Skip to content

Instantly share code, notes, and snippets.

@goodits
Created April 14, 2022 08:29
Show Gist options
  • Save goodits/a9a8ae1f8c000f097b8e937f09a67ca4 to your computer and use it in GitHub Desktop.
Save goodits/a9a8ae1f8c000f097b8e937f09a67ca4 to your computer and use it in GitHub Desktop.

Security Operations Exercise

During your interview, we’d like you to present on the following two topics:

  1. Snowplow operates a private SaaS deployment model for its Behavioural Data Platform (BDP) in which data pipelines are deployed and operated on behalf of a customer in their AWS or GCP (or, in the future, Azure) cloud environment. What do you see as the additional security challenges of such a product and deployment model, and what steps would you recommend to enable Snowplow to protect the data collected by the pipelines and to present a strong security posture to its customers?
  2. What actions did you take, or would have taken, to maintain your security posture in response to the recent Log4j vulnerability?

You can choose how you’d like to present your responses to these topics, you will be able to share your screen during the interview if required. We’d expect this to take around 30 minutes, followed by some questions on these topics.

The interview will also consist of some additional questions outside of these and we’ll be sure to give you plenty of time to ask us questions too.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment