Hiring During COVID-19: Fannie Mae is hiring for all open positions as we deliver on our mission of providing stability, liquidity, and affordability to the housing market during this critical time. All interviews and onboarding are conducted virtually. We look forward to connecting with you. Learn more

AWS Security Engineer II

Job Description

THE COMPANY

Fannie Mae provides reliable, large-scale access to affordable mortgage credit in communities across our nation. We are the leading source of funding for housing in America, which means more people can buy or rent a home. We are focused on sustaining the housing recovery, improving our company, and leading change to make housing better.

Join our diverse, high-performing team and make a difference as we work together to enable access to a good home.

JOB INFORMATION

Design and implement systems and procedures to sustain the security, integrity, and availability of the organization's data. Assess risk of exposure of proprietary data through weaknesses in platforms, access procedures, and forms of access to the organization's systems and the data contained in them. Track security violations and identify trends or exposures that could be addressed by additional training, technical measures, or use of application tools to enhance security. May participate in simulated attacks or security violations to assess the organization's data security measures.

KEY JOB FUNCTIONS

  • Strong understanding of fundamental Application and Infrastructure Security concepts, including common types of attacks and exploitation techniques.
  • Solid Experience with various application security tools (Example—ZAP, BURP, Tenable,Check Mark, Semmel, fortify, Sonatype, Kali, WebInspect/AppScan, dependency check).
  • Solid understanding of common web and systems application vulnerabilities.Experience integrating security tools into the DevOps environment (such as Zap or Burp)
  • Familiarity with key security concepts/frameworks such as OWASP, CVE, and CVSS.
  • Proficient in automation and deploying CI and CD tools and services (Jenkins Pipeline as Code, Git, Maven). 
  • Experience with Python, bash, Linux shell or similar
  • Experience integrating with native AWS services (CodePipeline, CodeCommit, CodeBuild, CodeDeploy, EC2, EKS, ECR, S3)
  • Hands on experience building solutions with tools and services like AWS CloudFormation, Terraform, or custom build orchestration tools leveraging SDKs or directly interacting with APIs
  • Experience working one or more of the following languages: Java, Python, or Node.js
  • Knowledge of networking, IAM, API and security assessment tools/methodologies.  
  • Familiar with container and orchestration.
  • Familiar with IAM protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth. 
  • Understanding of the cyber threat landscape and methodologies to protect technology assets.
  • AWS Certified Developer Associate or AWS Certified Solutions Architect Associate preferred.
  • Excellent verbal and written communication skills
EDUCATION

Education Level Required (if any)
  • Bachelor Degree or Equivalent
Area of Study Preferred(if any)
  • Computer Science or IT/IS
MINIMUM EXPERIENCE
  • 4-6 years of related experience
SPECIALIZED KNOWLEDGE & SKILLS
  • Strong Python, bash, Linux shell or similar
  • Experience integrating with native AWS services (CodePipeline, CodeCommit, CodeBuild, CodeDeploy, EC2, EKS, ECR, S3)
  • Experience integrating security tools into the DevOps environment (such as Zap or Burp)
  • Proficient in automation and deploying CI and CD tools and services (Jenkins Pipeline as Code, Git, Maven).
  • Hands on experience building solutions with tools and services like AWS CloudFormation, Terraform, or custom build orchestration tools leveraging SDKs or directly interacting with APIs
  • Experience working one or more of the following languages: Java, Python, or Node.js
  • Knowledge of networking, IAM, API and security assessment tools/methodologies.
  • Familiar with container and orchestration.
  • Familiar with IAM protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth.
  • Understanding of the cyber threat landscape and methodologies to protect technology assets.
  • AWS Certified Developer Associate or AWS Certified Solutions Architect Associate preferred.
  • Excellent verbal and written communication skills
   
EMPLOYMENT

As a condition of employment with Fannie Mae, any successful job applicant will be required to successfully complete a background investigation.

Fannie Mae is an Equal Opportunity Employer.

Req ID: 58880