Junior Security Assessment Specialist
Hillsborough County, NH - USA
Job Summary
Location: Milford OH (Hybrid)
Experience: 3-5 Years
We are seeking a Junior Security Assessment Specialist to perform security assessments risk analysis and compliance validation across cloud and enterprise environments. The ideal candidate will have experience with security frameworks such as FedRAMP ISO 27001 and BSI IT-Grundschutz along with hands-on knowledge of cloud platforms infrastructure automation DevSecOps and scripting. This role will work closely with engineering infrastructure and security teams to strengthen the organizations security posture.
- 3-5 years of experience in Information Security Risk Assessment or Cybersecurity
- Experience conducting:
- Security Assessments
- Risk Assessments
- Security Control Validation
- Vulnerability Assessments
- Security Documentation
- FedRAMP
- ISO 27001
- BSI IT-Grundschutz
- Security Governance
- Risk Management
- Compliance Assessments
- OpenStack
- AWS
- Microsoft Azure
- Google Cloud Platform (GCP)
- Cloud Security Best Practices
- Cloud Infrastructure Security
- Terraform
- Ansible
- Infrastructure as Code (IaC)
- CI/CD Pipelines
- DevSecOps Practices
- Python
- Bash
- Shell Scripting
- Kubernetes
- Container Security
- Cloud-Native Technologies
- Secure System Design
- Security Auditing
- Application Security Testing
- Secure Coding Practices
- Strong analytical and problem-solving skills
- Excellent communication and documentation skills
- Ability to explain technical concepts to technical and non-technical stakeholders
- Cross-functional collaboration
- Perform security assessments and vulnerability scanning aligned with FedRAMP ISO 27001 BSI IT-Grundschutz and other regulatory frameworks
- Assess document and communicate security risks along with recommended mitigation strategies
- Validate security controls across cloud environments including OpenStack AWS Azure and GCP
- Support the development and continuous improvement of security assessment methodologies and documentation
- Utilize Terraform Ansible Python and Bash to support infrastructure security reviews and automation
- Evaluate cloud infrastructure DevSecOps pipelines and Infrastructure-as-Code implementations for security compliance
- Collaborate with engineering DevOps infrastructure and security teams to improve overall security posture
- Prepare assessment reports technical documentation and executive risk summaries
- Participate in security audits compliance initiatives and continuous security improvement programs
- Security certifications such as:
- CISSP
- CISA
- Security
- CCSP
- Experience supporting third-party audits
- Knowledge of container security and Kubernetes security
- Familiarity with secure software development practices and application security testing
- Experience in enterprise cloud security environments