Summary
What you’ll impact
The Cloud Security Engineer will design, implement, and maintain security controls across AWS and Azure environments, focusing on Kubernetes/EKS, ECS Fargate, and cloud security monitoring. The role involves collaborating with cross‑functional teams to assess architecture, remediate vulnerabilities, and embed DevSecOps practices throughout the software development lifecycle.
Responsibilities
What you'll do
- Design, implement, and maintain cloud security controls across AWS and Azure environments.
- Secure Kubernetes/EKS and ECS Fargate environments, including workload and container security.
- Monitor and investigate security events using Splunk and other cloud security tools.
- Implement and support DevSecOps and CI/CD security practices throughout the software development lifecycle.
- Manage and remediate findings related to CSPM, CIEM, IAM, and cloud security posture.
- Utilize security services including AWS Security Hub, GuardDuty, Microsoft Defender for Cloud, CNAPP, and Tenable.
- Perform cloud security architecture reviews and assess Infrastructure as Code (IaC) for security risks.
- Evaluate and strengthen AWS IAM and Microsoft Entra ID security configurations.
- Identify cloud security vulnerabilities and coordinate remediation efforts with infrastructure, engineering, and development teams.
- Support security investigations, risk assessments, documentation, and continuous improvement of cloud security controls.
- Collaborate with cross-functional teams to ensure cloud environments align with organizational security standards and best practices.
Requirements
What you’ll bring
- 3+ years of experience in cloud security engineering.
- Strong hands-on experience with AWS and Azure cloud security.
- Experience securing Kubernetes/EKS and ECS Fargate environments.
- Experience with Splunk for security monitoring, threat detection, and investigations.
- Strong understanding of DevSecOps and CI/CD security practices.
- Hands-on experience with CSPM, CIEM, IAM, and cloud security remediation.
- Experience with AWS Security Hub, GuardDuty, Microsoft Defender for Cloud, CNAPP, and Tenable.
- Experience with cloud security architecture and Infrastructure as Code (IaC) security reviews.
- Strong knowledge of AWS IAM and Microsoft Entra ID security.
- Excellent analytical, communication, documentation, and problem-solving skills.
- Bachelor’s degree in a related technical field or equivalent experience preferred.
- Relevant cloud security certifications are a plus.