• Find preferred job with Jobstinger
  • ID
    #15714622
  • Job type
    Contract
  • Salary
    $140,000 - $150,000 /yr
  • Source
    Stefanini
  • Date
    2021-06-21
  • Deadline
    2021-08-20

Cloud Security Engineer

Texas, Dallas / fort worth, 75201 Dallas / fort worth USA
 
Contract

Vacancy expired!

Stefanini is looking for a Cloud Security Engineer in Dallas, TX Responsibilities:Acts as the subject matter expert and principal consultant to management development teams and other stakeholders on matters of security (Cloud migration, PaaS and SaaS solutions) to meet compliance with Federal Reserve System's NIST 800-53 implementation (SAFR) Creste processes and automation around DevsecOps in coordination with software development teams. And should have understanding of SonarQuble IQ Server Fortify and other applications security tools. Should be able to provide guidance in remediating security vulnerabilities. Works closely with cross-functional teams as a subject matter expert for security standards and advises contributes to development as needed. Assist IT teams in identifying security requirements in migrating on-prem applications to AWS/Azure cloud environments. Advises information security colleagues and business clients on information security requirements, compliance responsibilities and methods to protect Bank resources and sensitive information.Reviews internal government academic and commercial sources of information to anticipate new security compliance requirements and identify advancements to best practices for protecting resources and information in the cloud. Drafts local policies standards guidelines and procedures to supplement enterprise security frameworks as needed. Prepares reports on compliance. Develop security architecture and/or security view diagrams depicting expected and actual cloud implementations. Identify security gaps that will or have already occurred and work with various stakeholders to provide appropriate risk treatment. Where required, train information. Security staff and if technical staff on matters of cloud security. May assist in designing role-based access controls within cloud environments Develops workflows and process documentation. Identifies potential non-compliance situations and informe department leadership, Collaborate with current infoSec staff to develop risk management documentation to monitor lifecycle progress track acceptance decisions and catalog remediation actions.Experience applying risk management frameworks such as NIST 800-37 or NIST 800-53 is required. Utilizes automated Governance, Risk and Compliance tools to track artifacts of the risk management lifecycle. Analyzes, designs and implements business processes and requirements to ensure compliance with security policies and procedures, in accordance with approved security frameworks as needed.

Qualifications:Experience working collaboratively on projects and programs with a diverse field of stakeholders.An ability to identify security gaps or unforeseen risks in Cloud security solution design and implementation. Excellent verbal and written communication skills. An ability to influence technical subject matter experts in matters related to both cloud security solution design and implementation and overall risk posture. Must be a self-starter able to work under little to no supervision and handle ambiguity in direction. Cloud migration experience is required. DevSecOps experience is required. Must have very good understanding of CI/CD pipeline quality tollgates and DevecOps processes. Good understanding of Applications security. Experience with Threat Modeling. Experience with AWS environment is required. Experience with NIST 800-53 is required. Bachelor's Degree or 4 years equivalent experience preferred. Strongly Preferred certifications CISSP/ CCSP/ CSA/ CRISC/AWS Certified Security Specialty.

Vacancy expired!

Report job

Related Jobs

Jobstinger