Staff Cloud Security Engineer
AssuredFull Time
Senior (5 to 8 years)
Candidates should possess 6+ years of experience in platform/cloud engineering, with expert-level experience in AWS enterprise deployments and deep knowledge of AWS services and best practices, including Control Tower and IAM. Expertise in deployment and delivery tools like Kubernetes, Terraform, and Helm, a strong background in infrastructure automation, and expert knowledge of network architecture and security are essential. Familiarity with on-premises and hybrid cloud network design, rate limiting, traffic control systems, authentication protocols such as OAuth 2.0 and OpenID Connect, and experience with Keycloak, Docker, Git, Concourse CI, and GitOps workflows are also required. A Bachelor's or Master's degree in Computer Science or a related field is necessary.
The Cloud Platform Engineer will be responsible for architecting, building, and maintaining a hybrid cloud platform, focusing on Information Security and Networks. Key duties include designing and implementing Identity and Access Management environments, creating multi-tenant cloud accounts primarily in AWS with proper isolation and resource management, and defining system security requirements. The role involves developing standard operating procedures, creating technical solutions to mitigate security vulnerabilities, automating repeatable tasks, and monitoring security events and alerts. Responsibilities also include creating architectural diagrams, leading security incidents, architecting high-availability solutions with disaster recovery, designing security frameworks aligned with compliance, and optimizing platform performance. Additionally, the engineer will develop and maintain infrastructure as code using Terraform, implement GitOps workflows, build CI/CD pipelines, automate operational tasks with shell scripting, manage backup and recovery, design and implement monitoring solutions with Prometheus and DataDog, create alerting systems and dashboards, lead troubleshooting efforts, participate in on-call rotations, and maintain operational documentation.
Archiving and compliance solutions provider
Smarsh provides archiving and compliance solutions specifically designed for financial services, government agencies, and other regulated industries. Their main product is a cloud-based archive that allows organizations to securely store, search, and manage their communications data, including emails, text messages, and social media interactions. This system helps businesses meet complex security, data privacy, and regulatory requirements. Smarsh differentiates itself from competitors by offering a scalable Software-as-a-Service (SaaS) model that caters to both large enterprises and smaller organizations, ensuring that clients can adapt to evolving regulations. Their goal is to help organizations efficiently manage their communication data, identify risks, and maintain compliance, particularly through tools like Connected Capture for Microsoft Teams, which supports remote workforces.