Sentara Health is seeking to hire a qualified individual to join our team as a Senior Cloud Cyber Security Engineer - Remote. Job Description Cloud Security Architecture and Design: Design and implement secure cloud architectures, ensuring adherence to best practices and compliance requirements. Collaborate with cloud architects and DevOps teams to integrate security controls and mechanisms into cloud environments. Review and assess cloud infrastructure and service configurations to identify potential security risks and recommend necessary improvements. Cloud Security Assessments: Conduct regular security assessments, including vulnerability scanning, penetration testing, and security audits of cloud resources and services. Identify and prioritize security vulnerabilities, misconfigurations, and compliance gaps, and provide recommendations for remediation. Assist in implementing and maintaining security testing tools and automation scripts for continuous security assessment. Identity and Access Management: Develop and implement cloud-specific identity and access management (IAM) policies and controls to ensure appropriate access rights and permissions. Monitor and review IAM configurations, roles, and access policies to prevent unauthorized access and privilege escalation. Collaborate with identity teams to integrate cloud IAM with enterprise identity and access management systems. Cloud Security Monitoring and Incident Response: Implement and manage cloud security monitoring tools and solutions to detect and respond to security incidents in real-time. Establish incident response plans and processes specific to cloud environments, collaborating with incident response teams to investigate and mitigate cloud-related security incidents. Conduct post-incident analysis and implement measures to prevent similar incidents in the future. Compliance and Governance: Ensure cloud infrastructure and services comply with relevant security standards, regulations, and industry frameworks (e.g., CIS, NIST, GDPR, etc.). Participate in security audits, assessments, and regulatory compliance activities, working with auditors to address findings and ensure compliance. Stay updated with evolving cloud security trends, emerging threats, and regulatory changes, and provide guidance on implementing necessary controls. Cloud Security Education and Awareness: Work with Governance team to conduct training and awareness programs for cloud users, developers, and stakeholders to promote secure cloud practices and awareness of cloud-specific security risks. Provide guidance and recommendations on secure cloud architecture, configurations, and deployment practices to development and operations teams. Desired Characteristics: Strong analytical skills – strong problem-solving skills, communicates in a clear and succinct manner and effectively evaluates information/data to make decisions; anticipates obstacles and develops plans to resolve. Change oriented – actively generates process improvements; supports and drives change and confronts difficult circumstances in creative ways. Self-motivated, self-directed, flexible, and able to work under pressure and in fast paced team environment. Strong functional team player with experience working seamlessly across a matrix structure. Excellent interpersonal, written/verbal communication and leadership skills with the ability to make recommendations to all levels of the organization.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees