Proven frameworks and honest case studies from experienced entrepreneurs, helping early-stage tech founders go from idea to IPO.

Discover Startup Secrets
  • Home
  • Team
  • Portfolio
  • Startup Secrets
  • Core Community
  • Open Roles
  • 45 School Street, 2nd FL (Boston’s Old City Hall)
  • (617) 303-0064
  • Boston, Ma 02108
  • hello@underscore.vc
Underscore VC
1

The Latest Investment News: Why We Invested in Kaiko, the Leading Provider of Digital Assets Data

  • LinkedIn
  • Newsletter Subscribe
    • This field is for validation purposes and should be left unchanged.
  • Sign In Core Membership

Build your career

at an Underscore portfolio company

38
companies
285
Jobs
Search 
jobs
Explore 
companies
My job alerts

Senior Infosec Engineer

Goldcast

Goldcast

IT
Bengaluru, Karnataka, India
Posted on Tuesday, May 2, 2023
Apply
Goldcast is a digital events platform for B2B marketers. More than 300 global enterprises across tech, professional services, manufacturing, and finance use Goldcast to deliver engaging digital and hybrid event experiences for their customers and prospects and drive measurable results through them.
Goldast was founded in mid-2020 at Harvard Business School. Since then, we have raised over $40mn, built a bi-continental team of excellent teammates, and are one of the market leaders in the enterprise digital events space. We count companies such as LG, Adobe, 6Sense, Workday, Zuora, BitSight, Drift, ThoughtSpot, and Clari as customers and were recently featured in G2's list of 100 fastest-growing software companies.
Our sharp market focus and positioning around efficiency & measurability means we are growing really fast, still hiring, have a comfortable runway of 30+ months, and a clear line of sight to quadrupling in the next 2 years.
Get to know us better 👉 https://www.goldcast.io/

Responsibilities:

  • Develop and implement security controls to protect our Cloudflare and AWS infrastructure, including but not limited to firewalls, intrusion detection and prevention systems, and access controls.
  • Implement DDoS prevention measures using Cloudflare's rate limiting feature, and configure it to protect against volumetric attacks and other forms of DDoS attacks.
  • Conduct security assessments and vulnerability scans to identify and mitigate potential security risks, including vulnerabilities related to CORS, CSP, cross-site scripting, and other web application security concerns.
  • Monitor and analyze security logs and alerts to detect and respond to security incidents in a timely manner.
  • Collaborate with cross-functional teams to ensure security requirements are incorporated into new system and application development projects, including requirements related to CORS, CSP, cross-site scripting, and other web application security concerns.
  • Stay up-to-date with the latest security threats, vulnerabilities, and trends, and apply that knowledge to continuously improve our security posture, including addressing emerging threats related to CORS, CSP, cross-site scripting, and other web application security concerns.
  • Participate in incident response activities as needed, including root cause analysis, remediation, and reporting.
  • Develop and maintain security documentation, including policies, procedures, and guidelines related to CORS, CSP, cross-site scripting, and other web application security concerns.
  • Provide security guidance and support to other teams across the organization, including training and awareness activities related to CORS, CSP, cross-site scripting, and other web application security concerns.

Requirements:

  • At least 5 years of experience in information security, with a focus on Cloudflare and AWS infrastructure.
  • Experience with AWS security services, including AWS Identity and Access Management (IAM), AWS Key Management Service (KMS), AWS CloudTrail, and AWS Security Hub.
  • Experience with Cloudflare security services, including Cloudflare Firewall, Cloudflare Access, and Cloudflare WAF, Cloudflare API shield, Bot analysis as well as the rate limiting feature for DDoS prevention.
  • Strong understanding of security best practices and standards, such as NIST, CIS, and ISO, as well as web application security best practices related to CORS, CSP, cross-site scripting, and other web application security concerns.
  • Experience with security assessment and penetration testing tools.
  • Certifications such as AWS Certified Security - Specialty, Certified Cloud Security Professional (CCSP), or Certified Information Systems Security Professional (CISSP) are a plus.
We are committed to assembling an unrivaled team of operators, designers, technologists, and adventurers who aim to create something magical on the cross roads of video communication and martech. As an early crew member, you'll have enormous impact on both our product and company culture. If you're excited about our mission, and believe you might be a fit, we'd love to hear from you!
Apply now
See more open positions at Goldcast

Something looks off?

Privacy policyCookie policy
  • Home
  • Team
  • Portfolio
  • Startup Secrets
  • Community
  • Discover Startup Secrets
  • 45 School Street, 2nd FL (Boston’s Old City Hall)
  • (617) 303-0064
  • Boston, Ma 02108
  • hello@underscore.vc
  • Explore Our Space
  • Terms and Conditions
  • Privacy Policy
  • Press Kit

This website was designed for accessibility, please flag any challenges you encounter with us.
Underscore VC is a Principles for Responsible Investment signatory and is committed to developing a more sustainable and inclusive global financial system.

  • Terms and Conditions
  • Privacy Policy
  • Press Kit
Web Design by GoingClear