This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Identifies, implements, maintains, and monitors risk-informed, standards-based, effective, and efficient security controls within a hybrid multi-cloud technology environment
Supports continuous integration and continuous development pipelines and processes that automatically build, test, and deploy infrastructure and containerized applications to ensure appropriate security checks are included automatically or manually
Reviews software releases and infrastructure changes for security vulnerabilities and risks prior to approval
Supports enterprise software development and cloud infrastructure projects and production applications that store, process, and transmit regulated data to ensure controls meet or exceed standards
Manages vulnerabilities and security testing for on premise and cloud-hosted applications and tracks issues to remediation
Supports audit and compliance efforts to ensure applications, infrastructure, and integrations meet applicable compliance and contractual standards
Identifies, recommends, and tests technical security standards and guidelines for software development, DevOps, and release management to ensure that all delivered solutions and architecture adhere to industry best-practices for availability, confidentiality, and integrity
Partners with internal and external development teams and other stakeholders to improve security and operational monitoring for cloud hosted workloads
Develops and tests incident response plans to prepare for, respond to, and recover from security incidents and operational issues as part of an incident response team
Supports efforts to provide for a secure integrated development environment for external and internal software and release management pipelines
Builds and tracks performance indicators and metrics to inform security control monitoring in cloud environments
Performs all other duties as assigned
Requirements:
Bachelor’s Degree in Computer or Software Engineering, Information Security, Cybersecurity or related field from an accredited four year college or university required
Master’s Degree preferred
AWS Certified Solutions Architect or DevOps Engineer Professional certification required
Must be able to obtain certification within 6 months of hire
Minimum eight (8) years of extensive security engineering experience, including architectural design using AWS best practices and industry standards
Experience implementing and managing tools for security, availability, and compliance monitoring in a cloud environment which includes collecting data, parsing log files, capturing network traffic, setting alert thresholds, and notifying stakeholders
Nice to have:
AWS Security Specialty certification
Certified Information Systems Security Professional (CISSP)
Certified Cloud Security Professional (CCSP)
Cloud Security Alliance (CSA) Certificate of Cloud Security Knowledge (CCSK)