Cloud Security Engineer
Pay: $125,000 - $165,000
Location: Irvine, CA
Fulltime/Onsite
Position Summary:
We are seeking a skilled Cloud Security Engineer with experience in AWS, Kubernetes, and containerized applications to join our engineering team. The ideal candidate will be responsible for planning, implementing, and maintaining the security of our cloud environments and for maintaining compliance with NIST SP 800-171 standards.
Essential Job Functions and Desired Accomplishments
- Design and implement security architectures for AWS infrastructure, ensuring best practices in cloud security and containerized applications.
- In compliance with NIST SP 800-171, conduct security risk assessments and vulnerability assessments on cloud resources, applications, and services.
- Collaborate with Corporate Cybersecurity Lead on developing and maintaining security policies, training, and procedures related to cloud environments.
- Lead the development of automated monitoring of cloud infrastructure for security incidents using tools such as AWS CloudTrail, CloudWatch, and GuardDuty.
- Collaborate with cross-functional teams to integrate security into new features/software releases to ensure ongoing compliance.
- Respond to security incidents, performing root cause analysis and remediation.
- Provide security guidance and support during architecture reviews and system deployments and maintain cloud security risk register.
- Stay updated with the latest security trends, threats, and technology solutions related to cloud security.
- Participate in DevOps sprints by implementing (not just designing) security measures and contribute to routine DevOps sprints (as a lower priority).
Education/Qualifications/Certifications
Required:
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Proven experience in cloud security engineering, with a strong focus on AWS, Kubernetes, and containerized applications.
- Experience with cloud security frameworks such as CSA STAR, NIST, or ISO 27001.
- Proficiency in scripting or programming languages (e.g., Python, Bash) for automation of security tasks.
- Knowledge of IAM, VPC, security groups, EC2 instances, and other AWS services.
- Experience with security tools such as AWS Security Hub, WAF, and third-party solutions (e.g., SIEM).
- Problem-solving skills and the ability to work independently as well as in a team.
Desired:
- Relevant security certifications (e.g., AWS Certified Security, CISSP, CISM, CKS) are a plus.
#J-18808-Ljbffr