Public cloud security Engineer
Experience 4 6 years
Location United Kingdom
Role description:
Manage GDI cybersecurity requests
- Perform the inline security validations prior to implementation (network flow opening in firewall security exception on the proxies user & admin rights management etc.) within the SLAs and according to the Group security rules
Escalate the requests which do not comply with SaintGobain s security rules
Route expertise requests to the appropriate expert team ensure they are treated properly.
- Execute GDI Operational Security controls & support security remediation action plan for Public Cloud
Perform the periodical controls for the scope of Public Cloud services managed by the Group Digital & IT teams
Perform the standard Security Acceptance Testing in Projects for the scope of Public Cloud
Consolidate & coordinate operation security remediation action plan for Public Cloud
Follow the remediation action and provide support to remediate
- Handle GDI cyber security incident & coordinate remediation
Handle incident reported by CyberSOC & define postmortem Action plan when necessary
Coordinate incident remediations and support crisis management
- Report & improve operational security activities
Build and execute the reporting (KPI & KRI) to the security officers
Formalize improve & automate (when possible) security operations and procedures
Skill:
4 years of in Public Cloud security with handson experience.
Experienced with vulnerability management tools (Qualys etc.)
Experienced with security processes (IAM vulnerability exception flow opening etc.);
Knows Public Cloud technologies (Azure AWS etc.)
Knows of risk analysis methodologies (EBIOS ISO 27005 etc.) and security into project
Script capability (PowerShell etc.)
Security certification(s) is a plus.
does
Roles and Responsibilities
Outline the activities a person will perform on a regular
Desired Candidate Profile
Specify required expertise previous job experience or certification
Perks and Benefits
Mention salary details like reimbursement breakup of salary facilities available
qualys,iam,vuinerability,azure,aws,ebios,iso 27005,powersheel