Senior Cloud Security Engineer
Company | Progressive Leasing |
---|---|
Location | Utah, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | |
Experience Level | Senior |
Requirements
- 5+ years of experience in cloud security, infrastructure security, or a related field.
- Deep expertise with AWS preferred.
- Strong understanding of automation tools and infrastructure-as-code (Terraform, CloudFormation, etc.).
- Hands-on experience with CNAPP and other related 3rd party cloud security capabilities.
- Familiarity with cloud-native security services (e.g., AWS GuardDuty, Azure Defender).
- Strong knowledge of IAM, network security, encryption, data protection, and logging and monitoring best practices in AWS and Azure.
- Experience with container security (Kubernetes, Docker, EKS).
- Exposure to governance and policy development aligned with standards like NIST, SOC 2, PCI DSS, or CIS Benchmarks.
- Strong problem-solving skills and ability to lead cloud security initiatives independently.
- Excellent communication skills to present cloud security insights to technical and non-technical stakeholders.
Responsibilities
- Support the development and enforcement of cloud security policies, standards, and governance processes.
- Create solutions and processes to identify, resolve and mitigate cloud security risk.
- Lead the implementation of cloud security controls, ensuring compliance with best practices and industry standards.
- Ensure comprehensive logging, monitoring, and alerting coverage for cloud-based workloads and services.
- Evaluate and support both 3rd party and cloud native security capabilities to enhance visibility and protection.
- Collaborate with Security Operations on cloud incident response efforts and threat detection tuning.
- Perform threat modeling and security reviews for new and existing cloud services.
- Monitor and assess cloud security risks, ensuring adherence to compliance standards (NIST, SOC 2, PCI DSS).
- Work cross-functionally with IT to enhance cloud security.
- Collaborate with DevOps teams to integrate automation of security controls into CI/CD pipelines (DevSecOps).
- Design cloud security metrics, dashboards, and reporting for senior leadership.
- Advocate for cloud security best practices across the organization.
Preferred Qualifications
- Deep expertise with AWS preferred.