Designing next generation cloud infrastructure to ensure it is kept up do date without reliance manual processes like patching
Defining and embedding security best practice and standards into our cloud engineering teams
Building guardrails and defining policy around IAM to ensure least privilege is enacted
Identifying ways to make sure new security misconfigurations are not created via IaC
Hardening our existing cloud infrastructure
Reviewing cloud integrations between Tide and any third parties and be a point of contact for any cloud security incidents
WHAT WE ARE LOOKING FOR:
You have good infrastructure security experience and passionate about tackling risks from misconfigurations
You have deep expertise in at least one public cloud, preferably AWS or GCP.
You are familiar with docker and containerised applications.
You have a good understanding of Kubernetes and how to secure workloads running in a Kubernetes cluster.
You are familiar with the cloud-native approach to implementing workloads in a Kubernetes cluster.
You are comfortable with writing CI/CD pipelines using GitHub Actions or any other CI/CD tools such as Jenkins, GitLab Actions, CircleCI etc.
You are able to review and write Terraform and are able to propose improvements to external providers
You write reliable software in Python or Go
You have operations experience in running and maintaining software, operating a large cloud deployment, or creating and triaging alerts around the health and security of your systems
You work well with other people, see the value of a team, and partner effectively with all stakeholders
You thrive by identifying high leverage work and doing it without explicit direction
You aim to always be learning new things and share this passion with those around yo