- Company Name
- Cint
- Job Title
- Senior Security Cloud Engineer
- Job Description
-
Job Title
Senior Security Cloud Engineer
Role Summary
Lead the security architecture and operations for a growing AWS‑centric cloud environment, embedding DevSecOps practices, infrastructure as code (IaC), and automated security controls across multi‑tenant infrastructure. Work collaboratively with engineering teams to design, implement, and monitor secure solutions, while driving continuous improvement and incident‑response readiness.
Expactations
- 3+ years of cloud infrastructure engineering with a focus on AWS, and proven DevSecOps experience.
- Strong command of IaC tooling (Terraform, Packer, Ansible) and container security for Kubernetes/EKS.
- Deep knowledge of AWS security services (IAM, VPC, WAF, GuardDuty, SecurityHub, CloudTrail, CloudWatch).
- Experience implementing automated security testing and monitoring.
- Ability to influence cross‑functional teams and communicate security best practices.
Key Responsibilities
- Define and improve overall security posture across legacy and green‑field resources, including data, applications, and networks.
- Act as security subject matter expert for application, data, and network security, guiding teams on policy adoption.
- Automate security controls within the CI/CD pipeline, ensuring security is integral to deployment processes.
- Enhance monitoring and alerting with actionable security metrics; integrate Grafana, Prometheus, ELK, or similar stacks.
- Operate a rotating on‑call schedule, providing rapid response to incidents and troubleshooting.
- Design, implement, and maintain a Security Incident Response (SIR) policy; conduct regular tests and updates.
Required Skills
- AWS CLI/SDK proficiency and hands‑on experience with S3, RDS, Kinesis, EC2, EMR, ElastiCache, Elasticsearch, and EKS.
- Infrastructure management using Terraform (and related ecosystem tools).
- Threat assessment, attack surface management, VPC, IGW, WAF, CloudFront, IAM policy design, and trust relationships.
- VPN, MFA, SAML, OAuth2, KMS, TLS, and IdP (Okta, OneLogin, Auth0) integration knowledge.
- Secure Docker image building, container orchestration security, and container registry policies.
- Static and dynamic code analysis, defensive programming, and security KPI visualization.
- Programming/scripting in Python, Bash, Ruby, Node.js, Golang, or Java.
- Excellent collaboration, communication, and problem‑solving abilities.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- AWS Certified Security – Specialty strongly preferred.
- Certification or hands‑on experience in GCP security controls is a plus.
---