Technical Security Expert

Posted 5 days ago

This is a fully remote position, open to applicants in Costa Rica.

📋 Description

• Conduct Project Security Assessments and associated security evaluations for applications, infrastructure, and components involved in cloud migration.

• Oversee a portfolio of assessments in accordance with service-level agreements.

• Facilitate the submission, review, and monitoring of security-control concerns and exceptions.

• Elevate critical business issues and exception decisions to the Security Partner.

• Support thematic and risk-focused cloud migration security assessments.

• Validate AWS-native controls such as IAM, Security Groups/NACLs, KMS/encryption, WAF, CloudTrail/CloudWatch, GuardDuty/Config, and vulnerability scanning.

• Organize penetration-testing efforts as necessary.

• Recognize scenarios that necessitate the involvement of the Security Partner.

• Maintain assessment status, progress notes, and outstanding items within the organization's GRC platform.

• Offer regular status updates to application, project, and security stakeholders.

• Interpret and consistently enforce security policies, standards, and procedures.


⛳️ Requirements

• Bachelor’s degree in a relevant discipline or equivalent experience in information security, risk management, audit, or compliance.

• Proven cybersecurity experience with a technical background and/or experience in conducting security risk assessments or audits.

• Practical experience working in or evaluating AWS environments.

• Capability to review architecture diagrams and cloud configurations.

• Strong skills in presentation, data analysis, and problem-solving.

• Experience in interpreting and applying security policies, standards, and procedures.

• Familiarity with AWS IAM, VPC, Security Groups, KMS, WAF, CloudTrail, CloudWatch, GuardDuty, and AWS Config.

• Understanding of common cloud migration strategies and security considerations.

• Knowledge of ISO 27001, NIST, and COBIT frameworks.

• Awareness of risk analysis, assessment, treatment, and management methodologies.

• Ability to work autonomously with minimal supervision.

• Capacity to collaborate with stakeholders across various business functions.

• Excellent attention to detail, consistency, and efficiency.

• CompTIA Security+, AWS Certified Cloud Practitioner, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or CISSP are preferred but not mandatory.

• Experience with Archer GRC or similar tools is advantageous but not essential.


🏝️ Benefits

• Remote work opportunities.

• Support for work-life balance.

• Customizable career development plans.

• Access to training programs.

• Multidisciplinary and multicultural team environment.

• Engagement in high-impact projects with leading industry clients.

• A fair recruitment process that emphasizes inclusion and diversity.

People also viewed

Cloudiax6 hours ago

Information Security, Compliance & Internal Controls Manager – ISO 27001

Anywhere in the WorldFull-timeCybersecurity / Security Engineer
ApplyView job
BLUVIT GmbH14 hours ago

Information Security Consultant – M/F/D

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer€40k – €70k/year
ApplyView job
Eli Lilly and Company16 hours ago

Enterprise AI Security Advisor

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$129k – $253k/year
ApplyView job
S + S Regeltechnik GmbH19 hours ago

Senior IT Security Expert (m/f/d)

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
IntellectEU19 hours ago

Senior Security Engineer

LU flagLuxembourg OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
BCD Travel19 hours ago

Senior Information Security Auditor

CO flagColombia, +2 more countriesFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers