Overview
Skills
Job Details
o The successful candidate will be responsible for ensuring the security and integrity of our company s cloud environment. In this role, you will be responsible for designing, implementing, and maintaining secure cloud infrastructure and services across our organization. You will work closely with DevOps, IT, and development teams to ensure our cloud environments are resilient, compliant, and secure.
What you ll be doing
o Design and implement security controls and best practices for cloud environments (AWS, Azure, Google Cloud Platform).
o Monitor cloud infrastructure for security threats and vulnerabilities using SIEM, CSPM, and other tools.
o Conduct risk assessments, threat modeling, Conduct risk assessments, threat modeling, and audits of cloud systems while aiding in mitigation planning and execution.
o Collaborate with DevOps and engineering teams to integrate security into CI/CD pipelines.
o Develop and enforce cloud security policies, standards, and procedures.
o Respond to and investigate cloud security incidents and breaches.
o Ensure compliance with industry standards and regulations (e.g., ISO 27001, SOC 2, HIPAA, GDPR).
o Automate security processes and infrastructure using Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
Stay current with emerging cloud security threats, technologies, and trends
Requirements:
What You Bring
o At least 3+ years of experience in cloud security or a related role
o Hands-on experience with at least one major cloud provider (AWS, Azure, or Google Cloud Platform).
o Strong understanding of cloud-native security tools and services.
o Proficiency in scripting or programming (Python, Bash, etc.).
o Experience with IaC tools (Terraform, Cloudformation, Ansible, etc.).
o Familiarity with security frameworks such as NIST, CIS Benchmarks, and MITRE ATT&CK.
o Experience with IAM, encryption, key management, and network security in cloud environments.
Added bonus if you have
o Cyber Security relevant certifications including CISSP, CCSP, CSP Security specific certifications (i.e., AWS Certified Security; Microsoft Certified: Azure Security Engineer Associate; Google Professional Cloud Security Engineer; etc.) or similar
o Experience with CSPM, Vulnerability Management, Cloud Threat Detection & Response
o Experience with container security (Docker, Kubernetes).
o Knowledge of DevSecOps practices and tools.