Serve as a technical expert supporting the secure design, implementation, and operations of cloud-based information technology solutions for the Federal Reserve Bank of Chicago. This role includes engineering security solutions for infrastructure and application services and providing monitoring for system components in commercial or government cloud service providers to deliver secure, highly available and scalable services. The level of work required is considered advanced and staff must be able to work under minimal supervision. This job does not have direct reports.
Principal Duties and Responsibilities
Lead the security design, implementation, and operation of cloud-based platforms (AWS, Azure, etc.)
Provide security guidance to security teams on technical, procedural, and best practices for cloud-based solutions
Transform existing processes to align with a DevSecOps methodology
Lead automation efforts to minimize security manual work, ensure compliance goals, and support continuous monitoring
Consult with stakeholders to define security requirements based on business objectives and system characteristics
Develop and implement security orchestration and automation frameworks
Create and maintain security documentation for security solutions
Develop new security standards and testing procedures for cloud systems that map to existing security standards
Document and communicate issues, solutions, and timelines to appropriate stakeholders
Assists with the development of incident response playbooks for cloud based systems
Provide timely/responsive security incident response for cloud systems including rotational or on-call support
Develop integrated solutions for legacy systems with cloud-based solutions for security monitoring
Education and Experience
Bachelor's degree in Computer Science, Information Systems, or equivalent background or experience
3+ years working with cloud based platforms (AWS, Azure, etc.) in an enterprise environment
5+ years security engineering experience in a team-based environment
CCSP certification a plus
Knowledge and Skills
Ability to operate within a cross functional team (i.e. DevSecOps)
Advanced knowledge of cloud-based platforms AWS, Azure, etc.
Experience integrating legacy platforms and applications with cloud-based systems
Experience with cloud based security tools (CloudFormation, CloudTrail, WAF, Security Center, etc.)
Experience with system configuration tools (Chef, Puppet, Ansible, etc.)
Experience with source code management tools (Git, SVN, etc.)
Experience with Web Services, API, REST, RPC
Understanding of advanced cloud networking concepts
Experience implementing and operating best practices with the ability to define operational processes, implement DevSecOps, deployment checklists, etc.
Advanced ability to solve problems by considering available information, prioritizing and making timely decisions; correlate data using standard business and technology tools and approaches, spot trends and apply sound security and risk management principles
As a condition of employment, Federal Reserve Bank of Chicago employees must comply with the Bank s ethics rules, which generally prohibit employees, their spouses/domestic partners, and minor children from owning securities, such as stock, of banks or savings associations or their affiliates, such as bank holding companies and savings and loan holding companies. If you or your spouse/domestic partner or minor child own such securities, and would not be willing or able to divest them if you accepted an offer of Bank employment, you should raise this issue with the recruiter for this posting, who can provide you contact information for our ethics official if necessary.