CNAPP Security Engineer (Remote) - Mid-Atlantic region

1 hour, 47 minutes ago
Full-time
Mid Level
DevOps and Infrastructure
GuidePoint Security

GuidePoint Security

GuidePoint Security is a trusted cybersecurity consulting firm that provides expertise, solutions, and services to help organizations make informed decisions and minimize risks. Their elite team of experts offers holistic perspectives on cybersecurity,...

Internet Software & Services
251-1K
Founded 2011

Description

  • Implement CNAPP and CSPM tools in multi-account AWS and Azure environments.
  • Implement IaC scanning tools within CI/CD pipelines.
  • Develop infrastructure as code in CloudFormation or Terraform.
  • Develop custom control checks within CNAPP platforms using JSON, Rego, or Terraform.
  • Identify and evaluate threats and vulnerabilities across public cloud networks, applications, infrastructure, and systems.
  • Lead resolution of cloud security issues related to vulnerabilities, compliance, entitlements, secrets, and IaC misconfigurations.
  • Apply Kubernetes and microservices security best practices.
  • Perform container registry scanning.
  • Create, maintain, and update runbooks for cloud configuration checks.
  • Review metrics, KPIs, and KRIs to measure cloud security posture.
  • Assess the security posture of cloud security infrastructure and workloads.
  • Advise customers on cloud security best practices.

Requirements

  • At least 3 years of experience working in cloud security with Amazon AWS, Microsoft Azure, or GCP.
  • Experience with cloud security tools such as Wiz.io, Orca, Lacework, Trivy, Aqua, Ermetic, or Prisma Cloud.
  • Experience integrating tools into development pipelines such as Azure DevOps or Jenkins.
  • Understanding of a broad range of cloud security issues and mitigation strategies.
  • Understanding of cloud security-related vulnerabilities.
  • Experience developing code in Terraform, Python, PowerShell, Rego, and other languages.
  • Strong written communication skills for client interactions.
  • Ability to explain complex problems clearly and concisely.
  • Ability to manage time independently while handling multiple projects concurrently.
  • Bachelor’s degree in computer science or information security preferred.
  • Cloud security certifications preferred.
  • Candidates living in the Mid-Atlantic region (VA, MD, PA, NC, DE, NJ, or DC) are highly preferred.

Benefits

  • Remote workforce primarily, with U.S.-based work and some travel possible depending on the role.
  • Group medical insurance options with employer contributions, including PPO and High Deductible Health Plan with HSA.
  • Group dental insurance with employer-paid premiums for employees and partial coverage for family plans.
  • 12 corporate holidays and a Flexible Time Off (FTO) program.
  • Healthy mobile phone and home internet allowance.
  • Eligibility for the retirement plan after 2 months at open enrollment.
  • Pet benefit option.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Principal Security Engineer, Operations

K2 Space Corporation 51-200 Defense and Space Manufacturing

K2 Space is hiring a Principal Security Engineer to define and scale the corporate security architecture that protects its people, systems, and data as the company grows its satellite operations.

C++ Go Network Security Python Rust
17 minutes ago

Staff Security Engineer, Business Continuity & Disaster Recovery

Alphasense 51-250 Industrial Conglomerates

AlphaSense is seeking a Business Continuity and Disaster Recovery Senior Engineer to operationalize and improve resilience capabilities across critical business and cloud systems.

Ansible AWS Azure Bash Chef CloudFormation Datadog Docker DynamoDB GCP MongoDB MySQL PostgreSQL PowerShell Prometheus Pulumi Puppet Python Terraform
47 minutes ago

Senior Security Engineer - Blue Team

Olo 251-1K Internet Software & Services

Olo is hiring a Senior Security Engineer to support its remote Belfast-based blue team in reducing security risk, responding to incidents, and strengthening protection for its SaaS platform and customer data.

Ansible AWS CloudFormation IDS Linux macOS SIEM Terraform WAF
50 minutes ago

Security Engineer - Offensive Security

Stripe 5K-10K Diversified Financial Services

Stripe is hiring an Offensive Security Engineer on its Proactive Threat team to proactively test and strengthen the security of its financial infrastructure and products.

Apache Spark AWS Azure Burp Suite Databricks GCP Go LLM Penetration Testing Python Splunk
1 hour, 2 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers