Implement secure cloud-native architectures and DevSecOps pipelines
Support security integration into CI/CD workflows
Perform SAST/DAST and security code reviews
Implement AWS security controls and automation
Support Infrastructure-as-Code (IaC) deployments
Configure and manage cloud security technologies
Conduct vulnerability analysis and remediation activities
Support compliance and authorization activities for cloud systems
Requirements
Minimum of 5 years of IT experience
Cloud-native architectures, AWS, VPC, Security Groups, IAM, Docker, KMS, S3 Encryption, RDS Encryption, HTTPS, SSL Certificates, Data Lake security, CloudFormation, CloudFlare, CloudFront, API Gateway, Lambda, Egress proxies, application security, domain segmentation, authentication, data protection, and automation of processes.
Experience using AWS Infrastructure-as-Code (IaC), Infrastructure-as-a-Service (IaaS), Platform-as-a-Service (PaaS) and Software-as-a-Service (SaaS).
Research, Design, Development, Testing and Deployment experience using AWS IaaS, PaaS services, tools and technologies to support continuous integration and delivery on Linux Environment.
Demonstrated ability to build and execute complex security plans in AWS.
Experience working with compliance and regulatory requirements in AWS.
Experience working in a risk-based environment including mitigation, planning, and implementation in AWS.
Hands on experience with experience in Splunk, Nessus, Tenable Security Center, and firewall tools such as Palo Alto, Imperva, Fortinet, etc.