
Multi-Cloud Security, Compliance Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Develop and implement a cohesive security framework across GCP and OCI, encompassing guardrails, standard configurations, and fundamental security controls.
• Oversee identity federation between cloud platforms and establish least-privilege IAM policies along with role structures.
• Set up and manage centralized security monitoring tools, such as GCP Security Command Center and OCI Cloud Guard, while incorporating logs and alerts into enterprise monitoring systems.
• Ensure that cloud deployments comply with FedRAMP High, FISMA, and NIST 800-53 standards, collaborating with governance and audit teams.
• Detect vulnerabilities, policy violations, and architectural risks, and drive the remediation process.
• Implement and assess the security posture of Oracle Cloud Infrastructure environments for a federal health client.
• Collaborate with system administrators, application teams, and project teams to construct, operate, and reinforce cloud workloads.
• Be responsible for OCI-native security controls that safeguard cloud workloads.
• Contribute as part of a cloud operations and migration team.
• A bachelor's degree in computer science, engineering, information systems, or a closely related technical field, or equivalent experience.
• More than 5 years of experience in cloud security engineering, enterprise security architecture, or compliance programs.
• At least 3 years of experience leading technical teams, including the development of technical standards for cloud and on-premises environments and providing technical guidance.
• In-depth understanding of GCP and OCI security services, IAM models, encryption, network security, and monitoring architecture.
• Practical experience in configuring cloud security tools such as Security Command Center, IAM federation, logging pipelines, and vulnerability management.
• Familiarity with federal compliance frameworks like NIST 800-53, FedRAMP, and FISMA, as well as zero-trust architectures.
• A current security or SecOps certification from a leading cloud provider (Google, Oracle, AWS, or Azure).
• Capability to obtain and maintain a federal background investigation (Public Trust).
• Candidates must be U.S. Citizens and have resided in the United States for at least 3 years.
• Selected applicants will undergo a Security Investigation and may need to fulfill requirements for access to Protected and/or Classified Information.
• Preferred: Active Public Trust.
• Preferred: Experience in supporting federal government programs, particularly in federal health.
• Preferred: Knowledge of Assured Workloads landing zones and GCP VPC Service Controls.
• Preferred: Expertise in container security for GKE environments.
• Preferred: Skills in translating CIS Benchmarks into automated cloud guardrails, and securing infrastructure-as-code and CI/CD pipelines.
• Preferred: Experience in database security and key management using OCI Data Safe, OCI Vault, and Cloud KMS.
• Preferred: Proficiency in threat hunting and vulnerability management utilizing SIEM platforms and cloud-native scanning services.
• Medical, Vision, Dental.
• Paid Vacation & Sick Time.
• Paid Federal Holidays.
• 401k Retirement Plan with 100% Company Matching.
• Employer Paid Life Insurance.
• Continued Education Assistance.
• Employee Assistance Program (EAP).
• Commuter Benefits Program.
• Health Savings Account (HSA).
biBerk Business Insurance
Doppel
PingWind Inc. (SDVOSB)
The Standard
Get handpicked remote jobs straight to your inbox weekly.