Staff Security Engineer – Email Position Available In Essex, Massachusetts

Tallo's Job Summary: This job listing in Essex - MA has been recently added. Tallo will add a summary here for this job shortly.

Company:
OREGON EMPLOYMENT DEPARTMENT
Salary:
JobPart-timeOnsite

Job Description

Job Listing ID:

4293336

Job Title:

Staff Security Engineer –

Email Application Deadline:

Open Until Filled

Job Location:

Salem

Date Posted:

06/17/2025

Hours Worked Per Week:
Not Provided Shift:
Not Provided Duration of Job:

Either Full or Part Time, more than 6 months You may contact this employer directly.
(Obtain the contact information to print or add to your jobs.)

Job Summary:

What you can expect The Staff Security Engineer (Email) at Zoom is responsible for the security design and review of Zoom products, with a focus on the email service. The ideal candidate should possess a combination of excellent technical knowledge across multiple product security domains and great working knowledge and experience in end-to-end email service security.

They will work closely with engineering teams to design, develop, and validate security solutions. As an advocate and SME in secure mail platform design, implementation, and validation, they’ll serve as a trusted advisor. They will provide architectural guidance and verify security implementations.

This is an exciting opportunity to work with cutting-edge technologies in cloud and security, and to make a meaningful impact on Zoom Mail and related products. About the Team The Security Architecture team is dedicated to ensuring Zoom releases and deploys secure products. We work with diverse engineering teams across the organization to meet security goals and maintain compliance with established SLAs. Responsibilities Guiding engineering team in end-to-end secure email system design and implementation, as the subject-matter expert. Conducting threat modeling, architecture review, security code review, security assessment, and security testing (web application, native application, web services, cloud-based services, and infrastructure assessments). Performing cloud infrastructure reviews from a security perspective. The primary focus will be on AWS and many of its common service components such as S3, IAM, EC2, VPC, etc. Performing in-depth security review of new Zoom features and functionalities in addition to Email services. This includes identifying security vulnerabilities (OWASP Top Ten, common issues in NVD, RCE, etc.) and reviewing code in C++ and/or Java. It also includes verifying security posture through testing (using manual/automated techniques with tools like Burp Suite and Coverity). Identifying gaps in existing cloud security architecture design/configuration, recommend changes or enhancements (authentication, authorization, network segmentation, container configuration, etc.). Providing hands on security training and secure coding best practices to engineering teams. What we’re looking for Work experience and understanding of email protocols like SMTP, IMAP, SPF, DKIM and DMARC. 3+ years experience securing multi-tenant email platforms, technology and infrastructure including components such as webmail, MTA, identity and access management, and spam filtering. Possess a Bachelor’s in Computer Science, Information Science, Cybersecurity, Computer or Electrical Engineering (or similar field), and 5+ years experience in security. Have extensive experience in security testing in various environments. This includes assessing the security posture of web applications, native applications, distributed systems, and cloud infrastructure such as AWS. Have a good understanding of software security architecture and design, threat modeling, security code review, cryptography, and SDLC. Also have the ability to clearly articulate best practices and mitigations for application security. Have hands on security experience working with AWS and common service components within AWS. Ability to identify security gaps in the overall design as well as configuration issues in individual components. Have in depth knowledge of network based, system level, and application layer attacks and mitigation methods. Have good knowledge of technology and security topics including network and application security (OWASP), infrastructure hardening, security baselines, web server, and database security. Have good development e…

Job Classification:

Information Security Analysts Access our statewide or regional occupation report for more information about wages,
employment outlooks, skills, training programs, related occupations, and more. Compensation

Salary:

Not Provided Job Requirements

Experience Required:

 See Job Summary

Education Required:

None

Minimum Age:
N/A Gender:

N/A

Other jobs in Essex

Other jobs in Massachusetts

Start charting your path today.

Connect with real educational and career-related opportunities.

Get Started