Security Engineer II
New
I
InnovaccerCloud security
United StatesFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- 3-5 years of hands-on experience as an Infrastructure Security, Cloud Security, or Security Engineer.
- Required Skills
- AWSKubernetesMicrosoft Azure
Requirements
- Have 3-5 years of hands-on experience as an Infrastructure Security, Cloud Security, or Security Engineer.
- Have hands-on experience with AWS, Azure, and GCP; experience securing commercial and government cloud environments such as AWS GovCloud and Azure Government is preferred.
- Understand IAM, cloud security controls, network security, vulnerability management, and security monitoring.
- Have hands-on experience with security incident investigation, incident response, reporting, and remediation.
- Be familiar with Kubernetes, Docker, and cloud-native services; GCP experience is preferred.
- Be proficient with open-source security tools and technologies.
- Have scripting or automation experience with Python, Bash, PowerShell, or similar languages; this is a plus.
- A bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field is preferred.
- Security+, CEH, OSCP, or relevant cloud security certifications are desirable.
- Be able to work in a 24x7 security operations environment, including on-call support as required.
Responsibilities
- Work with Security, Infrastructure, DevOps, and Engineering teams to secure cloud and infrastructure environments.
- Review IAM and access controls across AWS, Azure, and GCP, including roles, permissions, service accounts, and privileged access.
- Assess security configurations and posture across commercial cloud environments, with exposure to AWS GovCloud and Azure Government.
- Conduct vulnerability assessments, validate findings, track remediation, and verify fixes using tools such as Tenable/Nessus, OpenVAS, and Nmap.
- Triage, investigate, contain, and respond to security incidents across cloud, endpoint, network, and infrastructure environments.
- Monitor and investigate security events using SIEM, EDR/XDR, DLP, network security, and other monitoring technologies.
- Administer, tune, and troubleshoot security technologies, and integrate and monitor logs from systems, network tools, Kubernetes, and cloud services.
- Support cloud security reviews, DLP controls and investigations, and Kubernetes and container security.
- Coordinate vulnerability remediation with Engineering and DevOps teams and support security assessments and audits for regulated and government environments.
- Develop automation scripts and participate in an on-call rotation, providing off-hours security support as required.
View Full Description & ApplyYou'll be redirected to the employer's site