Riveron helps organizations implement leading governance, risk and compliance practices by combining deep expertise with pragmatic partnership. The Cybersecurity Engineering Lead is responsible for designing, implementing, and maintaining security solutions that safeguard sensitive data and infrastructure while mentoring junior team members.
Responsibilities:
- Monitor and analyze security telemetry across platforms using Azure Sentinel, AWS GuardDuty/CloudTrail, and Google Cloud Logging. Investigate alerts, respond to incidents, and tune detection rules for multi-cloud environments
- Design and implement identity solutions across multi-cloud environments including Azure Entra ID / AWS IAM / GCP Identity and Access Management, Role-Based Access Control (RBAC), and Privileged Access Management (PAM). Enforce least-privilege principles and zero-trust identity frameworks
- Deploy and maintain cloud-native security tools—Microsoft Defender for Cloud, AWS Security Hub, and Google Cloud Security Command Center—to enforce security baselines, detect misconfigurations, and maintain regulatory compliance (SOC 2, ISO 27001, PCI-DSS, HIPAA)
- Secure cloud networking, data encryption, and workload protection across Azure (NSGs, Application Gateways), AWS (Security Groups, NACLs, VPC), and GCP (VPCs, Cloud Armor, Firewall Rules) and CSPM Platforms. Implement encryption, DLP, and data residency controls
- Embed security controls into CI/CD pipelines using Infrastructure-as-Code (Terraform, CloudFormation, Deployment Manager) and scripting (Python, Bash, PowerShell). Automate compliance scanning and remediation across all three clouds
- Develop and enhance internal security tools and automation frameworks using AI platforms such as Claude, GitHub Copilot, and other LLM technologies. Leverage generative AI to accelerate code generation, security script development, threat analysis automation, and documentation, enabling faster iteration on security solutions and driving continuous innovation across the security program
Requirements:
- 5+ years in cybersecurity or cloud security engineering, with hands-on experience across at least two major cloud providers (AWS, GCP, Azure)
- Expertise in zero-trust architecture, cloud networking, container security (Kubernetes, Docker), secrets management, vulnerability management, and data protection across multi-cloud environments
- Understanding of compliance frameworks and cloud-native threat models
- Relevant credentials such as AWS Certified Security – Specialty, Google Cloud Professional Cloud Security Engineer, Microsoft Certified: Azure Security Engineer Associate (AZ-500), or CISSP preferred