11 months ago
Responsibilities
- Implement and maintain cloud security configurations using Wiz, Valence, and native cloud services.
- Develop and manage detection mechanisms for toxic cloud risks, public exposure, and runtime threats, and collaborate with SOC and incident response teams on triage and remediation.
- Embed security into CI/CD pipelines through SAST, DAST, dependency scanning, and secrets detection, while supporting threat modeling and vulnerability assessments.
- Conduct audits against CIS benchmarks, NIST, OWASP, and internal policies, and support third-party security assessments and VAPT cycles.
- Participate in security bootcamps, TekTalks, and internal education sessions promoting secure coding and cloud hygiene.
Requirements
- 5+ years of experience in cloud security engineering.
- Experience implementing security configurations across AWS, Azure, GCP, and other cloud environments.
- Experience with cloud security posture management, threat detection, runtime threat response, secure SDLC practices, vulnerability assessments, and security audits.
- Knowledge of CIS benchmarks, NIST, OWASP, internal security policies, third-party assessments, and VAPT cycles.
Benefits
- Competitive compensation
- Generous stock options
- Medical insurance coverage
- Equal Employment Opportunity employer