Senior Cloud Security Engineer

145 - 165 PLN/ godz.B2B
SeniorFull-time·B2B
#452121·Dodano 2 dni temu·0
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

Azure

Firma i stanowisko

The position is within Arche Solutions and involves a long-term project focused on cloud security, primarily for modern SaaS solutions operating on Microsoft Azure as well as on-premise environments.

Wymagania

  • Very good knowledge of security in Microsoft Azure environment.
  • Experience in designing cloud security architecture.
  • Experience creating security strategies, security roadmaps, or security standards.
  • Practical experience in vulnerability management, security assessments, security scanning, penetration testing, threat modeling, and risk assessment.
  • Experience organizing or coordinating penetration tests and remediation processes.
  • Knowledge of Security by Design and secure software development practices.
  • Experience with security in CI/CD and DevSecOps.
  • Knowledge of at least one of: Azure DevOps, GitHub Actions, GitLab CI/CD.
  • Knowledge of Infrastructure as Code, preferably Terraform.
  • Good knowledge of Windows environments and enterprise infrastructure.
  • Knowledge of cloud-native and enterprise application security.
  • Ability to independently assess product or system security posture.
  • Very good communication skills and experience working with technical and business stakeholders.
  • English language proficiency enabling effective work in an international environment.

Nice to have:

  • Experience with AWS Security.
  • Knowledge of security for Kubernetes and containers.
  • Experience in .NET environment.
  • Knowledge of standards and frameworks: ISO 27001, NIST, CIS Controls, OWASP, SOC 2.
  • Certifications such as CISSP, CCSP, AZ-500, SC-100, AWS Certified Security – Specialty.

Obowiązki

  • Assess current security posture of applications, SaaS services, cloud, and on-premises environments.
  • Develop and evolve security strategies and security roadmaps.
  • Define minimum security standards for product and development teams.
  • Identify areas requiring penetration testing.
  • Organize and coordinate penetration tests.
  • Analyze penetration test results and coordinate remediation activities.
  • Implement Security by Design approach.
  • Develop vulnerability management processes.
  • Organize and develop code scanning, vulnerability scanning, and cloud infrastructure scanning.
  • Implement security scanning in CI/CD pipelines.
  • Integrate security controls with DevSecOps processes.
  • Conduct threat modeling and risk assessments.
  • Evaluate Azure architecture security and recommend improvements.
  • Support security for AWS and on-premises infrastructure.
  • Collaborate with development, DevOps, Cloud teams, and business stakeholders.
  • Conduct security workshops.
  • Prioritize security initiatives and support teams in implementation.
  • Prepare comprehensive security posture assessments for products and services.
Arche Solutions

Arche Solutions

27 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz