
Technical Security Expert
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in Costa Rica.
• Conduct Project Security Assessments and associated security evaluations for applications, infrastructure, and components involved in cloud migration.
• Oversee a portfolio of assessments in accordance with service-level agreements.
• Facilitate the submission, review, and monitoring of security-control concerns and exceptions.
• Elevate critical business issues and exception decisions to the Security Partner.
• Support thematic and risk-focused cloud migration security assessments.
• Validate AWS-native controls such as IAM, Security Groups/NACLs, KMS/encryption, WAF, CloudTrail/CloudWatch, GuardDuty/Config, and vulnerability scanning.
• Organize penetration-testing efforts as necessary.
• Recognize scenarios that necessitate the involvement of the Security Partner.
• Maintain assessment status, progress notes, and outstanding items within the organization's GRC platform.
• Offer regular status updates to application, project, and security stakeholders.
• Interpret and consistently enforce security policies, standards, and procedures.
• Bachelor’s degree in a relevant discipline or equivalent experience in information security, risk management, audit, or compliance.
• Proven cybersecurity experience with a technical background and/or experience in conducting security risk assessments or audits.
• Practical experience working in or evaluating AWS environments.
• Capability to review architecture diagrams and cloud configurations.
• Strong skills in presentation, data analysis, and problem-solving.
• Experience in interpreting and applying security policies, standards, and procedures.
• Familiarity with AWS IAM, VPC, Security Groups, KMS, WAF, CloudTrail, CloudWatch, GuardDuty, and AWS Config.
• Understanding of common cloud migration strategies and security considerations.
• Knowledge of ISO 27001, NIST, and COBIT frameworks.
• Awareness of risk analysis, assessment, treatment, and management methodologies.
• Ability to work autonomously with minimal supervision.
• Capacity to collaborate with stakeholders across various business functions.
• Excellent attention to detail, consistency, and efficiency.
• CompTIA Security+, AWS Certified Cloud Practitioner, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or CISSP are preferred but not mandatory.
• Experience with Archer GRC or similar tools is advantageous but not essential.
• Remote work opportunities.
• Support for work-life balance.
• Customizable career development plans.
• Access to training programs.
• Multidisciplinary and multicultural team environment.
• Engagement in high-impact projects with leading industry clients.
• A fair recruitment process that emphasizes inclusion and diversity.
Cloudiax
BLUVIT GmbH
Eli Lilly and Company
S + S Regeltechnik GmbH
Get handpicked remote jobs straight to your inbox weekly.