About the Role
The role involves designing and maintaining security controls in cloud infrastructure, improving detection systems, and responding to security incidents with automation and tooling.
Responsibilities
- Design and deploy security measures within cloud platforms
- Monitor for suspicious activity and potential breaches
- Respond to security incidents using established protocols
- Improve threat detection through automation and tool integration
- Maintain and update security monitoring systems
- Collaborate with engineering teams on secure configurations
- Implement identity and access management safeguards
- Support incident investigations and root cause analysis
- Develop scripts to automate security workflows
- Enforce compliance with security policies and standards
- Conduct regular security assessments and audits
- Assist in vulnerability management processes
- Integrate security tools into CI/CD pipelines
- Maintain up-to-date knowledge of emerging threats
- Document security procedures and configurations
- Optimize logging and alerting mechanisms
- Support secure deployment of infrastructure as code
- Evaluate third-party security risks
- Participate in on-call incident response rotations
- Enhance network security controls in cloud environments
- Promote security best practices across teams
- Troubleshoot security tooling issues
- Assist in penetration testing efforts
- Update security playbooks based on incident learnings
- Ensure encryption standards are properly implemented
Nice to Have
- Certifications such as CISSP, CISM, or CCSP
- Experience with Kubernetes security
- Background in red teaming or penetration testing
- Familiarity with cloud-native application architecture
- Knowledge of serverless security models
- Experience with security orchestration platforms
- Prior work in fast-growing technology companies
- Contributions to open-source security tools
- Published research or talks in security domains
- Advanced scripting or development experience
Compensation
Competitive salary and benefits package
Work Arrangement
Hybrid or remote options available
Team
Collaborative security team focused on proactive threat management
Tech Stack
- AWS, GCP, or Azure cloud platforms
- SIEM tools such as Splunk or Datadog
- Infrastructure as code with Terraform or CloudFormation
- Container orchestration via Kubernetes
- CI/CD pipelines with GitHub Actions or similar
- Endpoint detection and response systems
- Secrets management tools
- Logging frameworks like Fluentd or Loki
Our Commitment to Security
- We maintain a proactive security posture across all systems
- Security is integrated into development and operations
- Regular audits and assessments ensure compliance
- Team members are empowered to report concerns
- Continuous improvement drives our security roadmap
Available for qualified candidates