FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Tech Stack
Tools & technologiesAzureCloudFirewallsGoogle Cloud PlatformJavaScriptKubernetesSQLTerraformTypeScriptVault
About the role
Key responsibilities & impact- Implement and maintain robust security controls to protect our cloud infrastructure and applications.
- Discover, remediate, and validate security issues across cloud infrastructure.
- Perform architectural/design reviews through a security lens and provide timely, actionable requirements and recommendations.
- Collaborate with security leadership, compliance, and engineering teams to execute security strategies.
- Build, deploy, and manage security tools such as WAF, IDS/IPS, workload protection, GCP Command Center, and Azure Security Center, etc.
- Propose and contribute to security and compliance improvements for nesto CI/CD pipelines and deployment processes.
- Automate infrastructure provisioning and deployment processes using Infrastructure as Code (IaC) tools like Terraform or Pulumi.
- Design and operate scalable processes to provision cloud access and maintain least privilege.
- Participate in and support the incident detection and response process by enhancing observability and alerting and assisting the incident response team.
- Self-organize and prioritize activities independently.
- Support audits and first-party security questionnaires.
- Conduct and oversee security assessments and threat modeling exercises.
- Implement security controls within Kubernetes.
- Build DevSecOps tools/integrations.
Requirements
What you’ll need- 5+ years of experience working on a team focused on infrastructure and/or security.
- 5+ years of development experience (ideally GoLang, TypeScript/JS).
- Knowledge of common web application vulnerabilities and the OWASP Top 10 framework.
- The ability to analyze and act on results from DAST and SAST tools (e.g., Tenable, Snyk).
- Skilled in DevSecOps principles and familiarity with CI/CD pipelines (GitHub Actions, Argo CD, Azure DevOps) to perform automated security testing.
- Experience deploying and customizing security tools to address threats and lower risk, including vulnerability scanners, static analyzers, web application firewalls (WAFs), intrusion detection/prevention systems (IDS/IPS), and endpoint security monitoring.
- A comprehensive grasp of cloud and network security, including an in-depth understanding of Kubernetes.
- Experience in GCP specifically with one or more of the following services: Security Command Center, GKE, Cloud IDS, Cloud Armor, and Secrets Manager.
- Experience in Azure specifically with one or more of the following services: Security Center, Azure PaaS App Services, VMs, Azure SQL, Front Door, and Key Vault.
- Experience writing infrastructure-as-code using tooling such as Terraform, Pulumi, and Helm.
- Knowledge of common security-related frameworks and benchmarks like CIS, NIST, and MITRE ATT&CK.
- An understanding of identity and access management (IAM) principles and cloud-native IAM solutions.
- Passionate about constant learning and sharing knowledge with others.
- Bilingual (English & French).
Benefits
Comp & perks- Premium benefits plan fully paid by nesto, including comprehensive insurance and unlimited access to telemedicine and mental health services for you and your family.
- 4 weeks of vacation to ensure you stay at peak performance.
- Access to the resources and tech you need to execute without friction.
- The environment that makes you productive and enables teamwork (Hybrid model).
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
GoLangTypeScriptInfrastructure as CodeTerraformPulumiKubernetesDevSecOpsCI/CDvulnerability scanningsecurity assessments
Soft Skills
self-organizationprioritizationcollaborationcommunicationanalytical skillsproblem-solvingknowledge sharingindependenceleadershipadaptability
