P
Remote Senior Security Engineer - Cloud Security
Job Description
Our client is seeking an experienced Remote Senior Security Engineer specializing in Cloud Security to join their innovative technology team. This role is pivotal in designing, implementing, and managing robust security controls and solutions for our cloud infrastructure (AWS, Azure, GCP). You will be instrumental in protecting our sensitive data and systems against evolving threats in a dynamic, cloud-native environment. As a fully remote position, you will have the autonomy to work from your home office anywhere within the US, collaborating with a distributed team of security professionals.
Key Responsibilities:
Key Responsibilities:
- Design, implement, and maintain security architecture and controls for cloud environments, ensuring compliance with industry best practices and regulatory requirements.
- Develop and deploy security automation solutions for infrastructure provisioning, monitoring, and incident response within cloud platforms.
- Conduct security assessments and penetration tests of cloud infrastructure and applications.
- Implement and manage security tools such as SIEM, vulnerability scanners, intrusion detection/prevention systems, and cloud security posture management (CSPM) tools.
- Develop and enforce security policies, standards, and procedures for cloud services.
- Respond to and investigate security incidents, perform root cause analysis, and implement remediation measures.
- Collaborate with development and operations teams to integrate security into the CI/CD pipeline (DevSecOps).
- Monitor cloud environments for security threats and vulnerabilities, and proactively address them.
- Provide technical guidance and mentorship to junior security team members.
- Stay abreast of emerging cloud security threats, technologies, and best practices.
- Contribute to security awareness training programs for employees.
- Participate in on-call rotation for security incident response.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
- Minimum of 6 years of experience in information security, with a strong focus on cloud security.
- Proven experience securing cloud platforms such as AWS, Azure, and/or GCP.
- Hands-on experience with cloud security services (e.g., IAM, Security Groups, WAF, KMS, GuardDuty, Azure Security Center, GCP Security Command Center).
- Proficiency in scripting languages (e.g., Python, Go, Bash) for automation and security tool development.
- Experience with infrastructure as code (IaC) tools like Terraform or CloudFormation.
- Strong understanding of networking concepts, protocols, and security principles.
- Experience with container security (Docker, Kubernetes) is highly desirable.
- Knowledge of security frameworks (e.g., NIST, ISO 27001, SOC 2).
- Excellent analytical, problem-solving, and critical thinking skills.
- Strong communication and collaboration skills, with the ability to work effectively in a remote, team-oriented environment.
- Relevant cloud security certifications (e.g., AWS Certified Security Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer) are a significant plus.
Original posting:
www.whatjobs.com