We are seeking a skilled Cloud Security Engineer with experience in AWS, Kubernetes, and containerized applications to join our engineering team. The ideal candidate will be responsible for planning, implementing, and maintaining the security of our cloud environments and for maintaining compliance with NIST SP 800-171 standards.
Essential Job Functions and Desired Accomplishments
Design and implement security architectures for AWS infrastructure, ensuring best practices in cloud security and containerized application.
In compliance with NIST SP 800-171, conduct security risk assessments and vulnerability assessments on cloud resources, applications, and services
Collaborate with Corporate Cybersecurity Lead on developing and maintaining security policies, training, and procedures related to cloud environments
Lead the development of automated monitoring of cloud infrastructure for security incidents using tools such as AWS CloudTrail, CloudWatch, and GuardDuty
Collaborate with cross-functional teams to integrate security into new feature(s)/software releases to ensure on-going compliance
Respond to security incidents, performing root cause analysis and remediation
Provide security guidance and support during architecture reviews and system deployments and maintain cloud security risk register
Stay updated with the latest security trends, threats, and technology solutions related to cloud security
Participate in DevOps sprints by implementing (not just designing) security measures and contribute routine DevOps sprints (as a lower priority).
Education/Qualifications/Certifications
Required:
Bachelor's degree in Computer Science, Information Technology, or a related field.
Proven experience in cloud security engineering, with a strong focus on AWS, Kubernetes, and containerized applications.
Experience with cloud security frameworks such as CSA STAR, NIST, or ISO 27001.
Proficiency in scripting or programming languages (e.g., Python, Bash) for automation of security tasks.
Knowledge of IAM, VPC, security groups, EC2 instances, and other AWS services.
Experience with security tools such as AWS Security Hub, WAF, and third-party solutions (e.g., SIEM).
Problem-solving skills and the ability to work independently as well as in a team.
Desired:
Relevant security certifications (e.g., AWS Certified Security, CISSP, CISM, CKS) are a plus.