Benefits:
401(k) matching
Dental insurance
Health insurance
Paid time off
We are seeking a Senior Cloud Security Engineer and an Expert Cloud Security Engineer to join our dynamic team. These roles require strong technical expertise and strategic thinking to design and implement robust security solutions for cloud environments. The selected candidates will work closely with stakeholders, developers, and leadership to enhance cloud security, mitigate risks, and support organizational goals.
Senior Cloud Security Engineer Experience - 7+ years Salary Range - $120,000 - $160,000
Responsibilities:
Design and implement security controls for cloud environments, including IaaS, PaaS, and SaaS.
Assess security tool needs and recommend appropriate technology services.
Work with containerized and micro-architecture platforms following industry best practices.
Implement and manage security technologies such as SIEM, network firewalls, and host-based security.
Integrate Content Delivery Networks (CDN) and optimize their security.
Use Cloud Security Posture Management (CSPM) and vulnerability management tools.
Collaborate with Managed Detection & Response (MDR) providers to set up and investigate security alerts.
Lead investigations of security incidents or breaches and develop strategies for recovery.
Expert Cloud Security Engineer Experience - 10+ years Salary Range - $150,000 - $200,000
Responsibilities:
Lead the design and implementation of security controls across cloud infrastructures (IaaS, PaaS, SaaS).
Perform advanced assessments of security tool requirements and ensure optimal deployment.
Oversee containerized and micro-architecture platforms and establish best practices.
Implement and maintain SIEM, network firewalls, host-based security, and configurations.
Manage integrations with Content Delivery Networks (CDN) for enhanced security.
Utilize CSPM and vulnerability management tools to monitor and improve security posture.
Partner with MDR providers to investigate complex security alerts and incidents.
Direct the response and recovery from security incidents or breaches, including strategic planning.
Skills and Qualifications:
Experience with Health Exchange systems or its partners is a significant advantage.
Industry certifications like CompTIA Security+ or CISSP are strongly preferred.
Expertise in serverless and cloud-based enterprise applications.
Advanced knowledge of Linux and Microsoft server environments.
Proficient in object-oriented programming languages (e.g., Java, Python, .Net).
Deep understanding of standards such as OWASP, IRS 1075, CMS MARS-E, NIST, and FISMA.
Tools:
Cloudflare
Azure Sentinel
Tenable Nessus
Rapid7 Insight Vulnerability Management
Microsoft Defender
Microsoft Azure Cloud
Palo Alto PrismaCloud and Firewalls
Jira and Confluence
SolarWinds Orion and ServiceDesk
PowerShell and GitHub