CNAPP Cloud Security Engineer (Remote) - Northeast region

18 hours, 14 minutes ago
Full-time
Mid Level
DevOps and Infrastructure
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Implement CNAPP and CSPM tools in multi-account AWS and Azure environments.
  • Implement IaC scanning tools within CI/CD pipelines.
  • Develop infrastructure as code in CloudFormation or Terraform.
  • Develop custom control checks within CNAPP platforms using JSON, REGO, or Terraform.
  • Identify and evaluate threats and vulnerabilities in public cloud networks, applications, infrastructure, and systems.
  • Lead resolution of cloud security issues involving vulnerabilities, compliance, entitlements, secrets, and IaC misconfigurations.
  • Perform container registry scanning.
  • Review and create metrics, KPIs, and KRIs to track cloud security posture.
  • Create, maintain, and update runbooks for cloud configuration checks.
  • Advise customers on cloud security best practices and assess the security posture of cloud security infrastructure and workloads.

Requirements

  • At least 3 years of experience working in cloud security with AWS, Microsoft Azure, or GCP.
  • Experience with cloud security tools such as Wiz.io, Orca, Lacework, Trivy, Aqua, Ermetic, or Prisma Cloud.
  • Experience integrating tools into development pipelines such as Azure DevOps or Jenkins.
  • Understanding of a broad range of cloud security issues and mitigation strategies.
  • Understanding of cloud security-related vulnerabilities.
  • Experience developing code in Terraform, Python, PowerShell, Rego, and other languages.
  • Strong written communication skills for client interactions.
  • Ability to communicate complex problems clearly and concisely.
  • Ability to manage time independently while handling multiple projects concurrently.
  • Bachelor’s degree in computer science or information security preferred.
  • Cloud security certifications are preferred.

Benefits

  • Remote workforce primarily, U.S.-based only.
  • Group medical insurance options with substantial employer premium contributions.
  • Group dental insurance with employer-paid employee premiums and partial family coverage.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Healthy mobile phone and home internet allowance.
  • Eligibility for a retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a full-time Security Installation Technician to install, program, troubleshoot, and maintain access control and IP camera systems at client sites.

1 hour, 25 minutes ago

Senior Information Security Engineer – Data

Rubrik 1K-5K IT Services

Rubrik is hiring a Senior Security Engineer to operate its SIEM environment and help build a Security Data Lake platform that supports security monitoring, analytics, and automated SecOps across a global multi-cloud footprint.

AWS Azure CI/CD Databricks Elasticsearch GCP Kubernetes LLM Python SIEM Snowflake Splunk Terraform
1 hour, 40 minutes ago

Data Governance Technical Specialist

ESG News 11-50 Internet Software & Services

The Financial Times is hiring a Data & AI Governance Platform Engineer to own and scale the cloud-native infrastructure and integrations behind key governance platforms across the FT data environment.

Apache Airflow AWS AWS CDK CI/CD CircleCI CloudFormation Kafka MongoDB SQL Terraform
2 hours, 39 minutes ago

Senior Technical Security Application Engineer, Secured Spaces

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Senior Technical Security Application Engineer to own the design, commissioning, and lifecycle sustainment of intrusion detection and access control systems for secured spaces supporting its defense technology operations.

3 hours, 8 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers