
Cloud Security Developer
Nesto Group7 months ago
Remote, CanadaSenior
Responsibilities
- Implement and maintain security controls for cloud infrastructure and applications.
- Discover, remediate, and validate security issues across cloud environments.
- Perform security-focused architecture and design reviews and provide actionable recommendations.
- Build, deploy, and manage security tools including WAF, IDS/IPS, workload protection, GCP Command Center, and Azure Security Center.
- Improve security and compliance in CI/CD pipelines and deployment processes.
- Automate infrastructure provisioning and deployment using Infrastructure as Code tools such as Terraform and Pulumi.
- Provision cloud access and maintain least-privilege controls.
- Support incident detection and response by improving observability and alerting.
- Support audits and first-party security questionnaires.
- Conduct and oversee security assessments and threat modeling exercises.
- Implement security controls within Kubernetes and build DevSecOps tools and integrations.
Requirements
- 5+ years of experience working on infrastructure and/or security teams.
- 5+ years of development experience, ideally with GoLang or TypeScript/JavaScript.
- Knowledge of common web application vulnerabilities and the OWASP Top 10.
- Ability to analyze and act on results from DAST and SAST tools such as Tenable and Snyk.
- Experience with DevSecOps principles and CI/CD security testing using GitHub Actions, Argo CD, or Azure DevOps.
- Experience deploying and customizing vulnerability scanners, static analyzers, WAFs, IDS/IPS, and endpoint security monitoring tools.
- Strong cloud and network security knowledge, including in-depth Kubernetes experience.
- Experience with GCP services such as Security Command Center, GKE, Cloud IDS, Cloud Armor, and Secrets Manager.
- Experience with Azure services such as Security Center, Azure PaaS App Services, VMs, Azure SQL, Front Door, and Key Vault.
- Experience writing Infrastructure as Code with Terraform, Pulumi, and Helm.
- Knowledge of CIS, NIST, and MITRE ATT&CK security frameworks and benchmarks.
- Understanding of IAM principles and cloud-native IAM solutions.
- Experience monitoring and managing security posture using outputs from security tooling.
- Bilingual English and French communication skills.
- Passion for continuous learning and knowledge sharing.
Benefits
- Hybrid work model.
- Premium benefits plan fully paid by nesto, including comprehensive insurance.
- Unlimited access to telemedicine and mental health services for employees and their families.
- Four weeks of vacation.
- Access to tools and resources needed to perform the role.
- Opportunities for accelerated professional growth and exposure to production systems.