Cloud Security Engineer

ApTask
United States
27 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$166,400.0 - $176,800.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Cloud Computing Security Configuration Management Databases Cyber Security Data Center Infrastructure Management (CIM) Identity and Access Management Information Technology Operations Key Management
+13 more
Security Information and Event Management Workflow Management Systems Software Licensing Data Logging Google Cloud Okta Multi-Cloud Enterprise Integration Terraform Oracle Cloud Infrastructure GPT Service Stack Servicenow

Job description

The client is a prominent global technology solutions provider, renowned for its comprehensive range of services and products tailored to meet the diverse needs of businesses. The company’s core focus revolves around assisting organizations in managing and optimizing their IT operations, thereby driving productivity, efficiency, and innovation. It offers an extensive array of services, including strategic consulting, technology implementation, cloud computing, data center management, cybersecurity, software licensing, and hardware procurement. In addition to its business-to-business (B2B) services, it also serves as a valuable resource for IT professionals and decision-makers, providing valuable insights and thought leadership through its various publications, webinars, and events., * Contract Cloud Security Engineer to stand up a cloud security program across Client’s multi-cloud, SaaS-heavy environment.

  • Over a 12-16 week engagement the resource will: (1) build an authoritative inventory of all cloud properties (AWS, Azure, GCP, OCI, and material SaaS) and land it in the ServiceNow CMDB; (2) assess cloud security posture against CIS, CSA, and NIST CSF 2.0 baselines; (3) build a cloud account onboarding and monitoring workflow in ServiceNow and integrate cloud telemetry into the existing security stack; and (4) author operational runbooks and run the program in steady state. This is a build-and-operate role - the ServiceNow workflow and CMDB integration are the core deliverable.

Day-to-Day Responsibilities:

  • Enumerate cloud accounts, subscriptions, and projects (AWS, Azure, GCP, OCI) and Client material SaaS applications; reconcile into a ServiceNow CMDB cloud asset class.
  • Run cloud posture assessments; document misconfigurations and IAM, exposure, logging, and encryption gaps; risk-rank and map findings to owners; surface them in a ServiceNow posture dashboard.
  • Build the cloud account onboarding and monitoring workflow in ServiceNow (M&A fast-track).
  • Onboard cloud telemetry into CrowdStrike, Obsidian, and Varonis DSPM; configure log forwarding (Cribl) into NG-SIEM; tune detections; route alerts into SecOps.
  • Author operational runbooks and operate the program in steady state; provide weekly status.
  • Apply frontier AI models (ChatGPT Enterprise, Claude) to accelerate inventory analysis, posture assessment, runbook drafting, and workflow design., * Fully remote. Collaborative, fast-paced IT Security engineering team operating in a SAFe Agile model. ServiceNow is used for ITSM and SecOps; Zoom for collaboration.
  • The culture is AI-forward, with frontier models actively used across security workflows. A heavy M&A cadence means the environment changes constantly.

Technology Stack:

  • AWS, Azure, GCP, OCI; CrowdStrike (Falcon Cloud Security, NG-SIEM); Obsidian (SSPM); Zscaler (ZIA/ZPA); Varonis DSPM; Cribl; Okta; ServiceNow (CMDB, SecOps); ChatGPT Enterprise and Claude.

Team Dynamics:

  • Joins a security engineering team under IT Security leadership.
  • Works alongside the in-house ServiceNow SecOps developer on the workflow and CMDB build, and coordinates with tool owners (endpoint, network, infrastructure) and the Compliance team for regulatory mapping. Operates within SAFe Agile cadences.

Requirements

  • Hands-on multi-cloud security experience (AWS, Azure, and GCP at minimum; OCI a plus).
  • Cloud security posture management (CSPM) concepts and tooling; assessment of IAM, network exposure, logging/telemetry, and encryption/key management.
  • ServiceNow build experience - workflows and CMDB integration. Non-negotiable; this is the engagement’s core (capital) deliverable.
  • SIEM / log-pipeline integration (NG-SIEM, cloud log forwarding).
  • Proficiency with AI frontier models (e.g., ChatGPT Enterprise, Claude) applied to security-engineering work, with an understanding of secure, governed AI use in an enterprise setting.
  • Strong documentation skills and the operational discipline to run steady-state operations., * Direct experience with CrowdStrike (Falcon Cloud Security / NG-SIEM), Obsidian SSPM, Zscaler, Varonis DSPM, Cribl, and Okta.
  • Insurance, financial-services, or other regulated-industry experience (GLBA, NY Client 500).
  • Infrastructure-as-code familiarity (e.g., Terraform).

Expectations:

  • Self-directed; able to operate from discovery through steady-state with light oversight; comfortable in a fast-moving, acquisition-heavy environment., * ServiceNow build proficiency (workflows + CMDB) and AI frontier model proficiency (ChatGPT Enterprise / Claude) are required.
  • Relevant cloud/security certifications are preferred but not required where hands-on experience is strong - for example, AWS / Azure / GCP security specialties, CCSP, CISSP, or GIAC cloud certifications.

About the company

ApTask is a leading global provider of workforce solutions and talent acquisition services, dedicated to shaping the future of work. As an African American-owned and Veteran-owned company, ApTask offers a comprehensive suite of services, including staffing and recruitment solutions, managed services, IT consulting, and project management. With a focus on excellence, collaboration, and innovation, ApTask provides unparalleled opportunities for professional growth and development. As a member of the ApTask team, you will have the chance to connect businesses with top-tier professionals, optimize workforce performance, and drive success across diverse industries. Join us at ApTask and be part of our mission to empower organizations to thrive while fostering a diverse and inclusive work environment.

Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.

Candidate Data Collection Disclaimer: At ApTask, we prioritize safeguarding your privacy. As part of our recruitment process, certain Personally Identifiable Information (PII) may be requested by our clients for verification and application purposes. Rest assured, we strictly adhere to confidentiality standards and comply with all relevant data protection laws. Please note that we only collect the necessary information as specified by each client and do not request sensitive details during the initial stages of recruitment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www2.jobdiva.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

40 sec

Generative pre-trained transformer models powering code completions

lgonta lgonta +1 · WWC 2024

2:32 min

Overview of Terraform and Terraform Cloud features

Devlin Duldulao · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

Videos

See all

Related articles

See all