About The Position

We are looking for an experienced, talented, and motivated Cloud SecOps Engineer with strong experience with the secure delivery of AWS-based Linux and Windows workloads, and related systems and processes. The role involves broad governance, riskand compliance responsibility for evaluating systems, providing recommendations, supporting the GDPR, PCI, SOC2 and TX-RAMP compliance programs, and mitigating issues to ensure the security of the Encoura systems. You will be a key member of a small, skilled, results-oriented team of technology professionals tasked with ensuring our systems and data are protected. The candidate should be detail-oriented and be able to quickly evaluate processes and systems andoptimize security controls and practices. This role partners with application development teams and DevOps Engineers in the development and secure delivery of AWS-based platforms and products and to align account permissions and access levels to business needs consistent with required audit/compliance standards. Additionally, this role will audit systems security and ensure Encoura platforms meet relevant compliance benchmarks. A few examples of technologies we work with daily are AWS Core Services, API Gateway, Lambda, Sumo Logic, Data Dog, Docker, Linux, Windows, Okta, PostgreSQL, MS SQL Server, MongoDB, Databricks, Node.JS, Python, Kubernetes, GitHub, GitHub Actions, StackHawk, JIRA & Confluence, LaunchDarkly, GraphQL, OneTrust, Tenable, CrowdStrike, Snowflake, and Ninjio.

Requirements

  • Experience securely delivering in a complex AWS-based micro-services application environment.
  • Strong understanding of the AWS-based security tooling and services.
  • Strong understanding of AWS-based IAM roles and accounts.
  • Strong understanding of AWS CloudWatch/Athena.
  • Proficiency and understanding of the AWS console and CLI.
  • 3+ years experience securing a similarly complex AWS-based environment.
  • 5+ years of IT experience designing and implementing security solutions.
  • Strong automation skills – you believe you can automate everything.
  • Hands-on experience with troubleshooting, securing, and improving AWS environments.
  • As related to related to security, familiar with the concepts of microservice architecture and how those concepts are implemented in AWS.
  • Experience installing, configuring, and managing and patching cloud-based and on-prem systems.
  • A solid security foundation – you’re always thinking, “what happens if this system is compromised?”
  • Experience working with application development teams who work in Agile/Scrum/Kanban.
  • Able to balance security requirements with budgetary requirements.
  • Experience with Linux and Windows administration.
  • BS in Computer Science, Software Engineering or equivalent, or a Bachelor’s in an unrelated field with at least 5 years of professional technology-based experience.

Nice To Haves

  • Experience working with SaaS-based solutions that integrate with AWS is a plus.
  • Information Security experience preferred.
  • AWS Security – Specialty certification (strongly preferred).
  • Additional AWS certifications are a plus, as are other relevant certifications.
  • A detail-oriented, data-driven decision-maker with a strong appreciation for simplicity in system architecture.
  • A collaborative team player, comfortable mentoring others and cross-functionally communicating.

Responsibilities

  • Risk & compliance tracking against government standards (e.g. CCPA, NIST, SOCII).
  • Tracking and remediation management of vulnerability issues and system patches.
  • Review and recommend additional or changes to existing AWS security-minded services.
  • Work with managed security service provider to triage and respond to potential security events.
  • Grow, as needed, the data fed to SIEM to provide visibility into potential security events.
  • Develop security-minded reports and dashboards for the Exec team, and for techies.
  • Develop and deploy security system alerting and monitoring strategy.
  • Systems access level inventory and auditing.
  • Provide as-needed security-minded operational support of our applications and platforms.
  • Partner with development teams on security architecture decisions.
  • Implement tagging and reporting strategy to measure security event risk/impact.
  • Gain functional knowledge of all Encoura applications.
  • Serve in an on-call rotation for security, or potential security-related issues.

Benefits

  • Comprehensive health and benefits package
  • 401k company match that vests immediately upon participation
  • Paid holidays and a generous PTO policy
  • Paid parental leave
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service