We have a 1year remote Cloud Security Engineer contract that may be extended for another 2 years by our client. The anticipated start is October 2024.
Our client established an Information Technology unit in July 2023 and successfully completed the transition of all information technology solutions from the governmental organization headquarters infrastructure to the new unit infrastructure in May 2024.
As this transition continues it is necessary to ensure the security of our clients cloud infrastructure. A Cloud Security Engineer is vital for architecting deploying and managing secure cloud infrastructure that meets business needs. The expertise is needed to support operational innovation enhance security posture and ensure effective collaboration across teams.
Cloud Security Engineer Services and Activities
The Cloud Security Engineer must have the skills knowledge abilities and experience to professionally and expertly execute the required services.
The Cloud Security Engineer shall architect deploy and operate a secure cloud application infrastructure that aligns with our clients business needs. The Cloud Security Engineer is responsible for supporting operational innovation and providing security direction to the business to elevate out clients security posture within a cloud computing infrastructure. In an advanced role the Cloud Security Engineer helps deliver applications at scale and with resiliency to support business initiatives. The Cloud Security Engineer is also expected to possess advanced administrative and troubleshooting skills and be knowledgeable about architecture engineering and design principles. The Cloud Security Engineer should be adept at dealing with disparate applications and data systems to maintain the level of rigor required to adhere to business direction. Along with depth of system coverage the role requires planning and design of policies and maintenance.
The Cloud Security Engineer will be working closely with our clients Information Technology unit cloud architect cloud engineer network security and system administrative teams to meet our clients security programs security initiatives. The Cloud Security Engineer must utilize a variety of communication and collaboration modes mediums and methodologies dependent upon audience activity and message. Is responsible for all communication related documentation as well as consultantservices subjectrelated documentation and the ongoing maintenance of this documentation throughout their tenure. Documentation shall include but not be limited to meeting agendas meeting minutes/notes training materials quick reference guides outreach materials videos and presentations. The Cloud Security Engineer will perform all associated services and activities necessary to successfully complete the requested services.
Security System Development and Operations
- Develop and maintain secure resilient enterprisegrade cloud processes in tandem with our clients IT architects and system engineers.
- Secure business applications and computing environments across public private or hybrid cloud infrastructures.
- Protect business applications in compliance with privacy security business resiliency and compliance frameworks as defined in our clients security policies.
- Configure Azure AWS and MS 365 based on best security technical standards.
- Maintain a consistent secure environment using configuration management solutions (e.g. Puppet Chef Ansible etc.). Conduct rigorous oversight of security systems and security configuration administration to reduce risk to enterprise systems and accounts.
- Deploy strong identity and access management (IDAM) controls across applications and computing environments.
- Assist with development maintenance and utilization of scripts (e.g. PowerShell Python Ruby etc.) to support custom extract transform load (ETL) tools with a security focus for data flow.
- Attend regular technical project and implementation meetings and serve as the security consultant to help guide secure application and infrastructure configurations.
- Actively monitor assess and recommend tactical and strategic initiatives based on new and emerging threats posing risk to cloud computing environments.
Security Monitoring Detection and Response
- Lead and manage remediation efforts after security assessment findings outline weaknesses of our clients assets that include using eDiscovery vulnerability management endpoint protection and security information event management (SIEM) security controls.
- Assist in maintaining strong oversight with cloud computing vendors and solution providers to safeguard against undue risk presented by external entities. Escalate to security management and business unit leads when points of weakness are discovered.
- Act as a key figure in incident response to track occurrence and resolution with strict documentation and reporting as well as engagement with security operations and incident response teams.
Security Standards Plans and Procedures
- Document and refine our clients security program technical requirements with IT cloud architect and engineering formulate and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
- Stay apprised of current and proposed security changes impacting regulatory privacy and security industry best practice guidance. Apply learned knowledge across our clients key lines of business areas including products practices and services.
Change Management and Meetings
- Attend and fully engage in change and project management meetings.
Fully remote hybrid or an onsite work schedule must be approved by our client at their discretion.
Minimum Qualifications
- 5 years of FullTime Equivalent (FTE) experience in cloud networking architecture and cloud operations with cloud access security broker (CASB) experience.
- 5 years of FTE experience with tools such as Git Jenkins Chef Puppet and Salt.
- 7 years of FTE network and encryption experience including virtual private networks (VPNs) IPsec SSL/TLS LDAP and public key infrastructure (PKI).
- 5 years of FTE experience with scripting languages such as Python Ruby and JavaScript.
- 5 years of FTE experience in the use of threat intelligence services in a production environment.
- 7 years of FTE experience of a wide range of incident response system configuration vulnerability management and hardening guidelines.
- 5 years of FTE experience problemsolving abilities to manage complex local and international security requirements.
- 5 years of FTE experience collaborating with technical and nontechnical teams to promote ideas to support business enablement.
- Current certification in a minimum of 2 of the following: MS Cybersecurity Architect Expert Azure Security Engineer Associate AWS Certified Security CompTIA Cloud CompTIA Security Certified Cloud Security Professional (CCSP) GIAC Cloud Security Automation (GCSA).
Minimum Application Requirements
Your application will be disqualified if you do not meet all these minimum application requirements.
- Must meet or exceed the Minimum Qualifications.
- Must be a current resident of the United States.
- Must have current work authorization for the United States.
- Must be a direct hire.
Make sure to check your junk/spam folders as we will use email to reach out to you.