Cloud Security Engineer
Design, develop, and operate cloud security technical solutions; conduct cloud environment security audits; manage vulnerabilities; build container security systems; develop key rotation strategies; monitor cloud infrastructure security; and investigate SOC alerts.
Responsibilities
- Design, develop, and operate cloud security technical solutions in accordance with cloud security policies and standards.
- Undertake security audits of the cloud environment covering network, configuration, permissions, and data.
- Identify security risks and promote their remediation.
- Manage daily cloud security vulnerability management.
- Build the container security system.
- Develop key rotation strategies and promote their implementation.
- Monitor the security status of cloud infrastructure.
- Work with the technical team to respond to and investigate SOC alerts.
Requirements
- Familiarity with AWS services including IAM, VPC, Security Groups, NACLs, load balancers, KMS, and Secrets Manager.
- Proficiency with AWS Security Hub, GuardDuty, Inspector, Config, and IAM Access Analyzer.
- Familiarity with EKS security and pod security policies.
- Experience operating container security tools such as Falco and its rules.
- Familiarity with CSPM, CIEM, and CNAPP technologies.
- Experience conducting cloud infrastructure risk assessments and vulnerability analysis.
- Participation in emergency response to cloud security incidents.
- Excellent analytical thinking and problem-solving skills.
- Effective time management and organizational abilities.