
Engineer, Cloud Security
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Alaska, +12 more states.
• Facilitate ongoing enhancements to the cloud environment.
• Design, implement, and manage security solutions across the organization.
• Execute the company's Information Security and Compliance strategy.
• Lead the selection, deployment, and integration of security solutions in collaboration with technology partners.
• Reduce risks associated with cyber threats.
• Assist in governance, risk, and compliance efforts that identify, avert, or lessen threats to information assets.
• Demonstrate proficiency in scripting controls, process automation, managing AWS WAF rules, and applying CDK nag rules for preventive measures.
• Evaluate and enhance current security policies.
• Detect and mitigate vulnerabilities in applications and infrastructure.
• Head significant security initiatives and projects.
• Establish and integrate DevSec practices throughout the software development lifecycle.
• Utilize software to identify, resolve, and uphold security standards in AWS and Azure environments.
• Perform security assessments of cloud applications and APIs.
• Create controls for Cloud API, Cloud Application Security, and Cloud Security monitoring.
• Analyze log files and data outputs.
• Manage incoming issues using a ticketing and tracking system.
• Develop and maintain documentation for processes and deployments.
• Engineer and optimize cloud security solutions, including enrollment, monitoring, alerting, and sustaining an established security posture.
• Carry out additional responsibilities as assigned.
• Bachelor's degree in Computer Science, Business, Healthcare, or a related technology/security field.
• A minimum of seven to ten (7-10) years of experience in information security, focusing on designing, deploying, managing, monitoring, and evaluating advanced cybersecurity measures.
• Background in incident response, engineering, cloud architectures, tuning, etc., within a SaaS setting.
• Strong understanding of application architectures and security principles.
• Knowledge of secure coding practices and best practices.
• Proficiency in programming or scripting languages.
• Provide security training and awareness programs for developers and other staff.
• Document security policies and procedures effectively.
• Engage in proof of concept initiatives and other technical assessments of technologies, designs, and solutions, offering recommendations.
• Practical knowledge of automation and DevOps skills.
• Preferred candidates will have certifications in information security (such as Azure Fundamentals/AZ-900, CISSP, CISM, etc.) or equivalent work experience.
• Experience with risk analysis and assessment is advantageous.
• Familiarity with healthcare industry practices, HIPAA, and relevant data privacy regulations is preferred.
• Experience with security tools and frameworks like AWS WAF, CDK, and threat modeling methodologies.
• Familiarity with APIs and DevSec practices.
• Participate in, adhere to, and support compliance program objectives.
• Ability to consistently interact cooperatively and respectfully with colleagues.
• Remote work is not available to residents of Alaska, Hawaii, Maine, Mississippi, New Hampshire, New Mexico, North Dakota, Rhode Island, South Carolina, South Dakota, West Virginia, and Wyoming.
• Comprehensive industry-leading benefits for Health, Dental, and Vision insurance.
• 20 days of paid time off.
• 4 weeks of paid parental leave.
• 9 paid holidays.
• 401K company match of up to 5% with no vesting requirement.
• Adoption Assistance Program.
• Flexible Spending Account.
• Educational Assistance Plan and support for Professional Memberships.
• Referral Bonus Program offering up to $750!
DEMICON - AWS, Atlassian and monday.com Solution Partner
Le Bureau des Talents
NEC Software Solutions
LocalStack
Get handpicked remote jobs straight to your inbox weekly.