Help empower our global customers to connect to culture through their passions.

Why you’ll love this role

This hands-on security engineering position will be part of StockX's Information Security Cloud & Application Engineering team.  This team is responsible for leading efforts to enhance the security of the cloud infrastructure and applications all across StockX. Members of this team work with several stakeholders to ensure appropriate processes, procedures, and controls are adequately designed and implemented to meet StockX security requirements, mitigate risks, and ensure compliance. They provide ongoing engineering support for security systems in our cloud native environment.  This is a critical IC role on the StockX Information Security team and will work with several stakeholders in Product, Engineering, Operations, Customer Service, Safety & Trust, & IT.

What you’ll do

  • Partner with the Platform Engineering and IT teams to design, implement, and manage security measures for our AWS & Azure cloud infrastructure.
  • Collaborate with cross-functional teams to automate and expedite integration of security best practices into the entire development lifecycle, from design to deployment.
  • Use available tooling to assess risks and vulnerabilities and implement strategies to mitigate and remediate identified security risks.
  • Automate enforcement security of policies and related controls for AWS cloud services and data protection.
  • Monitor and respond to security incidents, conduct investigations, and implement incident response procedures as needed with confidentiality and professionalism.
  • Design and implement identity and access management (IAM) solutions for secure access control.
  • Partner with other teams to ensure IAM controls are part of a defense in depth strategy
  • Ensure the continuing operation and effectiveness of key identity and access management controls
  • Stay abreast of the latest cloud security trends, threats, and vulnerabilities, and implement proactive measures to address emerging risks.
  • Possess knowledge of reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and Docker supported by other engineering teams.
  • Provide mentorship and guidance to junior members of the security team.
  • Ability to quickly analyze logs and configurations using; Python, JQ, cURL, etc.
  • Integrate application security tooling within the existing CI/CD environment to improve application security.

About you

  • 4-7 years of relevant security experience.
  • Bachelor's degree preferred but not required.
  • Cyber security certifications preferred e.g. CISSP, CISM, Security +, AWS Security
  • Strong experience with cloud native environments and with multiple cloud services providers
  • Experience with scripting across multiple cloud providers and infrastructure APIs to analyze security posture and configurations.
  • Detailed understanding of cloud and network security
  • Experience reading other engineer’s code across a number of languages to identify security issues.
  • Understanding of modern cloud technology components and deployment patterns: containers, Kubernetes, serverless, infrastructure as code, etc.
  • Experience with OAuth/SAML techniques and OIDC
  • Deep understanding of Identity & Access Management security controls and tooling
  • Strong understanding of securing distributed cloud and on-premesis networks using security groups, network ACLs, VPNs, and WAFs among other technologies
  • Strong understanding of security monitoring tools for cloud environments such as CSPM, CASB, cloud audit logs such as AWS Cloudtrail, etc
  • Strong understanding of application security tools such as Snyk, Sonarcloud, Dependabot or Renovate, GitGuardian, etc 
  • Technical understanding of how threats like Spam, Phishing, DDoS Attacks, Brute Force Attacks, SQL Injections, XSS are executed and how to protect against them across an organization.

 

Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation.

Pursuant to the various pay transparency laws/acts, the base salary range is $140,000 to $160,000 plus opportunities for benefits (e.g., medical, dental), equity and discretionary bonuses. Compensation is dependent on geography and may vary.

About Us

StockX is proud to be a Detroit-based technology leader focused on the large and growing online market for sneakers, apparel, accessories, electronics, collectibles, trading cards, and more. StockX's powerful platform connects buyers and sellers of high-demand consumer goods from around the world using dynamic pricing mechanics. This approach affords access and market visibility powered by real-time data that empowers buyers and sellers to determine and transact based on market value. The StockX platform features hundreds of brands across verticals including Jordan Brand, adidas, Nike, Supreme, BAPE, Off-White, Louis Vuitton, Gucci; collectibles from artists including KAWS and Takashi Murakami; and electronics from industry-leading manufacturers Sony, Microsoft, Nvidia, and Apple. Launched in 2016, StockX employs more than 1,000 people across offices and verification centers around the world.
 
 
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. This job description is intended to convey information essential to understanding the scope of the job and the general nature and level of work performed by job holders within this job. However, this job description is not intended to be an exhaustive list of qualifications, skills, efforts, duties, responsibilities or working conditions associated with the position. StockX reserves the right to amend this job description at any time.

Apply for this Job

* Required

resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)


Demographic Questionnaire

At StockX, Diversity, Equity and Inclusion is not a program or check-the-box initiative, it is what we stand on, it is our footprint. Our culture honors authenticity of every dimension of diversity. We recognize that it is the very things that make our team members unique that adds value to who we are. We have an intentional focus on incorporating equitable practices and fostering  inclusive communities where our teams can bring their best selves, develop into their potential, and reciprocate the respect and appreciation that enables our business to thrive. 

That focus begins  by building a robust, diverse talent pool across every team at StockX.  As part of that focus, we wish to survey our job applicants to better understand their full profiles.  Below is a set of optional demographic questions for you to review.  Your decision to provide demographic information is entirely yours, and completely independent of the recruitment decision-making process. If you do not want to provide us with this information, select the “I don’t wish to answer” option to any or all of the questions. If you do provide responses, those responses will be considered your consent to provide us with this information. 

Responses to the survey will be collected by our recruiting partner Greenhouse Software, Inc. Survey results will be provided to StockX’s talent acquisition team in an anonymized and aggregated report only after the job posting has expired. Your individual responses will not be provided to StockX and will not impact the outcome of your application in any way. Where applicable, the data collected will also help us comply with applicable regulatory requirements. We appreciate you taking the time to do this!

What is your gender? [Which gender best describes you?] (Select all that apply) *





Are you transgender? [Do you describe yourself as transgender?] (Select one) *



What is your sexual orientation? (Select all that apply) *










How do you identify? (race/ethnicity) (Select one) *












If you are based in the US, what is your veteran status? (Select one) *




Do you have a physical or mental disability, impairment, or condition that substantially limits major life activity? (Select one) *





Please reach out to our support team via our help center.
Please complete the reCAPTCHA above.