Experience: 6+ Years
Role Summary
We’re seeking a hands-on Cloud Security Engineer to drive cloud and infrastructure security — covering CNAPP tools, EDR, cloud posture management, patching, IaC security, and SIEM/SOC collaboration. You’ll secure enterprise workloads, implement automated compliance controls, coordinate with SOC and DevOps teams, and communicate risks clearly to stakeholders.
Key Responsibilities
- Cloud & Infrastructure Security: Administer OWASP-DT platform; work with GuardDuty, AWS Inspector, Terraform, SSM; harden Linux/Windows workloads (CIS Benchmarks/STIGs); enforce least-privilege access and secure secrets management.
- CNAPP & Posture Management: Monitor cloud workloads via CNAPP platforms; assess and remediate misconfigurations/drift against CIS/NIST/internal standards.
- EDR & Threat Detection: Deploy and manage EDR solutions; integrate endpoint/cloud logs into SIEM; support SOC operations, incident response, and threat hunting.
- Patch & Vulnerability Management: Lead automated patching for servers, containers, and cloud services; run vulnerability scans and remediation; automate security operations.
- Compliance & Governance: Maintain compliance with ISO 27001, NIST, CIS, GDPR, HIPAA; generate audit reports and conduct risk assessments.
- Communication: Act as security liaison between DevOps, SOC, and business teams; translate technical risk into clear guidance for stakeholders.
Required Skills
- OWASP-DT Platform Administration (must-have)
- Cloud Security & CNAPP: AWS, GCP
- EDR & endpoint security
- IaC security: Terraform, CloudFormation
- Automated patch/vulnerability management (AWS/GCP)
- SIEM/SOC tools: CloudWatch, Trend Micro Vision One, CloudTrail
- Linux/Windows OS hardening and network security
- Scripting: Python, Bash
- Compliance frameworks: ISO 27001, NIST, CIS, GDPR, HIPAA
- Strong communication and cross-team collaboration