Information Security Engineer - Cloud Security

company banner
Kforce Technology Staffing
Contract Corp-To-Corp, Contract W2, Contract Independent, Temp
Competitive
Work from home not available Travel not required

Job Description

RESPONSIBILITIES:
Kforce has a client in Atlanta, Georgia (GA) that is seeking an Information Security Architect - Cloud Security for a 100% remote opportunity.

Duties Include:
* Contractor security resource will act as functional ISS (Information Security Services) representation within the acquisition through the transition period, focusing primarily on sustainably maintaining existing security technologies/controls
* Focus on provided workplan through integration
* Initial focus will be on evaluating/baselining existing tools/controls for best practice, quality, and coverage
* Where possible, remediate any configuration or coverage gaps within the existing controls/tools
* Stay abreast of control environment changes as the asset landscape continuously changes throughout the transition and make control adjustments as necessary
* Assist from a security perspective with acquired entity's transition activities
* Participate in the established daily Operations call to discuss incidents, changes, and issues
* Participate in weekly status reporting already for Security Technology Operations contract resources, including metric, SLA, and issue reporting: Urgent security issues/incidents will utilize the established CSIRT runbook process via the SecOps Monitor & Action Contractor
* Integrate with existing ISS M&A governance: Regularly participate in ISS M&A Team meetings; Regularly exchange with ISS M&A Tiger Security Operations counterpart
* Integrate with existing ISS Security Architecture Team: Regularly participate in ISS Security Architecture Team meetings; Regularly exchange with ISS Security Architecture counterparts
* Provide reporting for all operational changes that will be reviewed by the ISS M&A Tiger Team and TOS M&A Teams, then processed through appropriate change management procedures associated with acquired entity

REQUIREMENTS:
* AWS, Azure, and G-Suite environments
* AV, DLP, FIM and HIDS/HIPS across the workstation and server endpoint population) technologies

Encryption technologies; Types of Encryption:
* In-Transit: TLS or client-side encryption
* At-Rest: server-side (AES256) or client-side encryption
* Standards: AES, RSA, and ECC
* Libraries: PKCS#11, Java JCA/JCE
* Microsoft CAPI and CNG

* DIY: You control the encryption method and the entire KMI
* Key Management Service (KMS): Server-side encryption
* CloudHSM: Storage of keys in dedicated cloud HSM managed as DYI

* Database encryption (Oracle, Redshift): Oracle EE DB instance can store TDE keys (Transparent Data Encryption); Redshift uses hierarchy of top-level encryption key

* Digital Rights Management (DRM)
* PKI
* Authentication and Authorization
* Document signing
* Transaction processing

* Certificate Managers
* Auditing services support encryption
* Check to determine if data is encrypted
* Where data resides and methods for data at-rest and in-transit
* Deploy data assets inventory and manage it accordingly
* Evaluate current practices deployed
* Logging/Audits
* User activities: CloudTrail, CloudWatch, etc.
* Utilities: CloudTrail, S3 Logs, ELB Logs, CloudFront, CloudWatch (logs and events)
* What must be logged - what will you do with it
* Align with policy and procedures
* Risk based decisions

* Storage: data repositories for whatever form they take
* Log: VPCs (flow logs), ELB, S3 buckets, EC2 Instances/systems, CloudWatch logs and events, CloudTrail logs, API calls
* Change Management: Processes that effect change; AWS Config
* Protect logs from tampering: SOD, COI, FIM, etc.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Posted By

Corporate Headquarters



Company Information

Kforce is a professional staffing and solutions firm specializing in the technology areas of application development, project management, business analysis, enterprise data management and infrastructure for commercial and government organizations. Kforce has been matching job seekers and employers since 1962. We are committed to having a meaningful impact on all the lives we serve and offer exciting job opportunities across the United States. Kforce specializes in providing strategic partnership in the areas of Technology and Finance & Accounting. Our staffing specialists work to understand your career goals and offer career advice in order to help you become a more marketable technology professional. Your success is our mission. Gain meaningful connections with your skills and our network.
Dice Id : kforcecx
Position Id : ITTVF1862353
Originally Posted : 1 month ago

Similar Positions at Kforce Technology Staffing

Info Security Architect - SecOps
  • Atlanta, GA
  • 8 hours ago
Info Security Architect - Monitoring
  • Atlanta, GA
  • 8 hours ago
Information Security Engineer
  • Charlotte, NC
  • 8 hours ago
Information Assurance Security Engineer
  • Huntsville, AL
  • 8 hours ago
Information Security Analyst 4
  • Charlotte, NC
  • 8 hours ago
Information Security Analyst 2
  • Charlotte, NC
  • 8 hours ago
Information Security Analyst 4
  • Charlotte, NC
  • 8 hours ago
RBAC Information Security Analyst
  • Charlotte, NC
  • 8 hours ago
Senior Information Security Engineer
  • Washington, DC
  • 8 hours ago