Brmi

posted 4 months ago

Full-time
Remote
Professional, Scientific, and Technical Services

About the position

BRMi is seeking a Cloud Security Engineer who will serve as a subject matter expert with hands-on experience in cloud technologies, tools, and methodologies, particularly focusing on Microsoft Azure. This role is designed for an experienced Cloud Engineer with a solid understanding of enterprise security, and it will emphasize the development of tool sets and processes to support our Cloud program. The Cloud Organization at BRMi promotes a collaborative environment and is dedicated to building a best-in-class Cloud program that safeguards information and cloud computing environments. The position allows for 100% remote work in various states including Texas, New Jersey, North Carolina, West Virginia, Alabama, Virginia, Maryland, Missouri, Washington D.C., Georgia, or Florida.

Responsibilities

  • Contribute to the vision, strategy, and execution of integrated security controls across SaaS, PaaS, and IaaS for Navy's Azure environment.
  • Demonstrate a clear understanding of current risks and threats to Cloud infrastructure and IT infrastructures to both technical and managerial audiences.
  • Drive Identity and Access Management (IAM), configuration management, and monitoring strategy for Azure.
  • Provide security consultancy and engineering support for cloud security solutions, including analysis and development of Azure and other security solutions.
  • Ensure architecture assurance on Cloud security initiatives and compliance with existing security standards while interfacing with infrastructure and development teams.
  • Maintain the security infrastructure tools built on the Cloud platform, ensuring stability and adherence to policies and procedures.
  • Support the development and delivery of a comprehensive Information Security Program (ISP) for the entire organization.
  • Develop and maintain documentation of all security products, including specific tools, technologies, and processes.
  • Participate in Information Security Incident Response activities for the NFCU's environment.
  • Respond to security vulnerabilities identified through periodic and on-demand system audits and vulnerability assessments of Cloud services.
  • Manage remediation efforts for any gaps reported in audits or recommended process improvements.
  • Actively monitor new and emerging cloud security technologies, trends, issues, and solutions, assessing their applicability to cloud strategy.
  • Perform other duties as assigned.

Requirements

  • Hands-on experience with access control technologies such as Azure AD B2C, SAML SSO, and oAuth 2.0 configuration, setup, and operations management.
  • Experience with certificate management for IaaS and PaaS elements.
  • Experience with Azure AD, Azure Resource Management Templates, and Azure policies.
  • Experience with Azure Key Vault integration and key management.
  • Experience with VSTS release management for Azure Key Vault and other IaaS and PaaS elements.
  • Hands-on development and scripting skills in PowerShell 5.
  • 7+ years of experience working in a technical role, with a minimum of 3 years focused on information security and access control.
  • Strong knowledge of information security and access controls.
  • Industry certification (CISSP, CISA, CISM, CEH) is of high interest.
  • Financial industry experience preferred.

Nice-to-haves

  • Experience with CheckPoint Next Generation Firewall and Threat Prevention Suite.
  • Security Engineer skills including Azure security resource from Security SL, AKS security, Policy as code, VM security configurations, Azure Purview, Sentinel, Audit Remediation, Azure Key Vault integration, PowerShell Scripting, and MSFT Defender.
  • Troubleshooting production issues and performing on-call duties (24X7) on a rotation basis.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service