Cloud Security Engineer (Remote)
Role details
Job location
Tech stack
Job description
As a member of the Information Security Risk Management architecture team, the Cloud Security Engineer plays a crucial role in shaping and guiding the organization's security strategy, architecture, and practices, with a focus on cloud computing technology. The Cloud Security Engineer will collaborate with security architects and cloud engineers to design, execute, and govern a comprehensive cloud environment., * Serve as a cloud security technical expert to develop and execute cloud security policies and procedures
- Collaborate with cloud technology teams across the enterprise to ensure the integrity and security of our digital assets in AWS/Azure IaaS environments
- Demonstrate highproficiencyacross a wide range of cloud security technologies toestablishguardrails to prevent or automatically remediate common security misconfigurations
- Provide technical leadership, mentor, and consult with less experienced cloud engineers to implement necessary security controls and threat protection
- Act as a Cloud security subject matter expert by continually reviewing environments for opportunities to reduce risk when possible
- Build automation tomonitorcloud resources for compliance with existing standards and alert for configuration drift
- Consult with cloud engineers to successfully implement design requirements from cloud security architects
- Provide governance and consulting to ensure established controlsremaineffective
- Contribute to advancement of own function by studying start-of-the-art tools, techniques, and computing equipment;participatein educational opportunities and professional organizations.
- Highly autonomous and productive in performing activities, requiring only minimal direction from or interaction with supervisor
- Excellent communication and influencing skills with the ability to balance differing stakeholder interests through sound analysis and persuasion
- Understand and adhere to corporate standardsregardingapplicable Corporate and Divisional Policies, including code of conduct, safety,GxPcompliance, data security, and the software development cycle
Requirements
-
Bachelors Degree with 6 years experience; Masters degree with 5 years experience; PhD with 0 years experience in information security and/or related functions (IT Audit, Risk Management, or Security Architecture)
-
Strong knowledge of scripting languages, including Python, Bash, and/or PowerShell
-
Experience developing AWS Service and Resource Control Policies (SCP and RCP) to effectively manage permissions across the enterprise
-
Expertisein AWS services including EC2, S3, RDS, Lambda, CloudFormation, VPC, and IAM.
-
Experience with Infrastructure as Code (IaC) tools including CloudFormation, Terraform, or Ansible.
-
Knowledge of DevOps practices and tools, including CI/CD pipelines, automation tools, and Docker/Kubernetes for containerization
-
Excellent written and oral communication skills
-
Strong problem-solving and analytical skills with the ability toidentifysecurity risks and propose effective solutions
-
Professional cybersecurity and relevant industry certifications (CISSP, AWS Solution Architect, AWS Security, CSA CCSK, SANS GCLD, etc.) are highly desirable
Benefits & conditions
Applicable only to applicants applying to a position in any location with pay disclosure requirements under state orlocal law:
- The compensation range described below is the range of possible base pay compensation that the Companybelieves ingood faith it will pay for this role at the timeofthis posting based on the job grade for this position.Individualcompensation paid within this range will depend on many factors including geographic location,andwemay ultimatelypay more or less than the posted range. This range may be modified in thefuture.
- We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick),medical/dental/visioninsurance and 401(k) to eligibleemployees.
- This job is eligible to participate in our short-term incentiveprograms.
Note: No amount of payis considered to bewages or compensation until such amount is earned, vested, anddeterminable.The amount and availability of anybonus,commission, incentive, benefits, or any other form ofcompensation and benefitsthat are allocable to a particular employee remains in the Company's soleandabsolutediscretion unless and until paid andmay be modified at the Companys sole and absolute discretion, consistent withapplicable law.
AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled.