Location: San Francisco, CA
Salary: $69.00 USD Hourly - $74.00 USD Hourly
Description: Job Title: Information Security Engineer - Findings Management (Contingent)Location: San Francisco, CA (Primary)
Additional Locations: Charlotte, NC Phoenix, AZ Dallas, TX
About the RoleWe are seeking a highly skilled
Information Security Engineer to join our Cloud Workload Lifecycle Security (CWLS) team within Cybersecurity - Vulnerability & Patch Management. In this role, you will lead findings management activities supporting Wells Fargo's migration from Prisma Cloud Enterprise to the
Wiz Cloud Native Application Protection Platform (CNAPP).
You will focus on detection, analysis, and remediation of security findings across public cloud environments, with an emphasis on
CWPP,
CSPM, container security, and configuration drift. This role requires hands-on engineering expertise, strong cloud security domain knowledge, and the ability to partner effectively with application and infrastructure teams across the enterprise.
Responsibilities- Lead hands-on engineering efforts using the Wiz CNAPP platform, focusing on alerts, findings, and cloud security posture management.
- Define, operationalize, and tune alerting logic within Wiz.
- Build data pipelines and automation (Python, Bash, PowerShell, Terraform) to streamline reporting, findings management, and remediation workflows.
- Design and maintain dashboards and visualizations using tools such as Power BI or Tableau.
- Collect, merge, enrich, and analyze data from Wiz, cloud platforms, and security datasets.
- Partner with engineering and application teams to drive findings remediation ("burn down") and improve posture across Azure, Google Cloud, and internal cloud environments.
- Contribute expertise on application lifecycle security, compliance, and cloud vulnerabilities.
- Share technical knowledge with teammates, influence best practices, and help shape the cloud security engineering roadmap.
- Deliver results independently in a fast-paced environment with evolving priorities and aggressive deadlines.
Required Qualifications- 5+ years of experience in Information Security Engineering or relevant equivalent background.
- 2+ years experience with Azure and Google Cloud (security controls, services, architectures, configurations, and hardening).
- 1+ year hands-on experience with Wiz or comparable CNAPP products.
- 1+ year experience with automation and scripting (Python, Bash, Terraform, PowerShell).
- 1+ year integrating cloud security tools with enterprise systems (e.g., Splunk Cloud, ServiceNow).
- 1+ year using data visualization tools (Power BI, Tableau, or similar).
- Strong understanding of IAM, information protection, and alerts/findings handling.
- Strong analytical, problem-solving, communication, and documentation skills.
- Ability to operate independently and collaborate across teams.
- Intermediate or advanced proficiency with Microsoft Office (Excel, PowerPoint, Visio, Teams, SharePoint).
- Experience working in Agile environments (Scrum or Kanban).
Preferred Qualifications- Experience supporting cloud migrations, cloud security engineering, or cloud operations.
- Experience with databases such as MongoDB or similar.
- Experience with security products such as Microsoft Defender, Google Security Command Center, Aqua Security, Microsoft Sentinel, or HashiCorp Sentinel.
- Knowledge of enterprise change and incident management practices.
- Familiarity with cloud security and risk frameworks (CSA, CIS, NIST, etc.).
- Experience in regulated industries (financial services, utilities, healthcare, government).
- Relevant certifications:
- CISSP, GIAC, CISA, CISM, CRISC, CCSK
- Azure or Google Cloud certifications
- Certified Kubernetes Security Specialist (CKS)
Skills Matrix (Findings Management Focus)Skill Area Years of Experience Level Cloud Security (Azure, Google Cloud Platform) - Beginner / Intermediate / Advanced / Expert Wiz CSPM - Beginner / Intermediate / Advanced / Expert Wiz-Splunk Integration - Beginner / Intermediate / Advanced / Expert Python - Beginner / Intermediate / Advanced / Expert Kubernetes/Container Policies - Beginner / Intermediate / Advanced / Expert Wiz CWPP - Beginner / Intermediate / Advanced / Expert
By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact: This job and many more are available through The Judge Group. Please apply with us today!