Search

Cloud Security

PublishedPublished: 6/14/2022
Technology

Job Description

Title: Cloud Security Consultant

\n

Location: Holyoke, MA - Hybrid

\n

Duration: 12+ Months

\n


\n

W2 Contract position, Visa independent profiles required.

\n


\n

Required Skills:

\n

    \n
  • Minimum of three (3) years of hands-on experience securing AWS and Microsoft Azure environments.
  • \n

  • Experience implementing cloud security best practices across multi-cloud environments.
  • \n

  • Experience securing Kubernetes (EKS) and Amazon ECS Fargate container workloads.
  • \n

  • Hands-on experience with Splunk for security monitoring, log analysis, and cloud security investigations.
  • \n

  • Experience implementing DevSecOps practices and securing CI/CD pipelines, including source code, dependency, Infrastructure-as-Code (IaC), and secrets scanning.
  • \n

  • Experience identifying, analyzing, and remediating Cloud Security Posture Management (CSPM) and Cloud Infrastructure Entitlement Management (CIEM) findings in AWS and Azure environments.
  • \n

  • Experience with AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, CNAPP platforms, and vulnerability management tools such as Tenable.
  • \n

  • Experience performing cloud security architecture reviews and Infrastructure-as-Code (Terraform/CloudFormation) security reviews.
  • \n

  • Experience securing Microsoft Entra ID and AWS IAM through conditional access, IAM roles and policies, leastprivilege access, and cross-account access controls.
  • \n

  • Strong analytical, documentation, communication, and problem-solving skills with the ability to work independently.
  • \n

\n

Primary Responsibilities:

\n

    \n
  • Provide services primarily in support of enterprise cloud security initiatives, including the following:
  • \n

  • Secure AWS and Microsoft Azure environments by implementing cloud security best practices.
  • \n

  • Monitor and investigate cloud security events using Splunk and cloud-native security tools.
  • \n

  • Review, analyze, and remediate CSPM and CIEM findings, including IAM permissions, excessive privileges, and cloud misconfigurations.
  • \n

  • Secure Kubernetes (EKS) clusters and Amazon ECS Fargate container workloads.
  • \n

  • Implement security controls throughout CI/CD pipelines, including code, dependency, IaC, and secrets scanning.
  • \n

  • Perform cloud security architecture reviews, IAM assessments, and Infrastructure-as-Code security reviews.
  • \n

  • Utilize AWS Security Hub, GuardDuty, Microsoft Defender for Cloud, CNAPP platforms, and Tenable to identify and mitigate security risks.
  • \n

  • Prepare documentation of security findings, remediation recommendations, and technical procedures, and collaborate with engineering teams to resolve complex cloud security issues.
  • \n

  • Develop technical documentation and provide knowledge transfer to other security analysts, as needed.
  • \n

\n

Minimum Requirements / Education:

\n

    \n
  • Bachelor’s degree in Cyber Security, Information Technology, Computer Science, or an equivalent combination of education and work experience.
  • \n

  • Minimum of three (3) years of experience in cloud security engineering or cloud security operations.
  • \n

  • Hands-on experience securing AWS and Microsoft Azure environments.
  • \n

  • Experience with enterprise cloud security tools and DevSecOps practices.
  • \n

  • AWS, Azure, CISSP, CCSP, or other relevant cloud security certifications are preferred
  • \n

\n


Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...