State of Arkansas - Lowell, AR

posted 9 days ago

Full-time - Senior
Lowell, AR
Executive, Legislative, and Other General Government Support

About the position

The Senior Cloud Security Engineer at Arvest is a pivotal role focused on leading and supporting cloud security initiatives. This position involves implementing security controls, maintaining security architecture, and ensuring compliance with industry regulations. The engineer collaborates with various teams to remediate issues and enhance cloud security practices, making it essential for safeguarding the organization's cloud infrastructure.

Responsibilities

  • Design, create, and execute security controls to identify, protect, detect, and respond to risks against the Arvest cloud.
  • Develop and maintain cloud security architecture processes and artifacts.
  • Oversee the development of baseline security configuration standards for cloud technologies.
  • Review network segmentation to ensure least privilege for network access.
  • Serve as a technical point of contact for development regarding Cloud configuration and security.
  • Coordinate with product family owners on the allocation of security controls.
  • Configure and maintain Cloud and container tooling/processes.
  • Evaluate and determine scope for required penetration testing of containers, APIs, systems, and networks.
  • Assist teams in reproducing, triaging, and addressing Cloud security vulnerabilities.
  • Perform secure design assessments for proposed Cloud configuration changes.
  • Conduct security-focused configuration reviews.
  • Collaborate with Engineering on secure design reviews.
  • Manage security tooling, ensuring tools are functioning correctly and minimizing false positives.
  • Document vulnerability findings and track remediation in JIRA.
  • Collaborate with the business continuity management team to validate security practices for BCM testing.
  • Participate in cybersecurity and business-related councils or working groups.
  • Identify security design gaps in existing and proposed architectures and recommend enhancements.
  • Ensure compliance with industry standards and regulations related to Cloud security.
  • Mentor and share expertise with other team members.

Requirements

  • Proven experience in cloud security engineering and architecture.
  • Strong knowledge of security tools and practices related to cloud environments.
  • Experience with Infrastructure as Code (IaC) and container security.
  • Familiarity with penetration testing methodologies and tools.
  • Ability to collaborate effectively with cross-functional teams.
  • Strong analytical and problem-solving skills.

Nice-to-haves

  • Certifications in cloud security (e.g., CCSP, AWS Certified Security Specialty).
  • Experience with compliance frameworks (e.g., NIST, ISO 27001).
  • Knowledge of DevSecOps practices.

Benefits

  • Health insurance coverage
  • 401k retirement savings plan
  • Paid holidays and vacation time
  • Professional development opportunities
  • Flexible scheduling options
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service