Senior Cloud Security Engineer
Role details
Job location
Tech stack
Job description
Overview Senior Cloud Security Engineer - Cint. Join a pioneer in research technology that relies on a massive programmatic marketplace built on AWS, with plans to expand into GCP. The role is focused on building, securing, and automating our cloud infrastructure, influencing engineering practices, and ensuring our platform meets rigorous security standards. Key Responsibilities * Define and improve general security posture across legacy and green-field resources, including data, applications and networks. * Act as a point of expertise on application, data and network security for wider engineering teams, ensuring consistent adoption of policies and best practices. * Automate software deployment on the cloud platform and embed security into DevSecOps methodology. * Enhance monitoring and alerting systems, adding relevant security data points. * Participate in an on-call rotation and troubleshoot arising issues. * Define, implement and evolve a Security Incident Response process
Requirements
and policy. Required Qualifications * Three years or more experience in Cloud Infrastructure roles (predominantly AWS) with DevSecOps practice. * Comfortable interacting with AWS via CLI and/or API. * Proficiency in managing infrastructure exclusively with Terraform. * Specific expertise in threat assessment, attack surface management, data security, network stack at L4 and L7, DNS, VPC security, IGW, WAF and CloudFront. * Experience designing and managing IAM policies, roles and trust policies. * Good knowledge of VPN, MFA, SAML, OAuth2, KMS and TLS. * Good knowledge of IdP (Okta, OneLogin, Auth0) frameworks and integrations. * Experience building and running Docker images/containers securely, including container orchestration security. * Experience in code security audit, static and dynamic analysis, defensive programming techniques, and measurement of security KPIs. * Expertise in at least one scripting or programming language (Python, Bash, Ruby, Node, Golang, Java). * Team-player; thrives in collaborative environments. Advantageous Qualifications * AWS Certified Security Specialist. * Hands-on experience designing and implementing security controls within GCP. * Experience defining and operating a Security Incident Response process. * Knowledge of monitoring and alerting using Graphite, Statsd, Prometheus, Grafana, OpenSearch. * Experience with ISO27001 certification processes. * Understanding of cloud native and 12-Factor applications. * Offensive or defensive penetration testing experience. Our Values * Collaboration - we uncover rich perspectives across the world. * Innovation - we're pioneers in our industry; curiosity is insatiable. * Accountability - we're accountable for our work and actions. * Caring - we learn from each other's experiences and embrace diversity, equity and inclusion. Additional Information Cint is a globally recognized workplace, listed on Nasdaq Stockholm and operating in over 20 offices
Benefits & conditions
worldwide. We offer competitive compensation packages and a culture that values trust, respect, and employee growth. #J-18808-Ljbffr