Your Role and Responsibilities Design and implement security architecture for cloud infrastructure and storage platforms, following secure design principles, and configuring security controls. Conduct regular security assessments and testing to identify vulnerabilities in the cloud environment. Patch and update resources to address vulnerabilities and keep them secure. Implement security automation tools to streamline security processes and improve efficiency. Keep up to date with the latest cloud security threats and vulnerabilities and participate in security training to stay informed about new security best practices.
Responsibilities include.
Identify and resolve security issues across the cloud infrastructure
Build, deploy, and manage security tools and services
Design and implement scalable processes to provision cloud access
Maintain a low-touch, reliable, and user-friendly infrastructure
Evaluate and respond to alerts and events from security tools
Tune security tool configuration to minimize false positives
Develop event response documentation and processes, including diagrams for system environments, cloud operations, and security tools
Collaborate with security leadership, engineering, and compliance to execute security strategies
Assist other teams in solving security issues in a manner that complies with business requirements and best practices
Assess our current cloud security and propose improvements or solutions
Review our architecture and design through a security lens to provide actionable, timely requirements and recommendations
Serve as a subject matter expert for security tools, applications, and processes
Develop and implement incident response plans to effectively respond to security breaches.
Collaborate with other security professionals and development teams to ensure a holistic approach to cloud security.
Required Technical and Professional Expertise
5+ years of experience working with a public cloud infrastructure
Experience deploying and customizing security tools such as vulnerability scanners, static analysers, IDS/IPS, firewalls, and endpoint security monitoring
Experience using CI/CD pipelines for change management and automated security testing
Experience with networking and Unix/Linux servers
Experience developing software with object-oriented languages.
Experience with log management and/or correlation systems
Fluent in one or more programming or scripting language
Thorough understanding of cloud and network security
Ability to write SQL queries and build dashboards and reports
Knowledge of networking and web protocols
Knowledge of modern cloud technology components and deployment patterns
Strong communication and collaboration skills
Strong analytical problem solving skills
Preferred Technical and Professional Expertise
5+ years of experience working in an information security role
Experience with securing services in a multi-cloud environment
Experience with Linux virtualization technologies such as KVM, Xen and QEMU
Experience with Ceph, NFS, NVME, or object storage technologies