AWS Cyber Security Engineer - SecDevOps Engineer
We are seeking a skilled and proactive SecDevOps Engineer to join our Cloud Engineering team.
In this role, you will be instrumental in integrating security practices into our DevOps processes, ensuring the resilience and compliance of our AWS-hosted SaaS application.
Your expertise will help us maintain a secure, scalable, and efficient cloud infrastructure.
Key Responsibilities
- Security Integration:
Embed security measures into CI/CD pipelines, incorporating tools for static and dynamic code analysis, vulnerability scanning, and compliance checks.
- Infrastructure Management:
Design, implement, and manage AWS infrastructure using Infrastructure as Code (IaC) tools like Terraform or AWS CloudFormation to ensure consistency and scalability.
- Monitoring & Incident Response:
Set up and maintain monitoring systems (e.g., AWS CloudWatch, Prometheus) to detect and respond to security incidents promptly.
- Collaboration:
Work closely with development and operations teams to promote a culture of security, providing guidance and support on best practices.
- Compliance & Auditing:
Ensure the SaaS platform meets industry compliance standards (e.g., SOC 2, HIPAA) by conducting regular audits and assessments.
- Tool Development:
Develop and maintain internal tools to automate security processes and improve operational efficiency.
Required Qualifications
- Experience:
5+ years in DevOps or SecDevOps roles, with a strong background in AWS services (e.g., EC2, S3, Lambda, VPC).
- Security Expertise:
Proficient in implementing security best practices in cloud environments, including identity and access management, encryption, and network security.
- IaC Proficiency:
Hands-on experience with Infrastructure as Code tools like Terraform or AWS CloudFormation.
- Scripting Skills:
Strong scripting abilities in languages such as Python, Bash, or PowerShell.() - CI/CD Tools:
Familiarity with CI/CD tools like Jenkins, GitLab CI/CD, or AWS CodePipeline.() - Monitoring Tools:
Experience with monitoring and logging tools such as AWS CloudWatch, ELK Stack, or Prometheus.
- Education:
Bachelor's degree in Computer Science, Information Security, or a related field.)
Preferred Qualifications
- Certifications:
AWS Certified DevOps Engineer, AWS Certified Security – Specialty, or similar.
- Compliance Knowledge:
Understanding of compliance frameworks like SOC 2, HIPAA, or ISO 27001.
- Containerization:
Experience with containerization technologies such as Docker and orchestration tools like Kubernetes.
- SOAR Platforms:
Familiarity with Security Orchestration, Automation, and Response (SOAR) platforms.