Cloud Security Engineer, DevSecOps Engineer

🕒 il y a 3 mois

🗽 New York – Distant

infoinfo

💵 $140 000 - $170 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

infoinfo

👻 Score fantôme 10%

infoinfo

🗣️🇺🇸🇬🇧 Anglais requis

AWS

Azure

Cloud

Cyber Security

Python

Terraform

Vault

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Get Well

Get Well

201 - 500 employés

Fondée en 2001

🏥 Santé

⚕️ Assurance santé

☁️ SaaS

Healthcare • Healthcare Insurance • SaaS

Get Well est une plateforme numérique de santé globale conçue pour des solutions de santé d'entreprise, axée sur l'amélioration de l'engagement et de l'expérience des patients à travers divers points de contact dans le parcours de soins. L'entreprise propose une suite d'outils robustes, tel que Get Well 360, visant à activer, engager et fidéliser les patients non seulement au point de soin, mais également au sein de leurs communautés. Les solutions de Get Well ont pour but d'améliorer l'expérience patient, de soutenir l'équité en santé et de transformer la prestation de soins pour divers groupes, y compris les systèmes de santé, les gouvernements, et les prestataires internationaux. La plateforme offre des soins interactifs aux patients, des expériences en chambres intelligentes et des solutions de planification de santé, tout en garantissant des standards élevés de sécurité et d'interopérabilité. Avec un accent sur l'activation holistique du patient et les soins, Get Well est engagé à permettre aux individus et aux organisations de santé de prospérer.

Description

• Review, improve, and help design secure architectures across AWS and Microsoft Azure environments. • Implement and maintain cloud security controls related to IAM, network segmentation, encryption, logging, key management, backups, secure configuration, and access control. • Identify and remediate cloud misconfigurations, excessive permissions, insecure storage, public exposure, weak logging, and missing security controls. • Partner with engineering and infrastructure teams to integrate security checks and DevSecOps practices into CI/CD workflows. • Operate and improve vulnerability management processes, including scanning, validation, prioritization, remediation tracking, reporting, and exception review. • Use security monitoring and telemetry platforms to support alert triage, endpoint visibility, log review, investigation, and detection improvement. • Support compliance monitoring, evidence collection, control mapping, and audit readiness activities using Vanta and Compyl. • Map technical controls to compliance requirements, internal policies, customer security expectations, and audit evidence needs. • Participate in threat modeling and security reviews for new applications, infrastructure changes, cloud deployments, and third-party integrations. • Support incident response activities, including alert investigation, log analysis, evidence gathering, containment recommendations, and post-incident improvements. • Improve identity and access management practices, including least privilege, MFA, conditional access, service principals, role reviews, privileged access controls, and access certification support. • Create and maintain security documentation, cloud security standards, control narratives, runbooks, remediation procedures, and architecture diagrams. • Support implementation and maintenance of security benchmarks and frameworks such as CIS, NIST, SOC 2, ISO 27001, HIPAA, FedRAMP Moderate, and HITRUST. • Translate security and compliance requirements into practical technical tasks for engineering, IT, and infrastructure teams.

🎯 Exigences

• 3–5 years of experience in cybersecurity, cloud security, DevOps, infrastructure, systems administration, security operations, compliance operations, or a related technical role. • Hands-on experience with AWS and/or Microsoft Azure, with the ability to work across both platforms. • Working knowledge of cloud security concepts, including IAM, network controls, encryption, logging, monitoring, workload security, and shared responsibility models. • Experience with common AWS security services such as IAM, CloudTrail, CloudWatch, GuardDuty, Security Hub, KMS, Config, S3 security, or VPC controls. • Experience with common Azure security services such as Microsoft Entra ID, Azure Policy, Defender for Cloud, Key Vault, Network Security Groups, Log Analytics, Sentinel, or related services. • Experience with vulnerability management tools such as Rapid7 InsightVM, Nexpose, InsightCloudSec, InsightIDR, or similar platforms. • Experience with SIEM, endpoint monitoring, log analysis, or security telemetry tools such as Wazuh, Rapid7 InsightIDR, Microsoft Sentinel, or similar platforms. • Familiarity with compliance automation, GRC, or audit readiness platforms such as Vanta, Compyl, or similar tools. • Ability to interpret vulnerability, cloud posture, endpoint, and compliance findings and prioritize remediation based on risk. • Working knowledge of secure configuration, patch management, asset inventory, evidence collection, vulnerability remediation, and exception management workflows. • Basic to intermediate scripting or automation experience using Python, PowerShell, Bash, Terraform, or similar tools. • Strong communication and documentation skills, including the ability to explain technical risks, write clear procedures, and recommend practical remediation options.

🏖️ Avantages

• Exceptionally generous paid time away from work • A variety of paid leave programs • Savings opportunities with 401(k) and incentive plans • Internal education programs • Full array of health benefits • Fitness reimbursement • Cell phone subsidy • Casual offices with snacks and drinks • Peer recognition programs • Health advocacy and employee assistance programs • Pet insurance

Postuler Maintenant

Emplois Similaires

🕒 il y a 3 mois

Bitwarden

51 - 200

🔒 Cybersecurity

☁️ SaaS

🏢 Entreprise

IT Security Administrator supporting Bitwarden’s password-management and identity-security products. Managing IT support, access controls, SOC/SIEM investigations, endpoint protection, and vulnerability management remotely.

🇺🇸 États-Unis – Télétravail

💵 $115 000 - $145 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 3 mois

GuidePoint Security

201 - 500

💼 Conseil

🏥 Santé

📦 Logistique

Strategic Security Advisor leveraging deep expertise to develop consultative relationships with customer leaders. Helping organizations mitigate their most critical cybersecurity challenges and optimize security posture.

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🕒 il y a 3 mois

GuidePoint Security

201 - 500

💼 Conseil

🏥 Santé

📦 Logistique

Strategic Security Advisor at GuidePoint Security developing consultative relationships with cybersecurity clients. Leveraging expertise to address security challenges and drive business outcomes in New York City.

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🕒 il y a 3 mois

The Hello Team

1001 - 5000

🏥 Santé

🛡️ Assurance

📦 Logistique

Senior Cybersecurity & Compliance Consultant leading assessments and guiding clients on compliance frameworks in healthcare. Collaborating with client teams to strengthen cybersecurity programs.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cyber Security

🕒 il y a 3 mois

Aimpoint Digital

51 - 200

🤖 Intelligence artificielle

💼 Conseil

Lead AI Security Architect at Aimpoint Digital designing secure AI security architectures for enterprise implementations. Transforming risk management in generative AI across various industries.

🗣️🇺🇸🇬🇧 Anglais requis