What are the responsibilities and job description for the Cloud Security Engineer position at Incode Technologies?
The Opportunity
We seek a trustworthy and proactive Cloud Security Engineer as the technical thought leader and driver of continual cloud security across Incode. As a key security hire at Incode, you will work to ensure a continual and secure cloud security posture while building automation and security focused infrastructure to support our security capabilities and operations across multi-cloud SaaS, hybrid, and private cloud solutions. In close collaboration with our security team members, the compliance team, along with engineering, we share the responsibility to identify, protect, detect, respond, and recover from cyber threats.If you are a hands-on Cloud Security Engineer passionate about taking a risk-based, proactive, and automated approach to securing all cloud assets in our corporate and product at Incode, we would love to chat with you. This is an exciting opportunity to shape and build a forward-leaning cloud security program and directly influence our overall security strategy.
Responsibilities
- Discover the top security challenges we face and partner with teams across the company to be hands-on in implementing your security recommendations.
- Build security controls that detect, prevent, and correct cloud vulnerabilities in our very complex, multi-cloud, hybrid and private cloud environment.
- Architect and design infrastructure to support the security team’s mission and ensure well-architected fundamentals (logging, identity and access controls, etc).
- Build, deploy, and manage production security tools and services to monitor networks, endpoints, and cloud workloads
- Build, maintain and evolve a reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and immutable images
- Facilitate the security baked into our cloud infrastructure for our applications and customer data
- Contribute changes to production security infrastructure and platforms (e.g., configure GuardDuty or AWS Config, Kubernetes, VPNs, Secrets Manager, etc)
- Help your peer engineers grow their own security reasoning and knowledge
Qualifications:
- 5 years experience deploying and securing services on public cloud infrastructure
- Detailed understanding of cloud and network security
- Detailed understanding of Kubernetes components and cloud-native security
- Fluency in one or more programming or scripting languages
- Experience building, deploying, and customizing security tools to address threats and lower risk
- Knowledge of networking and web protocols and the ability to analyze traffic to find anomalies
- Depth and experience in modern cloud technology components and deployment patterns
- Depth and experience with at least one common cloud service provider: AWS, GCP, Azure
- Understanding of security weaknesses, exploits, attacks and mitigations
- Excellent collaborative skills
- Outstanding written and verbal communication
Preferred Experience and Certification:
- SaaS Startup experience in security focused role
- Familiarity in the SDLC process and securing products from planning to deployment
- Possess knowledge and experience across the information security domain outside of the cloud security damain
- Experience as a software engineer, infrastructure engineer, or site reliability engineer
- Experience detecting or responding to threats in Kubernetes (K8s), AWS, and Linux environments