Responsibilities:
- Provide consultation to engineers on security requirements, ensuring best practices are followed to meet these needs.
- Collaborate with the Cloud Infrastructure and Platform teams to spearhead initiatives that enhance the security utilities and tools .
- Develop and implement threat detection mechanisms for a hybrid infrastructure, encompassing application infrastructure, containers, and IoT systems.
- Lead and actively participate in discussions and communications within the team, as well as with customers and other business units.
- Translate standards and regulatory controls into actionable tasks for engineers, ensuring clarity in what needs to be accomplished.
- Develop and maintain a comprehensive infrastructure and platform security roadmap that aligns with customer demands and regulatory requirements.
- Address customer-sponsored penetration tests with timely and detailed responses.
- Develop, maintain, and promote security standards through various knowledge-sharing platforms such as workshops, office hours, and brown-bag sessions.
- Advocate for best practices and design patterns in security.
- Lead the onboarding and development of Security Orchestration, Automation, and Response (SOAR) systems.
Qualifications & Experience:
- Bachelor’s degree in Computer Engineering or a STEM-related field (Science, Technology, Engineering, or Math).
- AZ-500 & AWS security certifications are advantageous.
- A minimum of 5 years of experience in managing security controls within Azure, AWS, or Google Cloud.
- Strong proficiency in CI/CD and automation tools (such as Chef, Git, Jenkins) and in Infrastructure as Code/Policy as Code.
- Deep understanding of identity management and identity federation technologies (SAML, OAuth).
- Extensive knowledge of virtual infrastructure and containerization technologies.
- Proven experience in designing and implementing security controls on cloud platforms like AWS, Azure, or similar environments.
- Skilled in risk identification and evaluation techniques.
- Experience with at least one SIEM and SOAR platform, including log source onboarding and automation development.
- Proficient in scripting and automation, particularly in Python.