Sr Cloud Security Engineer I (Remote)

TechnologyRemote, United States


Description

American Specialty Health Incorporated (ASH) is seeking a Senior Cloud Security Engineer I to join our Information Security department.

Our Senior Cloud Security Engineer ensures proper configuration standards are met and sustained in compliance with security policy, procedures, standards, and industry requirements/best practices. You will have the opportunity to implement and maintain technical security controls including CSPM, CWP, CASB, next generation firewalls, container security and automated compliance tools. Additionally, you will perform cybersecurity monitoring of the cloud environments, ensuring proper monitoring coverage that correlates with internal security operations and processes. To be successful in this role, you should have a proven understanding of the CSA Cloud Controls Matrix as well as other security standards and regulations such as HITRUST, NIST, ISO, PCI. You will also want to have a deep understanding of Microsoft Azure cloud architecture.

Salary Range

American Specialty Health complies with state and federal wage and hour laws and compensation depends upon candidate’s qualifications, education, skill set, years of experience, and internal equity. $146,232.00 to $180,000.00 Full-Time Annual Salary range.


Remote Worker Guidelines

  • Remote Worker Guidelines: This position will be trained remotely and must be able to work from home (WFH) in a designated work area with company-provided technology equipment. This WFH position requires you have a stable connection to your Internet Service Provider with the ability to participate by video in online meetings over a reliable and consistent network. The internet connection must have a consistent 50 down/10 up Mbps minimum internet speed. 100 down/20 up is recommended to support higher quality video meetings.


Responsibilities

  • Work closely with Cloud team to architect, implement and maintain security cloud solutions.
    • Implement, monitor, and support security software/systems that will help ensure compliance with HITRUST and CSA Cloud Controls Matrix in cloud environment.
    • Make recommendations to management on enhancements to existing and new security software or related tools.
    • Assist in evaluating, planning and implementation of new/existing security applications/tools that integrate with current tool sets.
    • Help implement and maintain next-generation enterprise control tools and detection technologies.
    • Ensure security standard methodologies are identified and integrated into all facets of projects including network, system designs/configuration, applications and implementations.
    • Identify and recommend potential areas where existing data security policies and procedures require change, or where a supplement is required to mitigate key security risks.
    • Partner with various business units to enhance security policies/procedures.
    • Create and maintain security documentation, policies, and procedures.
    • Direct hands-on experience designing and implementing security within Azure for both IaaS and PaaS offerings.
  • Performs other duties as assigned.
  • Complies with all policies and standards.


Qualifications

  • Bachelor’s Degree or equivalent work experience required. If equivalent experience, High School Diploma required.
  • 5 years of enterprise cloud (IaaS, PaaS, SaaS) experience, IT cloud security experience preferred.
  • Experience with cloud security posture management (CSPM) and cloud workload protection (CWP) tools, such as Microsoft Defender for Cloud, AWS Security Hub / Config.
  • In-depth understanding of Azure Policy and/or AWS Service Control Policies.
  • Working experience with infrastructure as code (IaC) technologies such as Terraform or Azure Bicep (preferred).
  • Deep knowledge regarding cloud networking, such as routing, traffic filtering (firewalls), load balancing, etc.
  • Experience with cloud hosted container security.
  • Experience with DevOps and CI/CD tooling.
  • Experience in hardening AWS/Azure services.
  • Strong ability to critically think and solve problems.
  • Develop cloud security strategy with a focus on compliance.
  • Advise stakeholders and translate business requirements into secure, scalable, and reliable cloud solutions.
  • Complete hardening guideline reviews and assessments with developers, operations, and infrastructure teams.
  • Partner with system engineering / DevOps to assess and reduce cloud security risks.
  • Assist with documentation of organizational cloud security standards, processes, and governance model.
  • Knowledgeable with CSA CCM security framework and CIS Benchmarks for Cloud.
  • Knowledge of host hardening, auditing, logging, monitoring, network security, and anomaly detections.
  • Understanding of industry trends for cybersecurity risk & threat intelligence, and governance.
  • Knowledgeable of Artificial Intelligence cloud architecture and establishing security guardrails.
  • CCSP-Certified Career Services Provider Upon Hire preferred.
  • AWS Certified Developer Upon Hire preferred.
  • CSA - Certified System Admin Upon Hire preferred.
  • Microsoft’s Azure Solutions Architect Upon Hire preferred.


Core Competencies

  • Demonstrated ability to interact in a positive, respectful manner and establish and maintain cooperative working relationships.
  • Ability to display excellent customer service to meet the needs and expectations of both internal and external customers.
  • Excellent listening and interpersonal communication skills to identify critical core competencies based on success factors and organizational environment.
  • Ability to effectively organize, prioritize, multi-task and manage time.
  • Demonstrated accuracy and productivity in a changing environment with constant interruptions.
  • Demonstrated ability to analyze information, problems, issues, situations, and procedures to develop effective solutions.
  • Ability to exercise strict confidentiality in all matters.


Mobility

  • Primarily sedentary, able to sit for long periods of time.


Physical Requirements

  • Ability to see, speak, and hear other personnel and/or objects. Ability to communicate both in verbal and written form. Ability to travel within and around the facility or Work from Home (WFH) environment. Capable of using a telephone, computer keyboard, and mouse. Ability to lift up to 10 lbs.


Environmental Conditions

  • Work-from-home (WFH) environment.


American Specialty Health is an Equal Opportunity/Affirmative Action Employer.

All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth, related medical conditions, breastfeeding, and reproductive health decision-making), gender, gender identity, gender expression, race, color, religion (including religious dress and grooming practices), creed, national origin, citizenship, ancestry, physical or mental disability, legally-protected medical condition, marital status, age, sexual orientation, genetic information, military or veteran status, political affiliation, or any other basis protected by applicable local, federal or state law.

Please view Equal Employment Opportunity Posters provided by OFCCP here.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our career center as a result of your disability. To request an accommodation, contact our Human Resources Department at (800) 848-3555 x6702.

ASH will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company’s legal duty to furnish information.

#LI-Remote #Cloud #Security #Engineer #CCSP #AWS #DevOps