Act as a technical bridge between security leadership's strategic requirements and hands-on implementation of security controls within the company's cloud infrastructure.
Translate high-level IT-risk requirements into technical cloud security specifications.
Develop automated metrics for ongoing performance measurement and reporting.
Participate in cloud planning initiatives and ensure security measures are incorporated into architecture.
Balance real-world security risks with business drivers such as speed, agility, and performance in a DevOps environment.
Support Information Security policies and prioritize technical efforts.
Work with IT leadership stakeholders to implement technical security projects that address identified risks in cloud environments.
Assist resource owners and IT staff in understanding and responding to security audit failures and cloud configuration vulnerabilities.
Manage production security issues and incidents within cloud platforms.
Provide technical support and guidance for legal and regulatory compliance efforts.
Design and implement technical controls to support and enforce defined security policies in AWS, Azure, or GCP.
Research, evaluate, and test new cloud security hardware or software.
Requirements
Bachelor's degree in Computer Science, Information Security, or a related field.
Relevant certifications CISSP, CCSP, or cloud-provider specific security certifications (AWS/Azure/GCP) are a plus.
A minimum of seven years of IT experience, with five years in an information security role specifically focused on cloud or network security.
Experience with common information security management frameworks, such as ISO 27001, NIST CSF, or the CSA Cloud Controls Matrix.
Strong understanding of network and system security principles, including firewalls, intrusion detection/prevention systems, and encryption.
Experience with containerization technologies (e.g., Docker, Kubernetes) and securing containerized environments.
Capability to develop and guide technical security initiatives with minimal supervision.
Experience developing and maintaining technical security procedures, standards, and guidelines.
Excellent problem-solving skills and the ability to analyze complex systems and identify security risks.
Strong communication and collaboration skills, with the ability to work effectively in a team-oriented, fast-paced environment.
Strong technical leadership skills and the ability to work effectively with business managers and IT operations staff.
The ability to build strong relationships across all business units and understand business imperatives.
Proficiency in performing risk, control, and vulnerability assessments in cloud-native environments.
Strong analytical skills to analyze security requirements and relate them to appropriate technical security controls.
Tech Stack
AWS
Azure
Cloud
Docker
Firewalls
Google Cloud Platform
Kubernetes
Benefits
Paid Time Off
401(k)
Employee Assistance Program
Good Sam Roadside Assistance
Discounts
Paid parental leave (if eligibility is met)
Tuition Reimbursement (if eligibility is met)
On the job training opportunities
Comprehensive benefit package including medical, dental, vision and more!