Senior Cloud Security Engineer – FedRamp

🕒 il y a 1 mois

🤠 Texas – Distant

info

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Zimperium

Zimperium

201 - 500 employés

Fondée en 2010

🔒 Cybersecurity

🏢 Entreprise

☁️ SaaS

💰 €12 000 000 Venture Round en 2018-11

Cybersecurity • Enterprise • SaaS

Zimperium est une entreprise de premier plan dans le domaine de la sécurité mobile, spécialisée dans la protection des terminaux mobiles et des applications. Elle propose des solutions avancées pour protéger les appareils mobiles et les applications, permettant aux entreprises de sécuriser leurs endpoints mobiles et d'assurer un accès sécurisé aux données sensibles et aux systèmes. Les plateformes de Zimperium s'intègrent dans divers environnements, y compris des configurations cloud, on-premises, et en air-gap, garantissant une sécurité continue et persistante pendant le développement et l'exécution. L'entreprise est reconnue pour son focus unique sur la sécurité mobile, offrant des outils qui aident à prévenir les pertes de données, la fraude, et les violations réglementaires dans les applications mobiles.

Description

• Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments. • Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale. • Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters. • Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls. • Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications. • Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable "shift-left" security practices. • Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services. • Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase. • Participate in a rotating on-call schedule to address security incidents and operational issues promptly. • Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership. • Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.

🎯 Exigences

• 8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment. • Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation. • Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI. • Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs. • Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes. • Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls. • Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services. • Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines. • Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager). • Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations. • Proven ability to operate independently and take ownership of critical responsibilities.

🏖️ Avantages

• Health insurance • Remote work options

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

DuckDuckGo

51 - 200

🔒 Cybersecurity

Senior Web Security Engineer ensuring security capabilities during rapid product development at DuckDuckGo. Conduct browser audits and manage application security scanning infrastructure.

🇺🇸 États-Unis – Télétravail

💵 $178 500 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Tenable

1001 - 5000

🔒 Cybersecurity

☁️ SaaS

🏢 Entreprise

Security Consultant implementing Tenable’s Exposure Management solutions to manage cyber risks. Onboarding Tenable technologies to deliver customized solutions and ensuring vulnerability mitigation.

🇺🇸 États-Unis – Télétravail

💵 $108 500 - $144 500 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Upstart

1001 - 5000

Security Engineer II at Upstart focusing on security controls for cloud and infrastructure systems. Partnering with engineering teams to reduce risks and improve systems' security.

🇺🇸 États-Unis – Télétravail

💵 $134 100 - $185 600 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

GuidePoint Security

201 - 500

🔒 Cybersecurity

CNAPP Cloud Security Engineer providing delivery services for cloud security tools and technologies. Advising and implementing solutions for customers across multiple sectors.

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Urrly

1 - 10

🎯 Recrutement

⚕️ Assurance santé

🤖 Intelligence artificielle

Cybersecurity Compliance Consultant leading CMMC policy development for DoD contractors. Managing compliance sprints and client documentation for audit readiness in a fully remote setup.

🇺🇸 États-Unis – Télétravail

💵 $100 000 - $125 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis