Overview
Skills
Job Details
Role: Cloud Security Auditor
Location: 100% Remote
Duration: 12+ Months Contract
Job Description:
In this role, a typical day will include:
- Conduct posture reviews of all priority systems identified as part of the VAEC Cloud audit project.
- Identify and document all gaps against cloud cybersecurity requirements, ensuring thorough analysis and accuracy.
- Provide weekly Cloud Security Posture Review Reports detailing all identified gaps and actions taken to address them.
- Produce a full Cloud Security Posture Review Rollup Report at the end of the, summarizing all gaps and the corresponding remediation efforts.
- Collaborate with stakeholders to ensure alignment of audit findings with organizational cybersecurity goals and requirements.
- Maintain detailed documentation and reports of all posture review activities, findings, and responses.
- Stay current with the latest cloud security trends, tools, and best practices to ensure the effectiveness of posture reviews.
Requirements
- Bachelor s degree in Information Technology, Cybersecurity, or a related field.
- 3+ years of experience in cloud security auditing, posture reviews, or a similar role.
- Proven experience in identifying and documenting gaps against cloud cybersecurity requirements.
- Strong understanding of cybersecurity principles, particularly in cloud (AWS, Azure, Microsoft 365, etc.) environments.
- Proficiency in using cybersecurity auditing tools and technologies.
- Certification in cybersecurity (e.g., CISSP, CISM, CISA) is a plus.
- Experience with eMASS (Enterprise Mission Assurance Support Service) is a plus.
- Excellent organizational skills and attention to detail, with the ability to manage multiple tasks simultaneously.
- Exceptional written and verbal communication skills
- Exceptional analytical and conceptual thinking skills
- Strong people skills and ability to work collaboratively with a team of peers.
This May Help for better find:
An Auditor with Engineering Tendencies | The ideal candidate should have a mix of auditing expertise and technical familiarity, particularly in cloud environments. |
Tenant Administration Nuances | They should comprehend the operational aspects and security implications of tenant administration, even if they don't need to know every detail. |
Security Implications | A solid understanding of security principles and how they apply to different auditing contexts is essential. |
Scripting Familiarity | Basic scripting knowledge is important, even if they re not fully proficient. |
Strong Personality and Feedback Reception | The ability to handle and process feedback constructively from system owners and other stakeholders. |
Cloud Experience | Differentiating between on-premise and cloud audits, recognizing the unique challenges and opportunities each presents. |
Policy and Standards Knowledge | Familiarity with CIS, FEDRAMP, and Well-Architected Frameworks, and an understanding of how policies and best practices sometimes conflict. |
Core Security Concepts | Concepts such as defense-in-depth should be second nature. |
Resolving Ambiguity | The ability to ask detailed, elicitative questions that drive the conversation forward and resolve ambiguity. |