US Bank - Cincinnati, OH

posted 3 months ago

Full-time - Mid Level
Cincinnati, OH
Credit Intermediation and Related Activities

About the position

At U.S. Bank, we are committed to helping our customers and communities thrive by making informed financial decisions. As a Cloud Engineer in Security Technology Operations, you will play a crucial role in enhancing our cloud security architecture. Your primary responsibility will be to assist cloud security architects in designing, standardizing, automating, and implementing security solutions across various cloud platforms, including AWS, Google Cloud Platform, and Azure. This position requires a collaborative engineer with a strong background in operating security technologies and a focus on delivering effective security controls to manage risks within our information security practice. In this role, you will ensure the continuous utility and comprehensive coverage of cloud security controls, securing workloads in the cloud, and identifying areas for improvement. You will be involved in the continuous tuning, integration, feature expansion, reporting, validation, and monitoring of cloud security controls. Collaboration with the Incident Response team will be essential to enhance our ability to detect, contain, investigate, eradicate, and recover from security incidents. You will also work closely with various stakeholders, including cloud security engineers, application teams, and security incident responders, to ensure logging requirements are met and maintained. A thorough understanding of cloud network and resource security fundamentals, as well as the regulatory landscape for public cloud compliance, is vital for this position. You will be expected to stay updated on industry security frameworks and best practices, ensuring that our cloud security measures align with these standards. This role offers a hybrid/flexible schedule, requiring in-office attendance for three or more days per week, with the option to work remotely for the remaining days from designated locations such as Cincinnati, OH, Minneapolis, MN, or Charlotte, NC.

Responsibilities

  • Following best practices and cybersecurity frameworks.
  • Ensuring continuous utility and complete coverage of cloud security controls.
  • Securing workloads in the cloud.
  • Finding areas of improvement for cloud security controls and related performance.
  • Continuous tuning, ongoing integration, feature expansion, reporting, validation, and monitoring of cloud security controls.
  • Collaborate with the Incident Response team to continuously improve the ability to rapidly detect, contain, investigate, eradicate, and recover from security incidents.
  • Work with customers involved in the logging requirement process, including cloud security engineers, application teams, SIEM engineers, and security incident responders.
  • Maintain thorough understanding of cloud network and resource security fundamentals.
  • Maintain working knowledge of the regulatory landscape for public cloud and the implementation patterns required to be compliant.

Requirements

  • Intermediate understanding of operating security technologies and cloud security fundamentals.
  • Familiarity with industry security frameworks and best practices (e.g., ITIL, NIST Cybersecurity Framework, COBIT).
  • Technical experience with networks, operating systems, applications, and other aspects of information technology architecture.
  • Familiarity with the requirements impacting financial institutions (i.e., PCI-DSS, FISMA, GLBA, SOX, and GDPR).
  • Familiarity with the deployment of cloud native and third-party technologies to secure cloud platforms, e.g., Cloud Workload Protection (CWPP), Cloud Security Platform Management (CSPM), and Workload Scanning solutions.
  • Demonstrable experience overcoming cloud migration security challenges.
  • Ability to successfully manage complex projects with numerous stakeholders across the organization.
  • Experience with balancing competing interests and requirements to deliver a working product.
  • Experience with communicating technical information to non-technical audiences and stakeholders at every level, including technical writing.
  • Experience with scripting skills in Python, Terraform, and/or YAML.
  • Experience in cloud migration and digital transformation.
  • Experience in an operational (i.e., on-call support) environment.
  • Demonstrated experience working in a team-focused environment.

Nice-to-haves

  • At least one cloud-specific Associate/Professional certification and commitment to achieve a security-specific certification within six months (e.g., CISSP or CCSP).
  • Demonstrated experience with workflow management tools, such as Jira.
  • Experience working with Microsoft Defender.

Benefits

  • Healthcare (medical, dental, vision)
  • Basic term and optional term life insurance
  • Short-term and long-term disability
  • Pregnancy disability and parental leave
  • 401(k) and employer-funded retirement plan
  • Paid vacation (from two to five weeks depending on salary grade and tenure)
  • Up to 11 paid holiday opportunities
  • Adoption assistance
  • Sick and Safe Leave accruals of one hour for every 30 worked, up to 80 hours per calendar year unless otherwise provided by law
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service