A cloud security company based in Bellevue, Washington is seeking an experienced security professional to integrate IaC security tools within CI/CD pipelines. Responsibilities include analyzing security scans, developing policies, and implementing cloud-native firewall rules across major platforms like AWS, Azure, and GCP. Ideal candidates will have over 7 years in cloud security or DevSecOps, in-depth tool proficiency, and relevant certifications. The role promotes a diverse and inclusive work environment.
Qualifications
7+ years of experience in cloud security, network security, or DevSecOps.
Hands-on experience with Terraform, CloudFormation, or other IaC tools.
Deep understanding of cloud-native firewall services (AWS, Azure, GCP).
Proficiency in security tools: Checkov, Prisma Cloud, Aqua, Snyk, etc.
Responsibilities
Integrate IaC security scanning tools into CI/CD pipelines.
Analyze and remediate findings from IaC scans.
Develop custom policies for IaC scanning tools.
Design and implement native firewall rules across cloud platforms.
Perform rule optimization and risk-based tuning.
Conduct regular reviews and audits of firewall configurations.
Align policies with industry standards.
Support internal and external audits.
Skills
Cloud security
Network security
DevSecOps
Terraform
CloudFormation
Automation with PowerShell
Automation with Bash
Automation with Python
Security tools proficiency
Education
AWS/Azure/GCP Security Specialty
CISSP
CCSP
Terraform Associate
Job description
A cloud security company based in Bellevue, Washington is seeking an experienced security professional to integrate IaC security tools within CI/CD pipelines. Responsibilities include analyzing security scans, developing policies, and implementing cloud-native firewall rules across major platforms like AWS, Azure, and GCP. Ideal candidates will have over 7 years in cloud security or DevSecOps, in-depth tool proficiency, and relevant certifications. The role promotes a diverse and inclusive work environment.