterprise Linux, Oracle Linux, Windows, CentOS
    • Storage: Block Storage, Object Storage, Lifecycle Management and Data Replication, Backup & Recovery Best Practices
    • Network Virtualization: Akamai Global Traffic Management and Edge & Delivery Networks, Elastic Load Balancing Services,
    • Domain Name Services and Registration
    • Security: Compliance, Information Assurance, Data Protection using industry-best practices and tooling (Crowdstrike Falcon, Tenable.io, Splunk, HashiCorp Vault signers, PKI and Certificate Management)
    • Applications Frameworks: Java Spring, node.js, NginX, JavaEE, HTML5
    • Cloud security patterns: Rehydration, landing zone, ingress/egress traffic management
    • Database: Relational (Oracle, MySQL/MariaDB, PostgreSQL, MSSQL Server), non-relational (Cassandra, Couchbase, MongoDB)
  • Experience in developing technology roadmaps and strategies
CORE WORK ACTIVITIES
  • Provides technical leadership, oversight, governance, and direction for services related to Marriott solution delivery for enterprise image hardening, rehydration, and patch automation
  • Leads analysis of current environment for deficiencies and provides solutions
  • Leads efforts to create hardening baseline and automation to Windows and Linux systems in cloud and VMWare environments
  • Provides input into lifecycle, improvement, and standardization strategies in coordination with Enterprise Architecture and Global Information Security
  • Provides and presents status, analysis and reporting to internal stakeholders, Executive Management and Senior Leadership
  • Trains and/or mentors other team members, and peers as appropriate
  • Identifies opportunities to enhance the service delivery, operations, and continual service improvement processes
  • Identifies best in class software and hardware products to meet the needs of a world class development team
  • Develop implementation plans, test plans, and timelines for projects and tasks
  • Develop strategies for large scale vulnerability remediation across the enterprise
  • Communicate with cross-functional teams to consult, direct, and track remediation activities
  • Performs other compliance-related functions as required
Delivering Technology
  • Provides technical expertise and leadership within own and other teams
  • Provides recommendations to improve the effectiveness of processes and programs
  • Understands second order effects and global perspective in their work function
  • Questions the status quo in a relentless effort to modernize and apply progressive technologies and techniques
  • Maintains currency with evolving and leading edge technology
Delivering on the Needs of Key Stakeholders
  • Understands and meets the needs of key stakeholders.
  • Communicates concepts in a clear and persuasive manner that is easy to understand.
  • Demonstrates an understanding of business priorities.
  • Supports achievement of performance goals, budget goals, team goals, etc.
Providing Technical Support and Consultation
  • Provides technical expertise and technical leadership within own and other teams.
  • Provides recommendations to improve the effectiveness of processes and programs.
  • Demonstrates advanced knowledge of job-relevant issues, products, systems, and processes.
  • Applies knowledge/judgment to achieve business goals.
  • Foresees, identifies and resolves problems.
  • Keeps up-to-date technically and applies new knowledge to job.
  • Performs other reasonable duties as required for this position.
California Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually.

Colorado Applicants Only: The salary range for this position is $96,038.00 to $190,154.00 annually.

Hawaii Applicants Only: The salary range for this position is $116,205.00 to $209,169.00 annually.

New York Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually.

Washington Applicants Only: The salary range for this position is $96,038.00 to $209,169.00 annually. In addition to the annual salary, the position will be eligible to receive an annual bonus. Employees will accrue 0.04616 PTO balance for every hour worked and eligible to receive minimum of 7 holidays annually.

All locations offer coverage for medical, dental, vision, health care flexible spending account, dependent care flexible spending account, life insurance, disability insurance, accident insurance, adoption expense reimbursements, paid parental leave, educational assistance, 401(k) plan, stock purchase plan, discounts at Marriott properties, commuter benefits, employee assistance plan, and childcare discounts. Benefits are subject to terms and conditions, which may include rules regarding eligibility, enrollment, waiting period, contribution, benefit limits, election changes, benefit exclusions, and others.

Marriott HQ is committed to a hybrid work environment that enables associates to Be connected. Headquarters-based positions are considered hybrid, for candidates within a commuting distance to Bethesda, MD; candidates outside of commuting distance to Bethesda, MD will be considered for Remote positions.

The application deadline for this position is 49 days after the date of this posting, 04/09/2024.

Marriott International is an equal opportunity employer. We believe in hiring a diverse workforce and sustaining an inclusive, people-first culture. We are committed to non-discrimination on any protected basis, such as disability and veteran status, or any other basis covered under applicable law.

Marriott International is the world's largest hotel company, with more brands, more hotels and more opportunities for associates to grow and succeed. Be where you can do your best work, begin your purpose, belong to an amazing global team, and become the best version of you.