7 months ago
Shenzhen, ChinaMid Level
Responsibilities
- Design, develop, and operate cloud security technical solutions according to relevant policies, standards, and architecture guidelines.
- Audit the company’s cloud environment across network, configuration, permissions, and data controls.
- Identify and help remediate cloud security risks through infrastructure risk assessments and vulnerability analysis.
- Manage daily cloud security vulnerabilities.
- Build and maintain the container security system.
- Develop key rotation strategies and promote their implementation.
- Monitor cloud infrastructure security and collaborate with technical teams on SOC alerts and cloud security incidents.
Requirements
- Knowledge of AWS services including IAM, VPC, Security Group, NACL, LB, KMS, Secret Manager, and related services.
- Proficiency with AWS Security Hub, GuardDuty, Inspector, Config, and IAM Access Analyzer.
- Knowledge of EKS security, including pod security policies.
- Experience operating container security tools such as Falco and managing its rules.
- Knowledge of CSPM, CIEM, and CNAPP cloud security technologies.
- Experience conducting cloud infrastructure risk assessments and vulnerability analysis.
- Participation in emergency response to cloud security incidents.
- Strong analytical thinking, problem-solving, time management, and organizational abilities.
Benefits
- Cross-functional collaboration on implementations that improve customer experience.
- Career advancement opportunities within a fast-growing organization expanding beyond APAC.
- A culture that welcomes data-backed ideas and meaningful improvements.
