Cloud Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+13 more
Job description
The client is a prominent global technology solutions provider, renowned for its comprehensive range of services and products tailored to meet the diverse needs of businesses. The company’s core focus revolves around assisting organizations in managing and optimizing their IT operations, thereby driving productivity, efficiency, and innovation. It offers an extensive array of services, including strategic consulting, technology implementation, cloud computing, data center management, cybersecurity, software licensing, and hardware procurement. In addition to its business-to-business (B2B) services, it also serves as a valuable resource for IT professionals and decision-makers, providing valuable insights and thought leadership through its various publications, webinars, and events., * Contract Cloud Security Engineer to stand up a cloud security program across Client’s multi-cloud, SaaS-heavy environment.
- Over a 12-16 week engagement the resource will: (1) build an authoritative inventory of all cloud properties (AWS, Azure, GCP, OCI, and material SaaS) and land it in the ServiceNow CMDB; (2) assess cloud security posture against CIS, CSA, and NIST CSF 2.0 baselines; (3) build a cloud account onboarding and monitoring workflow in ServiceNow and integrate cloud telemetry into the existing security stack; and (4) author operational runbooks and run the program in steady state. This is a build-and-operate role - the ServiceNow workflow and CMDB integration are the core deliverable.
Day-to-Day Responsibilities:
- Enumerate cloud accounts, subscriptions, and projects (AWS, Azure, GCP, OCI) and Client material SaaS applications; reconcile into a ServiceNow CMDB cloud asset class.
- Run cloud posture assessments; document misconfigurations and IAM, exposure, logging, and encryption gaps; risk-rank and map findings to owners; surface them in a ServiceNow posture dashboard.
- Build the cloud account onboarding and monitoring workflow in ServiceNow (M&A fast-track).
- Onboard cloud telemetry into CrowdStrike, Obsidian, and Varonis DSPM; configure log forwarding (Cribl) into NG-SIEM; tune detections; route alerts into SecOps.
- Author operational runbooks and operate the program in steady state; provide weekly status.
- Apply frontier AI models (ChatGPT Enterprise, Claude) to accelerate inventory analysis, posture assessment, runbook drafting, and workflow design., * Fully remote. Collaborative, fast-paced IT Security engineering team operating in a SAFe Agile model. ServiceNow is used for ITSM and SecOps; Zoom for collaboration.
- The culture is AI-forward, with frontier models actively used across security workflows. A heavy M&A cadence means the environment changes constantly.
Technology Stack:
- AWS, Azure, GCP, OCI; CrowdStrike (Falcon Cloud Security, NG-SIEM); Obsidian (SSPM); Zscaler (ZIA/ZPA); Varonis DSPM; Cribl; Okta; ServiceNow (CMDB, SecOps); ChatGPT Enterprise and Claude.
Team Dynamics:
- Joins a security engineering team under IT Security leadership.
- Works alongside the in-house ServiceNow SecOps developer on the workflow and CMDB build, and coordinates with tool owners (endpoint, network, infrastructure) and the Compliance team for regulatory mapping. Operates within SAFe Agile cadences.
Requirements
- Hands-on multi-cloud security experience (AWS, Azure, and GCP at minimum; OCI a plus).
- Cloud security posture management (CSPM) concepts and tooling; assessment of IAM, network exposure, logging/telemetry, and encryption/key management.
- ServiceNow build experience - workflows and CMDB integration. Non-negotiable; this is the engagement’s core (capital) deliverable.
- SIEM / log-pipeline integration (NG-SIEM, cloud log forwarding).
- Proficiency with AI frontier models (e.g., ChatGPT Enterprise, Claude) applied to security-engineering work, with an understanding of secure, governed AI use in an enterprise setting.
- Strong documentation skills and the operational discipline to run steady-state operations., * Direct experience with CrowdStrike (Falcon Cloud Security / NG-SIEM), Obsidian SSPM, Zscaler, Varonis DSPM, Cribl, and Okta.
- Insurance, financial-services, or other regulated-industry experience (GLBA, NY Client 500).
- Infrastructure-as-code familiarity (e.g., Terraform).
Expectations:
- Self-directed; able to operate from discovery through steady-state with light oversight; comfortable in a fast-moving, acquisition-heavy environment., * ServiceNow build proficiency (workflows + CMDB) and AI frontier model proficiency (ChatGPT Enterprise / Claude) are required.
- Relevant cloud/security certifications are preferred but not required where hands-on experience is strong - for example, AWS / Azure / GCP security specialties, CCSP, CISSP, or GIAC cloud certifications.
About the company
ApTask is a leading global provider of workforce solutions and talent acquisition services, dedicated to shaping the future of work. As an African American-owned and Veteran-owned company, ApTask offers a comprehensive suite of services, including staffing and recruitment solutions, managed services, IT consulting, and project management. With a focus on excellence, collaboration, and innovation, ApTask provides unparalleled opportunities for professional growth and development. As a member of the ApTask team, you will have the chance to connect businesses with top-tier professionals, optimize workforce performance, and drive success across diverse industries. Join us at ApTask and be part of our mission to empower organizations to thrive while fostering a diverse and inclusive work environment.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Candidate Data Collection Disclaimer: At ApTask, we prioritize safeguarding your privacy. As part of our recruitment process, certain Personally Identifiable Information (PII) may be requested by our clients for verification and application purposes. Rest assured, we strictly adhere to confidentiality standards and comply with all relevant data protection laws. Please note that we only collect the necessary information as specified by each client and do not request sensitive details during the initial stages of recruitment.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www2.jobdiva.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence
Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.