About Gap Inc.
Our past is full of iconic moments — but our future is going to spark many more. Our brands — Gap, Banana Republic, Old Navy and Athleta — have dressed people from all walks of life and all kinds of families, all over the world, for every occasion for more than 50 years.
But we’re more than the clothes that we make. We know that business can and should be a force for good, and it’s why we work hard to make product that makes people feel good, inside and out. It’s why we’re committed to giving back to the communities where we live and work. If you're one of the super-talented who thrive on change, aren't afraid to take risks and love to make a difference, come grow with us.
About the Role
We are seeking a highly skilled Security Generalist with a strong foundation in security principles and architecture. The ideal candidate will have hands-on experience in supporting Customer Identity platforms, extensive exposure and working knowledge of DevSecOps principles, cloud security, WAF, firewalls, and networking concepts while demonstrating expertise in scripting and automation. This role requires a blend of security operations, engineering, and architecture capabilities to enhance the security posture of our organization
What You'll Do
- As a key member of the Product Security organization, you will be designing and implementing cutting-edge security solutions at scale.
- Design and Engineer repeatable processes/solutions and implementation of new technologies and tools across the enterprise technology footprint.
- Help drive technical and operational maturity from a security standpoint across all of Gap channels.
- Bring an automation-first mindset to drive productivity across all operational tasks.
- Work with Architects and Engineers to maintain accurate and reliable documentation of our network policy and design.
Who You Are
- Excellent understanding of distributed application architecture and demonstrated experience in working with development teams to build secure solutions.
- Customer Identity & Access Management (CIAM): Manage and secure customer identity platforms using tools like Ping, Okta, or similar technologies to enforce authentication, authorization, and access control policies.
- Cloud Security: Secure cloud environments (AWS, Azure, GCP) by implementing security controls, managing identity and access, and ensuring compliance with regulatory requirements.
- DevSecOps & Automation: Integrate security into CI/CD pipelines, automate security testing, and develop scripts for security automation using Python, Bash, or other scripting languages.
- Experience in data security and information security, including encryption, certificate life cycle management, PKI implementation, access control, or cryptographic key management
- Experience establishing an enterprise encryption infrastructure with industry standard encryption products, including HashCorp Vault, Vormetric Data Security, Venafi, Fornetix, Tokenex, or Protegrity
- Extensive knowledge of OWASP, network security products, network/application firewalls, web application architecture and a good understanding of internet technologies like DNS, HTTP, and HTTPS
- Experience with leading security reviews, threat modeling and identifying areas of risk.
- Strong familiarity with common vulnerabilities and attack vectors across various industries – retail, ecom, fintech etc
- The ability to communicate complicated technical issues and the risks they pose to developers, network engineers, system administrators, and management.
- Strong familiarity with common vulnerabilities and attack vectors across various industries – retail, ecom, fintech etc.
- Ability to collaborate with multi-functional teams located in different time zones to drive fixes and alignment to established policies
Benefits at Gap Inc.
- One of the most competitive paid time off plans in the industry
- Comprehensive health coverage for employees, same-sex partners and their families
- Health and wellness program: free annual health check-ups, fitness center and Employee Assistance Program
- Comprehensive benefits to support the journey of parenthood
- Retirement planning assistance
- See more of the benefits we offer.
Gap Inc. is an equal-opportunity employer and is committed to providing a workplace free from harassment and discrimination. We are committed to recruiting, hiring, training and promoting qualified people of all backgrounds, and make all employment decisions without regard to any protected status. We have received numerous awards for our long-held commitment to equality and will continue to foster a diverse and inclusive environment of belonging. In 2022, we were recognized by Forbes as one of the World's Best Employers and one of the Best Employers for Diversity.
Apply
We’ll send you to our application portal to get started.
Browse all jobs