17 hours ago
Prague, CzechiaSenior
Responsibilities
- Design, implement, and continuously improve security controls, detection capabilities, and automation across AWS and Azure environments.
- Serve as a subject matter expert on cloud security architecture and secure design principles.
- Lead security assessments, threat modeling, risk analysis, remediation efforts, and complex security initiatives.
- Develop cloud security monitoring, detection engineering, threat hunting, and incident response capabilities.
- Partner with Engineering, DevOps, IT, and Product teams to integrate security controls throughout the software development lifecycle.
- Investigate security incidents, perform root cause analysis, and recommend preventative measures.
- Mentor junior team members and contribute to security standards, policies, and operational processes.
- Monitor emerging threats and cloud security trends and recommend improvements.
Requirements
- At least 5 years of experience in information security, including significant hands-on experience securing AWS and/or Azure environments.
- Deep understanding of cloud security architecture, identity and access management, network security, and security monitoring.
- Strong knowledge of attack methodologies, threat actors, and mitigation techniques.
- Experience implementing and managing cloud-native security services, security tooling, and automated controls.
- Proven experience leading security initiatives and cross-functional projects.
- Strong analytical, troubleshooting, communication, and problem-solving skills.
- Experience communicating complex security concepts to technical and non-technical audiences, including leadership stakeholders.
- Preferred experience with Python, PowerShell, Terraform, SIEM platforms, detection engineering, log management, threat hunting, EDR, vulnerability management, endpoint security, incident response, digital forensics, and security investigations.
- Preferred experience securing DevOps environments, CI/CD pipelines, secrets management, infrastructure as code, containerized applications, Kubernetes, Docker, serverless technologies, and cloud-native architectures.
- Experience with SOC 2, ISO 27001, PCI-DSS, GDPR, or similar compliance frameworks is preferred.
- Industry certifications such as AWS Security Specialty, Azure Security Engineer Associate, CISSP, CCSP, or GIAC are preferred.
About Tricentis
Tricentis builds an AI-powered quality engineering platform for enterprises, spanning test automation, performance testing, and DevOps workflows (products include Tosca, qTest, and NeoLoad). It sells licenses and SaaS subscriptions to large organizations modernizing SAP, cloud, and custom apps, with customers such as T-Mobile and Allianz. Founded in 2007 and headquartered in Austin, Texas, the company is privately held.