Lead the design and implementation of security architectures for cloud environments
Oversee security risk assessments and implement mitigation strategies
Develop security policies and best practices tailored for cloud environments
Collaborate with cross-functional teams to enhance cloud security measures
Conduct forensic investigations on cyber incidents and produce reports
Requirements
8+ years of proven experience in security architecture, demonstrating solutions delivery, security principles, and emerging technologies
8+ years of experience designing, implementing, and continuously improving enterprise security solutions
8+ years of experience designing and implementing security measures to protect data in public cloud environments, including secure authentication, encryption, access control lists, intrusion detection systems, and firewalls
8+ years of experience working with multi-cloud security architectures covering infrastructure, cloud-based applications, and information security tools
8+ years of experience consulting and engineering security best practices aligned with business, customer, and regulatory requirements
8+ years of experience addressing cloud security risks including data breaches, broken authentication, account hijacking, malicious insiders, APTs, data loss, and DoS attacks
8+ years of experience performing threat analysis, security risk assessments, and designing mitigation strategies
8+ years of experience working with NIST standards and ISO 27001 frameworks
8+ years of hands-on experience with Splunk, including creating alerts, dashboards, and executive-level reports
8+ years of experience designing and developing enterprise security architectures aligned with strategic technology initiatives
8+ years of experience resolving complex security issues in decentralized environments and effectively communicating security concepts
8+ years of experience conducting forensic investigations on cyber incidents
8+ years of experience creating, reviewing, and updating security policies for public, private, and hybrid cloud environments
Preferred 3+ years of experience holding or working toward certifications such as GSEC, CEH, CISA, CCSP
3+ years of experience with cloud certifications such as AWS Solutions Architect, Cloud Security certifications, OpenStack Administrator, or other cloud-related certifications
3+ years of experience with Endpoint Detection and Response (EDR) tools such as CrowdStrike, EndGame, or Cybereason
3+ years of experience with Email Threat Management solutions such as Proofpoint, Mimecast, or Microsoft Defender
3+ years of experience with SIEM engineering/design and management tools such as Splunk, Rapid7, or Sumo Logic
3+ years of experience with Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) tools such as Symantec, Microsoft, Bitglass, or Netskope
3+ years of experience with Cloud Enterprise Network Security tools such as Cisco Umbrella, Palo Alto, or Zscaler.