Tech Stack
AnsibleAWSCloudDockerKubernetesTerraform
About the role
- Work with Security Operations, engineering and other teams to implement new security solutions and ensure existing processes and tools run smoothly.
- Hands-on role to help shape and develop new cloud infrastructure.
- Help implement, maintain and develop operational playbooks for 3rd party security services (e.g., CrowdStrike, Okta, Wiz, SumoLogic, Palo Alto Networks, CyberArk).
- Detect and respond to company-wide security incidents when needed.
- Partner with DevOps and Infrastructure teams to create a more defensible and resilient architecture.
- Develop security incident response playbooks and processes.
- Participate in the team’s on-call rotation for ad-hoc requests and operational troubleshooting.
- Identify gaps in current architecture and design or acquire solutions to close those gaps.
- Report to the Director of Security Operations (who reports to the CISO).
Requirements
- 5+ years experience in a security operational or analyst role preferably in a cloud native or hybrid cloud organization.
- Experience with managing AWS IAM policies at scale to enforce least privilege is a plus.
- Familiarity with infrastructure as code (IaC) concepts and tools such as Terraform or Ansible, with a focus on security best practices.
- Experience in implementing and managing containerized applications using Docker and orchestration platforms like Kubernetes, with security considerations in mind.
- Experience security Active Directory and Windows Servers is a plus.
- Previous experience pen-testing or experience with CTF / Red,Blue or Purples Teams is a plus.
- High level software development skills; basic scripting, functional programming experience, familiarity with code repositories and deploy pipelines, etc.
- Familiarity with AWS cloud security best practices and DevSecOps skillset.