Apply Now
Principal Information Security Engineer
Concord, MA US
Full Time
Apply Now

The job you’ll be doing at SmashFly

You’re reading this because you are thinking about your next challenge. You’ve proven your ability to work with teams to design, build, and instrument security programs, but you are starting to think about the next great software you can impact. We’re glad you’re here.

In addition to overseeing security efforts for our existing environment, SmashFly is transforming our product into a globally scalable, cloud based platform, and we need a talented Information Security Engineer to help lead the way and design security into all that we do. While SmashFly uses Cloud services extensively already, we have an aggressive plan to accelerate full adoption of industry best practices. At SmashFly, you will get a chance to re-shape how we deliver our award-winning software by leading our security initiatives.

Job responsibilities include:

  • Full lifecycle ownership of security tools, including, but not limited to, IDS/IPS, WAF, SIEM, end-point protection, firewalls, and scanning
  • Advise SmashFly departments on security-related topics
  • Oversee all security requirements related to usage of cloud services, including definition, implementation, and monitoring
  • Provide a risk-based strategy and roadmap for SmashFly’s security program
  • Lead technical efforts associated with the adoption and compliance with appropriate security frameworks and standards
  • Provide the highest level of confidentiality, professionalism, and ethics while working with sensitive and confidential information
  • Lead SmashFly’s security incident response team, and provide technical guidance on disaster recovery and business continuity programs
  • Identify and monitor metrics regarding the state of security of the environment
  • Stay current and develop relationships and engage with industry partners to assess security-related trends and topics
  • Maintain security-related operating procedures and protocols

The skills you should have

  • Bachelor’s Degree or equivalent work experience
  • At least 8 years of work experience as a security practitioner or consultant
  • Understanding of information security concepts and methodology and ability to learn new technologies
  • Demonstrate and practice strong and effective written and oral communication skills
  • Experience working closely with technical engineers and developers
  • Strong interpersonal and communications skills; able to work in a collaborative, team-oriented environment
  • Strong understanding of emerging technologies and implications on policy and operations
  • Possession of at least one current applicable certification, such as CISSP, GPEN, GWAPT, GSEC, CISM or CISA
  • Expertise with wireless technologies, protocols and standards, and network management/analysis tools
  • Experience managing vendors and managed service providers
  • Extensive experience in the full lifecycle of implementing security controls, including requirements, vendor selection, implementation, and monitoring

Our track record so far

  • We’ve been named a Best Place to Work by the Boston Business Journal
  • We’ve been named by the Boston Globe as Best Places to Work
  • We’re the top ranked company in Boston by Glassdoor
  • We offer great benefits including an open vacation policy, stock options, weekly happy hours – you get the idea

Oh, and our application process is easy, pretty transparent, and painless.

We need talent like you to join us. Ready to apply? Get Started today. 


Apply Now

SmashFly's Total Recruitment Marketing Platform helps corporate recruiting organizations and Recruitment Process Outsourcing (RPO) companies centralize their recruiting operations while providing real-time analytics across all of their initiatives to improve overall recruitment results.

The Total Recruitment Marketing Platform connects what are often disparate technologies into a single all-in-one software solution that includes Global Job Distribution, Social Recruiting, CRM, Web Sourcing, Marketing Automation, Mobile, Career Sites, Landing Pages, Search Engine Optimization (SEO), Employee Referrals and Talent Network Building. All with the actionable Analytics necessary to tell what's working and not working across the entire recruitment strategy.

SmashFly is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, gender, sexual orientation, gender identity or expression, religion, national origin, marital status, age, disability, veteran status, genetic information, or any other protected status.