Tech Stack
AWSCloudKubernetesPythonRust
About the role
- Design cloud solutions following a secure-by-default approach.
- Implement and manage security controls and best practices in AWS and K8s (EKS) environments.
- Conduct threat modeling, code review and penetration testing on AWS infrastructure and cloud based applications to proactively identify vulnerabilities.
- Configure and manage Web Application Firewall rules.
- Automate security checks and repetitive tasks to enforce protection at scale.
- Collaborate with Platform and Infrastructure teams to ensure robust protection against threats and security-by-default.
- Participate in investigation and response of security alerts.
- Collaborate on all the activities of the Security Engineering team.
Requirements
- Hands-on experience in AWS secure design and implementation.
- Hands-on experience with K8s (EKS) security.
- Hands-on experience with Web Application Firewall configuration (e.g., Cloudflare).
- Knowledge of Cloud Control Frameworks (e.g., CIS, CSA, NIST).
- Proficiency on using CI/CD systems and Infrastructure as Code (e.g., Python Pulumi).
- Proficiency in scripting and programming languages (e.g., Python, Rust).
- Availability in on-call shifts to guarantee 24x7 security support.
- Strong English communication skills.
- Self-motivated and proactive, with strong problem-solving skills and accountability for deliverables.
- Experience working in an Agile environment.
- Nice-to-have: Relevant certifications such as CKA, CKS, OSCP, paCSP, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate/Professional.
- Nice-to-have: Hands-on experience with SIEM and SOAR platforms.
- Nice-to-have: Web and mobile application security knowledge.
- Nice-to-have: Hands-on experience with SAST/DAST/SCA platforms and tools.
- Nice-to-have: Experience in security research, bug bounty programs or CTFs.