Remotery

AWS Cloud Security Engineer – CNAPP

Posted 4 days ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Deliver advanced technical expertise in safeguarding AWS cloud environments through ongoing vulnerability management, operations of Cloud-Native Application Protection Platform (CNAPP), threat detection, compliance oversight, and cloud security engineering.

• Implement, configure, and manage CNAPP functionalities across AWS cloud environments that adhere to FedRAMP High compliance standards.

• Set up and sustain AWS-native security services.

• Execute and oversee Cloud Security Posture Management (CSPM), Cloud Infrastructure Entitlement Management (CIEM), workload protection, runtime security, vulnerability management, attack-path analysis, encryption controls, network segmentation, backup/recovery safeguards, and continuous compliance monitoring capabilities.

• Monitor and evaluate Wiz vulnerabilities, Splunk alerts, AWS security findings, SIEM events, runtime alerts, and New Relic dashboards to detect threats, confirm remediation efforts, and aid ongoing cloud security operations and incident response initiatives.

• Establish and verify security baselines, policy enforcement mechanisms, encryption standards, workload isolation controls, secrets protection, secure storage configurations, and least-privilege access controls in line with Zero Trust principles.

• Integrate CNAPP tools with SIEM, logging, monitoring, alerting, automated remediation, and incident response platforms to facilitate centralized cloud security operations.

• Assist in continuous ATO activities by creating and managing SSPs, security implementation procedures, SOPs, mitigation plans, technical runbooks, automated remediation playbooks, audit evidence, POA&M documentation, and operational security documentation to comply with FedRAMP, NIST 800-53, FISMA, and Judiciary security mandates.


⛳️ Requirements

• Technical training, certifications, or a degree along with 10+ years of general experience in information systems is required.

• Over 7 years of cybersecurity experience, with at least 4 years concentrated on AWS cloud security and CNAPP technologies.

• Practical experience in implementing and managing Wiz and AWS-native CNAPP/security services within enterprise cloud environments.

• Significant expertise in CSPM, CIEM, workload protection, runtime security, vulnerability management, cloud compliance monitoring, and cloud attack-path analysis.

• Strong comprehension of Zero Trust Architecture (ZTA), FedRAMP High, NIST 800-53, FISMA, CIS Benchmarks, and cloud security best practices.

• Experience in supporting vulnerability remediation, incident response, compliance assessments, and continuous monitoring efforts in regulated cloud environments.

• Capability to assist with after-hours vulnerability scanning, incident response, and critical security remediation tasks as necessary.


🏝️ Benefits

• Comprehensive benefits and wellness packages.

• 401K with company matching.

• Competitive salary.

• Paid time off.

• Full flexible work weeks.

People also viewed

Accenture Federal Services1 hour ago

Google Cloud Platform Data Engineer

US flagVirginia OnlyFull-timeCloud Engineer$100.2k – $203.4k/year
ApplyView job
Heinsohn1 hour ago

Ingeniero de Inteligencia Artificial – Azure

CO flagColombia OnlyFull-timeCloud Engineer
ApplyView job
Ardent Mills1 hour ago

Cloud Security Engineer

US flagColorado OnlyFull-timeCloud Engineer$140k – $200k/year
ApplyView job
Jane1 hour ago

Cloud Security Engineer

CA flagCanada OnlyFull-timeCloud Engineer$98.4k – $147.6k/year
ApplyView job
CACI International Inc1 day ago

Senior Cloud Security – Cryptography Engineer

US flagUnited States OnlyFull-timeCloud Engineer$114.6k – $252.1k/year
ApplyView job
SALMON ROBOTICS LIMITED1 day ago

Database CloudOps

RS flagSerbia OnlyFull-timeCloud Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers