3 9 to 6 Management Consultants Jobs
7-12 years
Cloud Security Engineer - Vulnerability Assessment (7-12 yrs)
9 to 6 Management Consultants
posted 12d ago
Key skills for the job
1. Job Description
We are looking for a Cloud Security Engineer who will be responsible for securing our cloud infrastructure and applications. The candidate should have a strong background in cloud security posture management, vulnerability assessments, and continuous improvement of our security stance in a multi-cloud environment.
2. Responsibilities
- Manage Wiz.io for cloud security posture management, ensuring that our cloud environments are configured in line with security best practices.
- Conduct regular vulnerability assessments (VA) across our cloud resources (Azure, AWS, GCP, and OCI).
- Identify security misconfigurations and vulnerabilities, providing recommendations and remediation steps.
- Ensure the security of cloud-based applications, workloads, and services through continuous monitoring and vulnerability management.
- Work with the development and infrastructure teams to integrate cloud security best practices into the CI/CD pipeline.
- Stay up to date with the latest cloud security threats and vulnerabilities, implementing countermeasures where necessary.
- Collaborate with other security teams to ensure that cloud security aligns with overall enterprise security policies.
3. Qualifications
- Bachelor's or master's degree in computer science, or equivalent experience in related field.
- 7-12 years professional experience securing and maintaining cloud infrastructure.
- Hands-on experience with Wiz.io or similar cloud security posture management tools.
- In-depth knowledge of cloud security risks, vulnerabilities, and mitigation strategies.
- Experience in vulnerability management and conducting risk assessments in cloud environments.
- Strong understanding of AWS, Azure, GCP, and OCI security controls.
- Familiarity with cloud security frameworks (e.g., CIS, NIST, and SOC2).
- Experience with Infrastructure as Code (IaC) and DevSecOps practices.
4. Certifications
- Cloud security certifications (e.g., AWS Certified Security Specialist, Google Professional Cloud Security Engineer, or CISSP).
- Experience with container security and orchestration tools (e.g., Kubernetes, Docker).
Functional Areas: Other
Read full job description