Analyze, design, implement, troubleshoot, and maintain commercial, and cloud-native security solutions across public cloud environments.
Create and maintain automated workflows and integrations to support cloud security controls and the automation platform, primarily using Python.
Identify and define security system requirements for public cloud environments.
Continuously analyze security systems and drive improvements, with a focus on automation and resilience.
Develop, document, and maintain configuration and security standards, technical documentation, and standard operating procedures (SOPs).
Tune, filter, and customize security systems with Information Security Analysts to reduce noise and improve detection quality.
Serve as a subject matter expert for public cloud security and security automation.
Consult with team members and other groups to solve basic to moderately complex cloud-focused security challenges.
Partner with teams outside of Security (e.g., application, infrastructure, DevOps/Platform) to design secure, automated cloud architectures and guardrails.
Requirements
Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
Preferable AWS and/or Azure certifications with strong coding and automation skills.
2+ years of experience in information security, cloud engineering, or a closely related technical role.
2+ years of hands-on software development or scripting experience in Python, ideally in security, infrastructure, or DevOps contexts.
Proven experience building, maintaining, and troubleshooting automation (e.g., scripts, services, serverless functions, CI/CD integrations) for cloud or security use cases.
Experience with public cloud platforms such as AWS and/or Azure, including core security services (e.g., IAM, KMS, security groups, logging/monitoring, configuration management).
Familiarity with infrastructure-as-code and configuration management tools (e.g., CloudFormation, Terraform, ARM/Bicep, Ansible) is preferred.
Experience integrating security tooling and cloud services via APIs and SDKs.
Solid understanding of information security principles, including network security, identity and access management, and secure development practices in cloud environments.