Senior Security Engineer
Summary
Senior security engineer focused on securing AWS and Azure cloud environments for a Riyadh-based tech company. Day-to-day work includes designing security architectures, managing IAM, threat detection and incident response, ensuring ISO 27001/NIST compliance, and building IaC automation with Terraform/CloudFormation.
Position summary:
DeepSource Technologies is seeking a talented security engineer focused on securing our cloud environments. This position is exclusively available for Saudi nationals, and the successful candidate will play a crucial role in implementing and maintaining robust security measures within our cloud infrastructure while ensuring compliance with local and international regulations.
Key responsibilities:
Security architecture design:
Design and implement security architectures and frameworks for cloud solutions, particularly in AWS and Azure environments.
Identity and access management:
Configure and manage IAM roles, policies, and permissions to enforce strong access controls and governance.
Threat detection and incident response:
Monitor cloud environments for security events, respond to incidents, perform vulnerability assessments, and remediate issues promptly.
Compliance and risk management:
Ensure compliance with cybersecurity policies, regulations, and standards relevant to cloud security (e.g., ISO 27001, NIST).
Automation and tooling:
Develop automation scripts to enhance security operations and implement infrastructure as code (IaC) principles using tools like Terraform and CloudFormation.
Collaboration:
Work closely with development, operations, and compliance teams to integrate security practices into the software development lifecycle (SDLC).
Requirements
Experience:
3+ years of experience in cloud security roles, with a strong focus on AWS and Azure cloud platforms.
Certifications:
Certified Cloud Security Professional (CCSP), AWS Certified Security – Specialty, or equivalent certifications are preferred.
Technical skills:
Proficient in security best practices for cloud architectures and services, with knowledge of security tools (e.g., SIEM, IDS/IPS, firewalls).
Experience with vulnerability scanning and remediation techniques for cloud infrastructure.
Familiarity with container security and orchestration technologies (e.g., Docker, Kubernetes).
Key competencies:
Strong analytical and problem-solving skills, with the ability to prioritize and manage multiple tasks efficiently.
Excellent communication and teamwork skills.