Enable job alerts via email!

Specialist, Cloud Security & Vulnerability Management

Crypto.com

United States

Remote

USD 60,000 - 80,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an intermediate-level security specialist to enhance its global cybersecurity efforts. This role involves building AI-driven security automation workflows, improving the security technology stack, and managing security operations and vulnerability management. With a focus on multi-cloud environments, the position requires strong engineering and operational skills. You will lead investigations, implement advanced security controls, and drive incident response strategies. If you're passionate about cybersecurity and eager to work in a dynamic environment that leverages cutting-edge technology, this opportunity is for you.

Qualifications

  • 5-7 Jahre Erfahrung in Informationssicherheit mit technischem Hintergrund in Sicherheitsoperationen.
  • Erfahrung mit Cloud-Umgebungen wie AWS, Azure und GCP.

Responsibilities

  • Überwachung von Bedrohungen und Durchführung von Vorfalluntersuchungen.
  • Entwicklung und Wartung von Sicherheitskontrollen in Cloud-Umgebungen.

Skills

Information Security
Security Operations
Incident Response
Cloud Security
Digital Forensics
Scripting Languages
AI/ML in Cybersecurity
Attention to Detail

Tools

SIEM
EPP/EDR/XDR
SOAR
Digital Forensics Tools
AWS GuardDuty
Google SCC
Azure Security Centre

Job description

We are looking for an intermediate level security specialist to join our Global Cybersecurity Services Team. As part of our modern cybersecurity operating model, the role will be engaged in enhancing our security technology stack, building AI-driven security automation workflows, and contributing to security operations and vulnerability management.

We are building a modern, multi-cloud, intelligence-driven security operations capability that will heavily involve AI and automation; and will require engineering and operational skills at all levels.

Responsibilities
  • Threat Monitoring Investigations - Deep dive into Tier 1 & Tier 2 security operations escalations, performing incident triage and root cause analysis. Proficient in performing investigations using open source and proprietary tools, including but not limited to EPP/EDR/XDR software, Digital Forensics tools/software, SIEM platforms, etc.
  • Security Engineering - Build, maintain and enhance our security operations technology stack, which includes next generation SIEM and SOAR solutions. Familiar with security logging and detection engineering practices, manage the detection use case life cycle. Relentlessly automate and creatively incorporate AI into workflows.
  • Incident Response - Proficient in end-to-end Incident Response. Able to take the lead and provide guidance during investigations and incidents to pivot the investigation, drive containment, mitigation and other security outcomes.
  • Cloud & Container Security - Develop, deploy and maintain advanced cloud security controls to enable the prevention, detection and response to security threats in cloud environments. Configure and deploy cloud-native security controls (eg. AWS GuardDuty, Google SCC, Azure Security Centre, CNAPP solutions etc.). Operate the life cycles of Configuration and Vulnerability management in cloud assets.
  • Vulnerability Management - Configure, execute and maintain regular vulnerability scans on both on-prem and cloud environments using industry standard tools. Analyze scan results to assess the severity of the vulnerabilities, leveraging industry best practices and frameworks (eg. CVSS, etc.); and prioritise remediation based on risk and business impact. Work with IT Operations and system stakeholders to report/communicate findings, recommend fixes and track the remediation progress.
  • Security Projects - Lead projects and initiatives that may involve Cloud Security Posture Management (CSPM), Container Security, Native Cloud Security Enhancements (AWS, Azure, GCP), Runtime Vulnerability Management, Threat Hunting, Network/Endpoint/Cloud security reviews, etc.
  • Leadership - Be comfortable with cross-functional leadership and stakeholder management. Be willing to lead and nurture a small team of junior security specialists.
Requirements
  • 5-7 years of experience in Information Security, with technical hands-on experience in Security Operations, Security Engineering, Digital Forensics, Incident Response, Endpoint Security or Cloud Security.
  • Working Experience with SIEM, EPP/EDR/XDR, SOAR, Cloud Security (CSPM, Container Security, etc), Digital Forensics software & tools.
  • Working experience with Cloud environments like AWS, Azure and GCP.
  • Experience in Amazon EKS and Azure AKS for deploying, managing, and securing container orchestration platforms.
  • Experience in applying AI/ML in cybersecurity use cases.
  • Experience in using scripting languages to automate tasks and manipulate data or programming experience.
  • Highly self-motivated, attention to detail and outcome driven.
  • Proficiency in verbal and written English.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.