Cloud Security Engineer

$90,000 - $230,000/Yr

Geico - Chevy Chase, MD

posted about 1 month ago

Full-time - Mid Level
Chevy Chase, MD
Insurance Carriers and Related Activities

About the position

The Staff Engineer - Cloud Security Engineer position at GEICO is a critical role that focuses on integrating security into the organization's ecosystem from design through deployment to sustainable operations. This position requires a subject matter expert in cloud security, responsible for defining security requirements, secure infrastructure architectures, and conducting security assessments. The role involves collaboration with various teams to ensure the integrity of GEICO's mission objectives while adhering to security principles.

Responsibilities

  • Develop, integrate, and maintain multilevel cybersecurity designs, architectures, policies, standards, and procedures.
  • Provide technical solutions and integration decisions, analyzing design constraints and trade-offs in system and security design.
  • Serve as a technical advisor and consultant to the GEICO Cybersecurity organization on the implementation of Cybersecurity policies and standards.
  • Provide secure design guidance and recommendations to developers, infrastructure, cybersecurity, and other engineers.
  • Lead security projects driven by groups both internal and external to cybersecurity.
  • Act as a subject matter expert across several areas of network & information security, data security, and identity security.
  • Develop Security Policy using Policy as a code and enforcement policy in the SDLC process to enable shift-left DevSecOps practice.

Requirements

  • Experience as Application, Platform, or Security Architecture.
  • Experience in performing Data Risk Assessment, Third Party Assessment, App Sec Review, Cyber Secure Engineering Review, and Threat modeling.
  • Programming experience with at least one modern language such as GO, Java, or C# including object-oriented design.
  • Experience with at least one scripting language such as Python, Terraform, or Ansible.
  • Advanced understanding of DevOps Concepts and Cloud Architecture.
  • Knowledge of Kubernetes and advanced understanding of security protocols and products.
  • Proficient level experience in designing, developing, and managing infrastructure automation solutions in one of the Cloud providers: Azure, AWS, or GCP.
  • Strong problem-solving abilities with a proactive approach to security risk mitigation.
  • Experience in at least two of the following disciplines: Security solution design, Security infrastructure architecture, Network security management, Cloud security Development, CNAPP- CSPM & CWP Security Policy implementation.
  • Excellent understanding and knowledge of secure software development life cycle methodologies such as secure design, threat modeling, agile software development, rapid prototyping, and DevSecOps practice.
  • Commands a well-developed understanding of strategic, emerging security/cloud technology trends.
  • Experience with one of the core Security Frameworks - NIST, PCI, ISO.

Nice-to-haves

  • CISSP
  • CCSP
  • any Cloud security Certification

Benefits

  • Premier Medical, Dental and Vision Insurance with no waiting period
  • Paid Vacation, Sick and Parental Leave
  • 401(k) Plan
  • Tuition Reimbursement
  • Paid Training and Licensures
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service