GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The Associate Cloud Security Engineer will support various organizations in securing their cloud-native workloads and gain hands-on experience with modern security automation tools and practices.
Responsibilities:
- Assist senior consultants in client engagements, participating in meetings, taking notes, and supporting technical assessments under guidance
- Support the implementation of Kubernetes security controls including basic cluster hardening, network policies, and RBAC configurations while learning best practices
- Help implement security policies using tools like OPA (Open Policy Agent) or Kyverno, working under the mentorship of senior team members
- Support the development and review of secure IaC templates using Terraform, CloudFormation, or ARM templates with senior oversight
- Assist in configuring and implementing secrets management solutions like HashiCorp Vault, AWS Secrets Manager, or Akeyless
- Help integrate basic security controls into CI/CD pipelines using tools like GitHub Actions, GitLab CI, or Jenkins under senior guidance
- Research and document cloud security best practices, tools, and emerging threats to support team knowledge sharing
- Create documentation, scripts, and basic automation tools to support client deliverables and internal processes
- Actively participate in mentorship programs, shadowing senior consultants, and pursuing relevant certifications
- Perform testing and validation of security configurations and automation scripts before client delivery
Requirements:
- Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience
- 1-3 years of experience in cloud computing, DevOps, or information security roles
- Basic understanding of cloud platforms (AWS, Azure, or GCP) and their core services
- Familiarity with containerization technologies, particularly Docker and basic Kubernetes concepts
- Experience with at least one Infrastructure as Code tool (Terraform, CloudFormation, etc.)
- Basic scripting skills in Python, Bash, or PowerShell
- Understanding of fundamental security concepts and best practices
- Strong communication skills and eagerness to learn in a client-facing environment
- Ability to work collaboratively and take direction from senior team members
- Basic knowledge of CI/CD platforms (GitHub Actions, GitLab CI, Jenkins)
- Exposure to Policy as Code concepts or tools
- Understanding of secrets management principles
- Familiarity with cloud security frameworks (CIS, NIST)
- Interest in pursuing security certifications such as: AWS Certified Cloud Practitioner or Security Specialty, Kubernetes & Cloud Native Associate (KCNA), CompTIA Security+