Senior Cloud Security Engineer
145 - 165 PLN/ godz.B2B
SeniorFull-time·B2B
#452121·Dodano 2 dni temu·0
Źródło: nofluffjobs.comTech Stack / Keywords
Azure
Firma i stanowisko
The position is within Arche Solutions and involves a long-term project focused on cloud security, primarily for modern SaaS solutions operating on Microsoft Azure as well as on-premise environments.
Wymagania
- Very good knowledge of security in Microsoft Azure environment.
- Experience in designing cloud security architecture.
- Experience creating security strategies, security roadmaps, or security standards.
- Practical experience in vulnerability management, security assessments, security scanning, penetration testing, threat modeling, and risk assessment.
- Experience organizing or coordinating penetration tests and remediation processes.
- Knowledge of Security by Design and secure software development practices.
- Experience with security in CI/CD and DevSecOps.
- Knowledge of at least one of: Azure DevOps, GitHub Actions, GitLab CI/CD.
- Knowledge of Infrastructure as Code, preferably Terraform.
- Good knowledge of Windows environments and enterprise infrastructure.
- Knowledge of cloud-native and enterprise application security.
- Ability to independently assess product or system security posture.
- Very good communication skills and experience working with technical and business stakeholders.
- English language proficiency enabling effective work in an international environment.
Nice to have:
- Experience with AWS Security.
- Knowledge of security for Kubernetes and containers.
- Experience in .NET environment.
- Knowledge of standards and frameworks: ISO 27001, NIST, CIS Controls, OWASP, SOC 2.
- Certifications such as CISSP, CCSP, AZ-500, SC-100, AWS Certified Security – Specialty.
Obowiązki
- Assess current security posture of applications, SaaS services, cloud, and on-premises environments.
- Develop and evolve security strategies and security roadmaps.
- Define minimum security standards for product and development teams.
- Identify areas requiring penetration testing.
- Organize and coordinate penetration tests.
- Analyze penetration test results and coordinate remediation activities.
- Implement Security by Design approach.
- Develop vulnerability management processes.
- Organize and develop code scanning, vulnerability scanning, and cloud infrastructure scanning.
- Implement security scanning in CI/CD pipelines.
- Integrate security controls with DevSecOps processes.
- Conduct threat modeling and risk assessments.
- Evaluate Azure architecture security and recommend improvements.
- Support security for AWS and on-premises infrastructure.
- Collaborate with development, DevOps, Cloud teams, and business stakeholders.
- Conduct security workshops.
- Prioritize security initiatives and support teams in implementation.
- Prepare comprehensive security posture assessments for products and services.
Arche Solutions
27 aktywnych ofert