Security Engineer - Cloud

Redtech
Issaquah, WA, United States
$150K-$190K a year
Permanent

Redtech is helping our client with a Direct Hire search for a Security Engineer - Cloud .

Title - Security Engineer - Cloud

Location : Issaquah (Seattle), WA or Chicago, IL - Selected candidate must live within 50 miles of their selected work location and can not rotate between locations.

Relocation assistance available for eligible new hires located over 50 miles from the Hub location of hire and they move to within 50 miles of the hub location)

Schedule - Hybrid - Onsite 3 days / week

Background check & Drug Test - requires successful completion.

Compensation - Target starting salary anticipated to between $150,000 - $190,000 / year Bonus and Stock eligible - DOE

Benefits offering - based on eligibility :

CLEINT offers a comprehensive package of benefits including paid time off, health benefits medical / dental / vision / hearing aid / pharmacy / behavioral health / employee assistance, health care reimbursement account, dependent care assistance plan, commuter benefits, short-term disability and long-term disability insurance, AD&D insurance, life insurance, 401(k), stock purchase plan, financial wellness program, to eligible employees.

Highest priority skills

Security Engineering experience with ecommerce / Retail sites / services hosted in Cloud (Azure / GCP)

Experience with Security Tools and Frameworks

Bot management (Kasada, DFP, Noknok etc)

Experience working with CDN / WAFs like Fastly or Akamai

Security issue detection / debugging / mitigation experience

Scripting ability

10 years in the industry

5+ years in Security Engineering

Position Summary

Security Engineers develop, design, implement, and integrate security systems used to safeguard enterprise assets against cyber-attack.

Security Engineers drive innovation, influence delivery, and maximize performance. They deliver high quality artifacts, develop and run security tests and continuously tune security tools for optimization.

Security Engineers identify gaps and inefficiencies and work with the business to implement solutions based on their requirements.

As part of the Digital Site Security team the Cloud Security Engineer will be focused on improving the security posture and delivery of new and enhanced security capabilities for CLIENT properties.

ROLE

Provides security and technical expertise to support the development of security objects to satisfy business requirements.

Analyzes and administers security policies to control physical and virtual system access.

Identifies and investigates security issues and develops security solutions that address compliance requirements that can / do impact security.

Identifies, develops, and implements mechanisms to detect security incidents in order to enhance compliance and support of the security standards and procedures.

Assesses business role requirements, reviews authorization roles, and supports authorizations.

Demonstrates a comprehensive skill set with testing authorizations for multiple environments and coordinates testing with business / technical users.

Validates system configurations to ensure the safety of information systems assets and protects information systems from intentional or inadvertent access or destruction.

Implements best practice when applying knowledge of information systems security standards / practices (e.g. Access control and system hardening, system audit and log file monitoring, security policies, and incident handling).

Designs and coordinates activities / engagements with other departments (loss prevention, legal, networking, etc.).

Identifies security gaps that expose CLIENT to potential exploit and develop short- and long-term prioritized remediation to address those gaps.

Develops and executes security controls, defenses, and countermeasures to intercept and prevent internal / external data infiltrations.

Determines strategy and protocol for network behavior, analysis techniques, and tool implementation.

Identifies and resolves problems often anticipating issues before they occur or before they grow; develops and evaluates options;

and implements solutions that support the business.

Provides subject matter expertise in systems security policies, standards / practices, protocols, and technologies.

Configures, deploys, maintains, and supports security tools.

Protects confidentiality, integrity, and availability of information from being disclosed to unauthorized parties.

Creates dashboards, configures alerts, implements and supports security software platforms, and monitors tools / apps.

Identifies opportunities for streamlining, and increasing effectiveness through continuous process improvement.

Implements practices, processes, and procedures consistent with CLIENT information security policy and IT standards.

Develops and documents security events and incident handling procedures into Playbooks.

Ensures that incident documentation is comprehensive, accurate, and complete.

Triages, prioritizes, investigates, and coordinates security events and incident handling activities.

Collaborates with business partners, project teams, and team members to build secure solutions that protects data and enables the business with tools and processes that make sense and adapt to changing business needs both on-premises and in the cloud.

Works with internal and external auditors.

Designs, configures and maintains various degrees of security.

Works with stakeholders and Security Architects to identify security solutions that support their business requirements.

