Cloud Security Engineer

November 14

Apply Now
Logo of Appspace

Appspace

Enterprise • Productivity • SaaS

Appspace is a workplace experience platform designed to enhance communication and management within physical office spaces. It offers a comprehensive suite of tools including digital signage, space reservation, employee apps, intranet solutions, and visitor management, all centralized in a single platform. Appspace integrates with popular workplace tools like Microsoft Teams and Google, allowing users to manage employee communications, office spaces, and workplace technology seamlessly. The platform is designed to improve the office experience by connecting people, places, and spaces, making it ideal for hybrid work environments and frontline workers. Appspace aims to consolidate tech stacks while ensuring easy management and communication within organizations.

201 - 500 employees

🏢 Enterprise

⚡ Productivity

☁️ SaaS

💰 Private Equity Round on 2019-12

📋 Description

• Cloud Security Operations: Design, implement, and optimize robust cloud security architectures to enhance, build, monitor and address all security alerts from our SIEM and other security systems. This is an operational role whereby you will be available M-F 8am-5pm EDT and on-call shifts on evenings and weekends. • Perform penetration testing activities on Web Applications, Cloud Environments and Mobile Applications using black-box testing tools, in-depth penetration test (using shell scripts and manual testing) techniques, DAST & SAST tools. The candidate should be familiar with black box, gray box and white box testing techniques along with red teaming skills. • Understand the application architectural components, business purpose of the application and code at high level. The resource will be responsible for assisting in architecting secure coding practices. • Network Security Expertise: Your network security and cloud security expertise will be required to respond to customer questionnaires, customer calls and create artifacts including network diagrams, architecture diagram, data flow diagrams and other artifacts to support customer requests. Strong written skills will be required here and attention to detail. • Firewall & WAF Management: Configure, manage, and troubleshoot cloud-native firewalls (e.g., GCP Cloud Firewall, Azure Firewall, AWS Security Groups/NACLs) and Web Application Firewalls (WAFs) to protect web applications from common vulnerabilities and attacks. The candidate will demonstrate past hands-on network experience in managing complex layer-4 to layer-7 rules. • SIEM Integration & Optimization: As a Level-2 Security Operations support team member, you will review all security alerts and resolve these alerts in a timely manner. You will work with our current Security Operations team to expand on our current alerting and reporting capabilities to enhance visibility across our attack surface. Powershell or similar scripting skills will be required. • SaaS Security Best Practices: Provide expert guidance on securing SaaS applications, including identity and access management (IAM), data encryption, API security, and secure configuration baselines. You will be responsible for leading and managing all firewall reviews, access reviews, system reviews and risk assessments. • Compliance & Governance: Lead and contribute to compliance initiatives, ensuring cloud environments adhere to industry regulations and frameworks such as GDPR, SOC 2, ISO 27001, CMMC and CSA STAR. Conduct security assessments and gap analyses. • Customer Engagement & Presentation: Act as a trusted advisor to clients, effectively communicating complex technical security concepts to both technical and non-technical stakeholders. Deliver engaging presentations, attend client workshops, and build strong client relationships. • Incident Response & Remediation: Support incident response activities by providing expert analysis and remediation strategies for cloud security incidents. This will extend to leading Incident Response Plan initiatives and creating documentation for all parties to follow specific plans. • Vulnerability Management and Penetration Testing: Responsible for running the comprehensive vulnerability management and penetration testing program. The candidate will be responsible for reviewing, interpreting and advising operations teams on how best to remediate identified vulnerabilities and work with the operations to bring all findings to a close. The candidate will be responsible for working with our software development teams to review, manage and collaborate on the remediation of open OWASP findings. • Stay Ahead of the Curve: Continuously research and evaluate emerging cloud security threats, technologies, and best practices.

🎯 Requirements

• 10+ years of progressive experience in cybersecurity, with at least 4+ years focused on cloud security engineering. • Strong organizational, administrative, project management and communication skills will be required to manage the overall security program. • Deep hands-on experience with Google Cloud Platform (GCP) security services and best practices is essential and managing cloud security alerts in our SIEM. • Strong practical experience with Microsoft Azure and Amazon Web Services (AWS) security services. • Proven expertise in securing SaaS applications and understanding of common SaaS security challenges. • Extensive experience with scripting skills, network security principles and implementation in cloud environments. • Demonstrable experience with firewall management (cloud-native and third-party) and Web Application Firewalls (WAFs). • Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, Google Chronicle Security Operations, Datadog, etc) including sink creations, log ingestion, rule creation, and dashboarding. • Strong understanding of cloud identity and access management (IAM) principles and best practices across multi-cloud. • Solid knowledge of compliance frameworks and regulations (e.g., GDPR, SOC 2, ISO 27001, CMMC). • Excellent communication, presentation, and interpersonal skills, with the ability to articulate complex security concepts clearly and concisely to diverse audiences. • Ability to work independently and as part of a team in a fast-paced, client-facing environment. • Problem-solving mindset with a strong attention to detail. • CISSP is required. Azure and Google certifications are highly desirable. • OSWE or OSCP is preferred.

🏖️ Benefits

• Generous PTO • Flexible work schedules • Remote work opportunities • Paid company holidays • Appspace Quiet Fridays (No non-essential internal meetings scheduled) • A casual dress work environment

Apply Now

Similar Jobs

November 14

AWS Infrastructure and Security Engineer focusing on building and securing multi-account landing zones using Infrastructure as Code. In-depth understanding of AWS and zero trust security best practices for healthcare data.

🇺🇸 United States – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

AWS

ITSM

November 14

Interface Systems

501 - 1000

🔐 Security

☁️ SaaS

📡 Telecommunications

Sr. Coordinator for Security Installation Success at Interface Systems ensuring successful installations by providing expert support to Field Engineers and managing multiple projects.

🇺🇸 United States – Remote

💵 $58k - $62k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

November 14

Smiths Group plc

10,000+ employees

⚡ Energy

🔐 Security

Sales Manager driving regional sales growth for Urban Security at Smiths Detection. Responsible for prospecting, channel management, and exceeding annual booking targets.

🇺🇸 United States – Remote

💵 $73.4k - $165.1k / year

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

November 13

Luxury Presence

201 - 500

🏠 Real Estate

Staff Security Engineer securing web, mobile, and AI-driven services at Luxury Presence. Leading security automation and best practices for a rapidly growing proptech company.

🇺🇸 United States – Remote

💵 $200k - $250k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

November 13

PartnerOne

201 - 500

🏢 Enterprise

☁️ SaaS

💳 Fintech

Enterprise sales professional at Partner One Capital focusing on cybersecurity market expansion and customer acquisition. Delivering significant revenue and managing a qualified sales pipeline.

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com