Detect, investigate, and respond to security incidents across the organization offering subject matter expertise in cloud security related incidents.
Assist in the hands-on configuration, operation, monitoring, and continuous tuning of the Cloud Native Application Protection Platform (CNAPP).
Create and maintain cloud security playbooks to include security automation, policy tuning, and incident response.
Assist in the connection of cloud security tools with other threat and vulnerability management initiatives.
Research, design, and test known tactics, techniques, and procedures used in cloud security attacks to validate effectiveness of security controls across the cloud environment.
Assist in the approval and onboarding of new Software as a Service (SaaS) solutions in use by the organization.
Ensure security controls are applied to new and existing SaaS solutions.
Requirements
3+ years of cyber security, systems administration, networking and/or cloud engineering experience
Excellent knowledge of the incident response process with experience in identifying, containing, and responding to cloud security incidents
Expert knowledge of enterprise-grade security technologies and capabilities (e.g. SIEM, DLP, EDR, IPS, Firewalls, Web Security, etc.)
Strong knowledge of cloud security operations including tuning of logging and monitoring, Identity Access Management (IAM), and network security best practices
Hands-on experience configuring, managing, and operating Cloud Security Posture Management (CSPM) and/or Cloud Native Application Protection Platform (CNAPP) tools such as Prisma Cloud, Orca, Wiz, SentinelOne, Palo Alto, Tenable Cloud, or similar technologies
Excellent communication skills (verbal and written), including proficiency in English.
Ability to work in an environment with evolving requirements and dynamic schedules.