Job Title: Cloud Security Engineer
Description:
What youll be doing
- Design and implement security controls and best practices for cloud environments (AWS Azure GCP).
- Monitor cloud infrastructure for security threats and vulnerabilities using SIEM CSPM and other tools.
- Conduct risk assessments threat modeling Conduct risk assessments threat modeling and audits of cloud systems while aiding in mitigation planning and execution.
- Collaborate with DevOps and engineering teams to integrate security into CI/CD pipelines.
- Develop and enforce cloud security policies standards and procedures.
- Respond to and investigate cloud security incidents and breaches.
- Ensure compliance with industry standards and regulations (e.g. ISO 27001 SOC 2 HIPAA GDPR).
- Automate security processes and infrastructure using Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
- Stay current with emerging cloud security threats technologies and trends.
Requirements:
What You Bring
- At least 3 years of experience in cloud security or a related role
- Hands-on experience with at least one major cloud provider (AWS Azure or GCP).
- Strong understanding of cloud-native security tools and services.
- Proficiency in scripting or programming (Python Bash etc.).
- Experience with IaC tools (Terraform CloudFormation Ansible etc.).
- Familiarity with security frameworks such as NIST CIS Benchmarks and MITRE ATT&CK.
- Experience with IAM encryption key management and network security in cloud environments.
Added bonus if you have
- Cyber Security relevant certifications including CISSP CCSP CSP Security specific certifications (i.e. AWS Certified Security; Microsoft Certified: Azure Security Engineer Associate; Google Professional Cloud Security Engineer; etc.) or similar
- Experience with CSPM Vulnerability Management Cloud Threat Detection & Response
- Experience with container security (Docker Kubernetes).
- Knowledge of DevSecOps practices and tools.