- Design, implement, and manage robust security controls and policies within AWS, focusing on the confidentiality, integrity, and availability of data and services.
- Perform comprehensive security assessments of our cloud environments to identify vulnerabilities, assess risks, and recommend actionable mitigation strategies.
- Lead the integration of security practices into the DevOps lifecycle, promoting secure development, deployment, and operational processes.
- Utilize and optimize AWS security tools (such as Amazon GuardDuty, Amazon Inspector, AWS IAM, AWS KMS, AWS WAF, and AWS Shield) and explore third-party solutions to bolster our security posture.
- Assist in running and address findings from penetration tests and security audits, and ensuring prompt and effective remediation.
- Stay informed about the latest security threats, vulnerabilities, and compliance mandates affecting cloud environments, provide strategic guidance on technologies and best practices.
- Provide expert mentorship to junior security team members and engineers across the company, to foster an organizational culture of security awareness and continuous improvement.
- Collaborate with stakeholders to integrate security requirements effectively into engineering projects and broader business initiatives.
AWSPythonTypeScript+4 more