Skip to Job Description
Senior Engineer, Information Security
Bill & Melinda Gates Foundation (BMGF)
Full-time
Apply Now
Posted 5 hours ago
Job Description

The Foundation

We are the largest nonprofit fighting poverty, disease, and inequity around the world. Founded on a simple premise: people everywhere, regardless of identity or circumstances, should have the chance to live healthy, productive lives. We believe our employees should reflect the rich diversity of the global populations we aim to serve. We provide an exceptional benefits package to employees and their families which include comprehensive medical, dental, and vision coverage with no premiums, generous paid time off, paid family leave, foundation-paid retirement contribution, regional holidays, and opportunities to engage in several employee communities. As a workplace, we’re committed to creating an environment for you to thrive both personally and professionally.

The Team

The Business Operations division provides essential capabilities that sustain the foundation’s operational infrastructure and enable programmatic impact. We focus on building an efficient, scalable, and well-managed global organization where employees can thrive and contribute their best work. The division supports strategic alignment, resource planning, and operational excellence across the foundation’s priorities. Business Operations include Information Technology, People, the Office of the COO (OCOO) which encompasses Strategy, Planning & Management (SPM) and Initiative Design & Implementation (IDI) and Global Workplace Services (GWS).

Global Workplace Services plays a critical role in supporting the foundation’s mission by delivering safe, efficient, and inclusive work environments across our global footprint. GWS includes Global Office Operations and provides essential services such as facilities management, security operations, travel coordination, events delivery, and regional office support. Together, the GWS team ensures that employees and partners have the infrastructure, services, and workplace experience needed to advance the foundation’s mission.

This position is located in Seattle, Washington and limited-term position for 9 months. Relocation will not be provided.

Your Role

Information Security is seeking an experienced and highly skilled individual for our Senior Engineer role. In this role you will work across teams to combine security and business requirements to develop, prototype, document, and communicate technical security controls to ensure security outcomes and manage risk at scale for our foundation and affiliated entities. Additionally, you will design and implement operational security practices performed by implementation teams and service providers and serve as a partner and decision maker related to security operations, including performing incident response. This role is critical in performing and contributing to the continuous improvement of the foundation’s global Information Security program. This is an individual contributor role reporting to the Deputy Director, Information Security.

What You’ll Do

  • Participate in the Information Security design process focusing on technical controls, including:

    • In partnership with technology delivery teams, further refine, prototype, and continuously improve technical security controls as implemented across our technology environment

    • Partner engagement to account for key business objectives and user personas

    • Risk management and tracking through the implementation and operation of the design outputs

  • Further refine, prototype, and test the design and continuous improvement of the Information Security portfolio including technology, services, and processes to achieve our core risk management objectives

  • Perform Information Security incident investigation and response Communicate our design philosophies, reference architectures, and use cases to ensure our technology partners and service providers have the knowledge they need to innovate and operate technical solutions safely

  • Partner with IT teams during solution design and operation to develop implementation steps for security configuration

Your Experience

  • At least 5 years of experience in the Information Security field

  • 2+ years of experience leading Information Security incident investigation and response 3+ years of experience with security preventative and detective controls such as endpoint protection, firewall policies, vulnerability management, SIEM, Microsoft Defender suite

  • Excellent collaboration, interpersonal, communication and facilitation skills with ability to present and influence audiences of varying skill levels

  • Experience in Security and regulatory compliance standards and frameworks such as: HIPAA, NIST CSF, ISO27001, and GDPR

  • Experience with controls configuration within common cloud environments (Azure, AWS)

  • Experience with scripting and automation tools knowledge: Azure Sentinel and KQL, PowerShell, Python, Terraform, Ansible or related

  • Experience with application containerization and orchestration: Docker and Kubernetes or related

  • Experience with source code management (Git, GitHub, GitLab) and CI/CD (GitLab CI, Jenkins, Drone, Azure DevOps)

  • Experience with Microsoft Windows (server/desktop) and Linux (CentOS/Ubuntu/RedHat) Experience with identity and access management industry standard methodologies and related solutions (i.e., Active Directory, Azure AD, LDAP, SSO, MFA and related technologies)

  • Experience with networking protocol and tools, which may include TCP/IP, DNS, DHCP, SSL/TLS, VPN, VLAN, SSH, BGP, OSPF

  • Experience with server virtualization technologies: VMware, Hyper-V, Nutanix, KVM or other

  • Strong understanding of authentication and authorization technologies and protocols including SAML, OAuth, Kerberos

  • High performance compute cloud architecture experience a plus

  • B.S. in Engineering, Math, Computer Science, or related field or equivalent working experience

Must be able to legally work in the country where this position is located without visa sponsorship.

The salary range for this role is $154,200 to $231,400 USD. We recognize high-wage market differences in Seattle and Washington D.C., where our offices are located. The range for this role in these locations is $168,200 to $252,200 USD. As a mission-driven organization, we strive to balance competitive pay with our mission. New hires salaries are typically between the range minimum and the salary range midpoint. Actual placement in the range will depend on a candidate’s job-related skills, experience, and expertise, as evaluated during the interview process.

Hiring Requirements

As part of our standard hiring process for new employees, employment will be contingent upon successful completion of a background check.

Candidate Accommodations

If you require assistance due to a disability in the application or recruitment process, please submit a request here.

Inclusion Statement

We are dedicated to the belief that all lives have equal value. We strive for a global and cultural workplace that supports ever greater diversity, equity, and inclusion — of voices, ideas, and approaches — and we support this diversity through all our employment practices.

All applicants and employees who are drawn to serve our mission will enjoy equality of opportunity and fair treatment without regard to race, color, age, religion, pregnancy, sex, sexual orientation, disability, gender identity, gender expression, national origin, genetic information, veteran status, marital status, and prior protected activity.

{{waiting}}
This position is no longer open.