Endava-posted 9 months ago
Mid Level
Dallas, TX

Our infrastructure specialists are responsible for designing and implementing back-end services. They ensure reliability, security, and scalability for all platform layers within our solutions. Infrastructure teams provide expertise across virtualization, cloud services, storage solutions, cybersecurity, and scripting and automation. We are looking for a Cloud Security Engineer with expertise in Google Cloud Platform (GCP) and other cloud environments (AWS, Azure) to design, implement, and maintain cloud security solutions. The ideal candidate will focus on securing cloud infrastructure, enforcing security policies, automating security processes, and ensuring compliance with industry standards.

  • Implement and manage security controls across Google Cloud Platform (GCP), AWS, and Azure environments.
  • Configure and maintain IAM policies, service accounts, and role-based access controls (RBAC) to enforce least privilege access.
  • Secure cloud networks by implementing firewall rules, VPC segmentation, private networking, and DDoS protection.
  • Deploy and manage cloud-native security tools such as Google Security Command Center, AWS Security Hub, and Azure Defender.
  • Automate security configurations and compliance enforcement using Terraform, CloudFormation, or Deployment Manager.
  • Monitor and analyze security logs, events, and alerts using SIEM tools (Google Chronicle, Splunk, or ELK).
  • Investigate and respond to cloud security incidents, including unauthorized access and misconfigurations.
  • Conduct security assessments, vulnerability scans, and risk evaluations for cloud environments.
  • Implement and enforce data security policies, including encryption, DLP, and access controls.
  • Secure Kubernetes workloads (GKE, EKS, AKS) by applying security policies and monitoring runtime threats.
  • Ensure compliance with security frameworks (NIST, CIS Benchmarks, ISO 27001, SOC 2, PCI-DSS).
  • Develop and maintain security documentation, policies, and best practices for cloud environments.
  • Collaborate with DevOps, networking, and security teams to enhance cloud security posture.
  • Stay updated on emerging cloud security threats and evolving best practices.
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent experience).
  • 5+ years of experience in cloud security, cloud engineering, or cybersecurity roles.
  • 3+ years of hands-on experience securing cloud environments (GCP, AWS, or Azure).
  • Strong knowledge of Google Cloud Platform (GCP) security, including IAM, VPC security, Cloud Armor, Security Command Center, IAP, and Shielded VMs.
  • Experience with AWS IAM, Security Hub, GuardDuty, Shield, KMS, and WAF.
  • Experience with Azure AD, Defender for Cloud, Sentinel, and Security Center.
  • Deep understanding of cloud network security, including firewalls, VPC Service Controls, private networking, and micro-segmentation.
  • Experience implementing data security controls, including encryption (KMS, HSMs), data loss prevention (DLP), and data access policies.
  • Strong understanding of container security for Kubernetes workloads in GKE, EKS, or AKS, including workload identity, pod security policies, and runtime security.
  • Expertise in identity and access management (IAM), role-based access control (RBAC), least privilege principles, OAuth, SAML, and workload identity federation.
  • Hands-on experience with Infrastructure as Code (IaC) using Terraform, CloudFormation, or Deployment Manager.
  • Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus.
  • Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership.
  • Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences.
  • Hybrid work and flexible working hours, employee assistance programme.
  • Global internal wellbeing programme, access to wellbeing apps.
  • Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
  • Robust healthcare and benefits including Medical, Dental, vision, Disability coverage, and various other benefit options.
  • Flexible Spending Accounts (Medical, Transit, and Dependent Care).
  • Employer Paid Life Insurance and AD&D Coverages.
  • Health Savings account paired with our low-cost High Deductible Medical Plan.
  • 401(k) Safe Harbor Retirement plan with employer match with immediately vest.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service