Partners with other Information Security groups to conduct security risk assessments on new solutions and systems, periodic security risk assessments on existing systems;

and identifies and / or recommends appropriate security mitigations and best practices.

REQUIRED

10+ years overall IT experience + 5+ years’ experience in Security Engineering.

Experience in offensive security roles, such as penetration testing or ethical hacking.

Experience with Security Engineering of sites hosted in Public Cloud (Google, Azure)

Experience working with WAFs and CDNs such as Akamai or Fastly.

Proficiency in scripting and programming languages (e.g. Python, JS, Java, SQL) for tool development and automation.

Strong understanding of operating systems, network protocols, and web application security.

Extensive experience with security tools and frameworks (e.g. Kasada, Microsoft DFP, Bloodhound, Cobalt Strike.).

Vast experience in performing code review to identify vulnerabilities.

A passion for cybersecurity and a commitment to staying current with emerging threats and industry trends.

Recommended

Bachelor's / Master's degree or equivalent experience in Computer Science, Information Security, or a related field.

One or more professional network and security certifications such as Security+, Network+, CCNA, GSEC, CISA or CISSP (or equivalent work experience).

Experience performing computer forensics.

Familiarity ITILv2 / v3 processes such as Service Support, Service Delivery, or Continual Service Improvement.

Familiarity with Regulatory Compliance and industry standards, such as HIPAA, SOX, and PCI.

Familiarity in a DevOps or DevSecOps environment.

6 days ago
Related jobs
Promoted
VirtualVocations
Seattle, Washington

A company is looking for a Senior Engineer, Attack Surface and Cloud Security Engineering. Python, PowerShell)Experience with cloud infrastructure automation tools (e. Terraform, CloudFormation)Professional certifications such as CCSP, CISSP, or CEH. ...

Promoted
NinjaJobs
Issaquah, Washington

Partners with other Information Security groups to conduct security risk assessments on new solutions and systems, periodic security risk assessments on existing systems; and identifies and/or recommends appropriate security mitigations and best practices. Security Engineers develop, design, impleme...

Promoted
TEKsystems
Seattle, Washington

Our cybersecurity operation team (SecOp) is looking for a Cloud Security Engineer, who will join and help the team to perform Security Operations Center (SOC) duties, which focus on cloud incident response, malware analysis, and monitoring. Security Operation, Incident Response, Information Security...

Promoted
RED SKY Consulting
Seattle, Washington

As part of the Digital Site Security team the Cloud Security Engineer will be focused on improving the security posture and delivery of new and enhanced security capabilities for our BC and BD properties. Partners with other Information Security groups to conduct security risk assessments on new sol...

Promoted
Redtech
Issaquah, Washington

Digital Site Security team the Cloud Security Engineer. Partners with other Information Security groups to conduct security risk assessments on new solutions and systems, periodic security risk assessments on existing systems; and identifies and/or recommends appropriate security mitigations and bes...

Bank of America
Washington

Bank of America is looking for an experienced Senior Cloud Security Engineer to join our Azure Cloud Security Operations team. This role will help to build a continuous improvement process as part of the Azure Cloud Security Operations team. You may lead cross functional teams within Global Technolo...

Aurora
Seattle, Washington

Aurora’s Cloud Security team’s mission is to design and build security capabilities for Aurora Services. Experience with AWS security controls or equivalent cloud security experience. Fundamental understanding of threat modeling, network security, OS security, AWS security best practices. This role ...

Amazon Web Services, Inc.
Seattle, Washington

The AWS Cloud Response Team manages the security and availability of AWS Cloud services. You will drive security related issues to resolution across numerous service teams, interacting directly with those teams and other AWS Security engineers. We operate on the ‘AWS’ side of the Shared Responsibili...

Highbrow LLC
Seattle, Washington
Remote

Enable Cloud Cybersecurity controls and compliance requirements and remediation programs based on business priorities and risks to address Cyber-Security, Cyber Defense and Business needs of the customer. Ability to set up and configure the Azure security platforms, and function as an overall lead ma...

Hasbro
Renton, Washington

The ideal candidate is a collaborative and conscientious engineer with strong vulnerability and security engineering fundamentals. Perform security assessments on cloud deployments in AWS, Azure, and Google. Research security technologies and drive proof-of-concept evaluations to improve network and...