Salary
💰 $102,000 - $138,000 per year
Tech Stack
AWSAzureCloudCyber SecurityFirewallsSplunk
About the role
- Implementing Security Controls: Developing and applying security measures to protect AWS workloads and infrastructure.
- Conducting Security Assessments: Regularly evaluating the security posture of AWS environments to identify vulnerabilities using AWS security services such as GuardDuty, CloudWatch, etc.
- Responding to Security Incidents: Investigating and remediating security breaches and incidents to minimize damage and prevent future occurrences.
- Compliance with Regulations: Ensuring adherence to security regulations and industry standards, such as NIST 800-171.
- Educating Stakeholders: Sharing the best practices for cloud security with other stakeholders within the organization.
- Collaborating with the Lighthouse Information Security and compliance team to develop Genesis global Cloud security architecture and maturity standards.
- Evaluate and respond to alerts and events from security tools, tune tool configuration to minimize false positives, and develop event response documentation and processes for SOC response and escalation.
- Work with Cloud Operations teams to define and implement security standards and best practices.
- Develop and maintain documentation and diagrams for security tools, system environments, and cloud operations.
- Act as subject matter expert (SME) for security tools, applications and processes, including AWS Security tools, Palo Alto firewall, Qualys vulnerability management.
- Help engineering productivity and other teams solve cyber security problems in ways that comply with standards and materially contribute to system security.
- Monitor cloud environments for security threats; conduct risk assessments and vulnerability scans.
- Develop and enforce cloud security policies; manage identity and access controls in cloud platforms.
- Collaborate with DevOps and engineering teams; respond to security incidents and perform root cause analysis.
- Ensure compliance with security standards and regulations; automate security controls and processes.
- Design and implement secure cloud architectures; implement and automate DISA STIG and SCAP standards across Windows, Red Hat, PanOS, and other applications.
- Maintain documentation and participate in cross-functional security initiatives.
- Travel Required: Less than 10%
Requirements
- Bachelor’s degree in computer science or related field or equivalent number of year experience
- 5+ years of experience in cloud security or cybersecurity
- 3+ years of related experience (listed under Job Qualifications)
- Must have hands on experience with AWS security tools
- Experience with security tools like CloudTrail, GuardDuty, or Splunk (SIEM)
- Skills: Amazon Web Services (AWS) Security, Cloud Security, Vulnerability Assessments
- Knowledge of network security and firewalls
- Understanding of compliance frameworks (e.g., NIST 800-171)
- Experience implementing and automating DISA STIG and SCAP standards across Windows, Red Hat, PanOS, and other applications
- Strong analytical and problem-solving skills
- Excellent communication and teamwork abilities
- Relevant certifications (e.g., CCSP, AWS Security Specialty) are a plus
- Public Trust/Other Required: SSBI (T5)
- US Citizenship Required: No