Cloud Security Engineer
Role details
Job location
Tech stack
Job description
Alerting, Monitoring & Incident Response Integration
Remediation, Ownership & Continuous Improvement
Cloud Security Engineering & Architecture playbook creation.
Leadership, Strategy & Governance
Develop and maintain the technical IT/cyber capabilities including all phases of the software development lifecycle and software stack which includes threat modeling of application designs, static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), and penetration testing.
Lead efforts related to designing, planning, enhancing, and testing all Cloud cybersecurity technologies used throughout the enterprise including base-lining current systems, trend analysis, and capacity planning as required for future systems requirements and new technologies.
Analyze information to determine, recommend, and plan the use of new Cloud information security technologies, or modifications to existing equipment and systems that will provide capability for proposed project or workload, efficient operation, and effective use of allotted resources
Lead the implementation of new Cloud security technologies or integration of existing technologies including initial configuration, installation, change management, and operational handoff
Use sophisticated analytical thought through models, testing, and experience to exercise judgment and identify innovative solutions.
Responsible for technical support of Cloud security technologies providing expert problem analysis and resolution in a timely manner.
Creation of CI/CD automation leveraging Terraform for Cloud Security Services and Modules
Leads teams or projects with moderate resource requirements, risk, and complexity.
Requirements
Deep specialized and/or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection/prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security.
Previous experience in leading complex IT projects.