Nowa
Cloud Security Engineer - AWS Focus
Brak informacji o wynagrodzeniu
MidFull-time
#346692·Dodano dziś·0
Źródło: nofluffjobs.comTech Stack / Keywords
AICloud securityAWSCloudSecurityAWS CloudNetworkingIAMTerraformCI/CD PipelinesCloudWatchCloudTrailSSOKMSDLPISOInfrastructure as CodeCloudFormationPythonBashPowerShellNetwork SecurityVPCDevOpsECSAWS ECSPrismaTesting
Firma i stanowisko
Ledgebrook is a tech-enabled E&S MGA focused on modernizing Specialty insurance by leveraging AI and data-driven insights to revolutionize underwriting, pricing, and risk selection. The company aims to become a best-in-class full-stack insurance and re/insurer.
Wymagania
- 3+ years of experience in Cloud Security, Security Engineering, or related roles.
- Strong knowledge of AWS security services, architectures, and best practices.
- Experience with Infrastructure as Code (IaC) tools such as Terraform or CloudFormation.
- Hands-on experience with cloud monitoring and logging, especially in AWS.
- Proficiency in scripting or automation (Python, Bash, or PowerShell).
- Solid understanding of network security, firewalls, VPC design, and zero-trust principles.
- Familiarity with incident response processes, SIEM platforms, and forensics tools.
- Comfortable working cross-functionally with engineering, IT, and compliance teams.
- Self-starter with a proactive approach to risk identification and mitigation.
- Willingness to participate in on-call rotation or security incident escalations.
Preferred Qualifications:
- AWS certifications such as AWS Certified Security – Specialty, Solutions Architect, or DevOps Engineer.
- Experience with multi-account AWS environments and AWS Organizations.
- Knowledge of container security, especially within Amazon ECS.
- Experience with third-party security tools such as Tenable, Prisma Cloud, Wiz, or Lacework.
- Experience with compliance frameworks and translating them into technical controls.
- Background in penetration testing, red/blue teaming, or threat intelligence is a plus.
Obowiązki
- Design, implement, and manage secure AWS cloud architectures, including networking, IAM, and service configurations.
- Develop and enforce cloud security standards, policies, and guardrails across AWS environments.
- Implement automated security controls using tools like Terraform, AWS Config, Security Hub, GuardDuty, and Inspector.
- Collaborate with DevOps and engineering teams to integrate security into CI/CD pipelines (DevSecOps).
- Monitor and respond to security events using SIEM and cloud-native logging tools (CloudWatch, CloudTrail, AWS Security Hub).
- Conduct threat modeling, risk assessments, and security architecture reviews for AWS-based applications and services.
- Maintain and optimize identity and access management across AWS accounts using IAM, SSO, SCPs, and Organizations.
- Manage data protection strategies, including encryption (KMS), DLP, and secure key management.
- Support compliance initiatives (e.g., SOC 2, HIPAA, ISO 27001, or FedRAMP) with evidence collection and policy implementation.
Oferta
- Competitive salary and meaningful equity.
- Completely remote work.
- Flexible schedule.
- Monthly coworking gatherings.
- Unlimited paid time off.
- Clear ownership and impact from day one.
- Collaborative, transparent work culture.
Ledgebrook
3 aktywne oferty