Nesto Group

Cloud Security Developer

Nesto Group
Apply
7 months ago
Remote, CanadaSenior

Responsibilities

  • Implement and maintain security controls for cloud infrastructure and applications.
  • Discover, remediate, and validate security issues across cloud environments.
  • Perform security-focused architecture and design reviews and provide actionable recommendations.
  • Build, deploy, and manage security tools including WAF, IDS/IPS, workload protection, GCP Command Center, and Azure Security Center.
  • Improve security and compliance in CI/CD pipelines and deployment processes.
  • Automate infrastructure provisioning and deployment using Infrastructure as Code tools such as Terraform and Pulumi.
  • Provision cloud access and maintain least-privilege controls.
  • Support incident detection and response by improving observability and alerting.
  • Support audits and first-party security questionnaires.
  • Conduct and oversee security assessments and threat modeling exercises.
  • Implement security controls within Kubernetes and build DevSecOps tools and integrations.

Requirements

  • 5+ years of experience working on infrastructure and/or security teams.
  • 5+ years of development experience, ideally with GoLang or TypeScript/JavaScript.
  • Knowledge of common web application vulnerabilities and the OWASP Top 10.
  • Ability to analyze and act on results from DAST and SAST tools such as Tenable and Snyk.
  • Experience with DevSecOps principles and CI/CD security testing using GitHub Actions, Argo CD, or Azure DevOps.
  • Experience deploying and customizing vulnerability scanners, static analyzers, WAFs, IDS/IPS, and endpoint security monitoring tools.
  • Strong cloud and network security knowledge, including in-depth Kubernetes experience.
  • Experience with GCP services such as Security Command Center, GKE, Cloud IDS, Cloud Armor, and Secrets Manager.
  • Experience with Azure services such as Security Center, Azure PaaS App Services, VMs, Azure SQL, Front Door, and Key Vault.
  • Experience writing Infrastructure as Code with Terraform, Pulumi, and Helm.
  • Knowledge of CIS, NIST, and MITRE ATT&CK security frameworks and benchmarks.
  • Understanding of IAM principles and cloud-native IAM solutions.
  • Experience monitoring and managing security posture using outputs from security tooling.
  • Bilingual English and French communication skills.
  • Passion for continuous learning and knowledge sharing.

Benefits

  • Hybrid work model.
  • Premium benefits plan fully paid by nesto, including comprehensive insurance.
  • Unlimited access to telemedicine and mental health services for employees and their families.
  • Four weeks of vacation.
  • Access to tools and resources needed to perform the role.
  • Opportunities for accelerated professional growth and exposure to production systems.
Nesto Group

About Nesto Group

5,001-10,000 employees
Contact me