I

Cloud Security Engineer

Infosoft, Inc. United State
Visa Sponsorship
Apply
AI Summary

Cloud Security Engineer responsible for leading cloud security posture management, leveraging automation to develop policy as code, and collaborating with teams to ensure security and reduce risk.

Key Highlights
Lead cloud security posture management
Develop policy as code using automation
Collaborate with teams to ensure security and reduce risk
Key Responsibilities
Leveraging your deep expertise with automation to 'semi-automate' Policy as Code development, leveraged to monitor for SaaS application misconfiguration/config. drift
Act as the subject matter expert (SME) for SSPM capabilities, roadmap features, and best practices specific
Enable, configure and tune SSPM detection policies
Troubleshoot and resolve support escalation cases related to SSPM
Contribute to internal code repositories to continuously improve overall code quality for the team
Technical Skills Required
Python Azure Google Cloud
Benefits & Perks
$75/HR
H1B sponsorship available
12 months duration
Nice to Have
Obsidian Security
API driven policy automation
Infrastructure as Code (IaC) and/or Policy as Code (PaC) concepts/tools

Job Description


Job Title: Cloud Security Engineer 4

W-2 Pay Rate: $75/HR (H1B - $65hr)

Duration: 12 months

Location: Charlotte, NC, Phoenix, AZ, Dallas, TX


We are looking for Cloud Security Engineer 4

Job Description:

  • Client is seeking an experienced Lead Information Security Engineer (Information security Engineer 4 - Contingent) to join client’s Cloud Workload Lifecycle Security (CWLS) team, within the Cybersecurity – Vulnerability & Patch Management organization.
  • Be a part of one of the core teams working on Client’s digital transformation; join client’s dynamic, diverse, fast-paced team environment where client secure and reduce risk for client’s Enterprise cloud migration.
  • The Information security Engineer 4 – Contingent – Posture Management Engineer will support the SaaS Security Posture Management (SSPM) tool, with specific focus on Posture Management module.
  • This area of client’s team specializes in engineering and support for Public Cloud & SaaS applications such as Salesforce, ServiceNow with emphasis on mis-configuration detection and configuration drift monitoring and the associated integrations to partner systems for logging, delivery of Findings, etc.


Key Responsibilities:

  • Leveraging your deep expertise with automation to “semi-automate” Policy as Code development, leveraged to monitor for SaaS application misconfiguration/config. drift
  • Act as the subject matter expert (SME) for SSPM capabilities, roadmap features, and best practices specific
  • Enable, configure and tune SSPM detection policies
  • Ability to efficiently transform security requirements/parameters into policies for SSPM
  • Strong collaboration with direct teammates, vendors and partners, ensuring the success of policy development automation
  • Lead technical/engineering requirement gathering discussions and effectively design/develop complex solutions
  • Troubleshoot and resolve support escalation cases related to SSPM
  • Contribute to internal code repositories to continuously improve overall code quality for the team
  • Develop and maintain high-quality documentation
  • Train team members on utilizing the PaC semi-automation tooling/approach you establish for client’s policy development practice
  • Be a motivated self-starter, quick to adapt and stay focused on delivering results in a fast-paced environment with aggressive deadlines
  • Work effectively with a virtual Team consisting of members across various locations in the U.S. and India


Required Skills:

  • 5 plus years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
  • 4 plus years of Intermediate to Advanced experience with Python and automation
  • 2 plus years of practical experience and strong understanding of Azure & Google public cloud – platforms, services, configurations, workloads & hardening practices
  • 1 plus year of experience with SaaS Security Posture Management tools like Obsidian security, AppOmni
  • Experience with extracting, transforming, and loading data via REST API endpoints
  • Advanced experience with Python programming/automation
  • Familiarity with CI/CD tools (GitHub Actions, GitLab CI, Jenkins, Azure DevOps)
  • Strong verbal and written communication skills
  • Proven ability to work independently, as well as having strong interpersonal skills to work effectively within a Team and with partners
  • Strong analytical skills, proven critical thinking capabilities and ability to solve complex problems with minimal direct oversight
  • Intermediate to advanced experience working with Microsoft Office products (e.g. Word, Excel, PowerPoint, Visio, Outlook, MS Teams, SharePoint)
  • Ability to handle multiple, high priority deliverables concurrently
  • Ability to communicate confidentially, professionally, and effectively, in both written and verbal formats, with stakeholders and partners
  • 1 plus year experience working on teams practicing Agile Scrum or Kanban methodologies


Desired Skills:

  • 1 plus year of deep Obsidian Security experience, in either an engineering or support role
  • Knowledge and understanding of DevSecOps and deployment automation to cloud environments
  • Expertise and experience with API driven policy automation
  • Expertise and experience with Infrastructure as Code (IaC) and/or Policy as Code (PaC) concepts/tools
  • Expertise with automated testing
  • Intermediate to advanced experience with Kubernetes, preferably AKS/GKE
  • Familiarity with various cloud security and related risk frameworks (Cloud Security Alliance (CSA), CIS, NIST, etc.)
  • Experience with change and incident management practices in large enterprises
  • Security certifications such as Certified Information Systems Security Professional (CISSP), Global Information Assurance Certification (GIAC), or equivalent, CISA, CISM, CISSP, CRISC, CCSK
  • Microsoft Azure and/or Google Cloud Certifications

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Bright Vision Technologies

United State

Azure Cloud Architect

Devops
11h ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Associate

Raas Infotek

United State

Subscribe our newsletter

New Things Will Always Update Regularly