CCC Intelligent Solutions Inc. is a leading cloud platform for the insurance economy, creating intelligent experiences for a variety of stakeholders. They are seeking a Cloud Security Engineer to lead the innovation of their security strategy, focusing on enhancing the security posture of their cloud infrastructure and protecting sensitive information.
Responsibilities:
- Design, develop, and implement security requirements into cloud-native architectures that will allow business requirements to be met with appropriate security controls present
- Assist the security and cloud team in building a security focused cloud architecture as well as threat hunting and remediation
- Interface with the cloud and engineering teams to ensure that the global platform and clients' sensitive information is protected
- Excellent understanding/working knowledge of the public cloud infrastructure, services, and security capabilities in Azure is a strong plus
- Troubleshooting security and network problems and respond to all system and/or network related security breaches
- Participating in the change management process
- Develop documentation as in system design, concept of operations and architecture diagrams
- Daily administrative tasks, reporting, and communication with the relevant departments in the organization
- Collaborate with others on the project to brainstorm about the best way to tackle a complex technological infrastructure, security, or development problem
- Provide technical design and architecture advice to customer teams on how to securely develop and build cloud-ready applications
- Implement policies and procedures for responding to security incidents, and for investigating and reporting security violations and incidents
Requirements:
- 3+ years of information technology experience
- 2+ years of Azure Cloud Security experience a strong plus or other CSP security experience
- Experience in public cloud is required (AWS, Azure)
- Experience working with software development or devops teams is preferred
- Experience in systems or network administration is preferred
- Experience working with industry standard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA)
- Proficiency in a wide range of public cloud technologies (ex. AWS EC2, EKS, EBS, RDS, S3, etc)
- Proficiency in Infrastructure as Code (IaC) technologies such as Cloudformation or Terraform
- Scripting and automation skills highly preferred (APIs, Python, Bash, Powershell, Go)
- Certified Cloud Security Professional (CCSP)
- Cloud Security Essentials (GCLD)
- Cloud Security Automation (GSCA)
- Networking Certifications (CCNA, etc.)
- Platform Certifications (Microsoft, Linux, Cisco, etc.)