Develop and enforce security measures for cloud-based solutions, focusing on zero-trust architectures, identity and access management (IAM), data privacy, and Kubernetes security.
Understand security team initiatives to implement solutions that balance security with usability.
Review and analyze infrastructure as code (IaC) for potential risks, ensuring robustness and compliance with security standards.
Automate security processes, including vulnerability and patch management, to enhance operational efficiencies and reduce risks.
Support enterprise cloud security initiatives by implementing continuous monitoring and testing.
Document the current state of the environment, perform gap analysis, and develop comprehensive reports to articulate options and recommendations for security enhancements.
Mentor junior team members, guiding them in best practices and contributing to their professional growth regarding security.
Requirements & Skills:
Proven experience as a Platform Engineer, DevOps Engineer, or similar role.
Strong proficiency with automation tools and scripting languages (e.g., Python, Javascript, Shell, PowerShell).
Hands-on experience with containerization and orchestration technologies (e.g., Docker, AWS ECS. Kubernetes).
Familiarity with Infrastructure as Code tools (e.g., Terraform, Ansible).
Proficiency in cloud and container security (AWS, ECS, EKS) and SAST, DAST & SIEM tools.
Excellent problem-solving skills and the ability to work in a collaborative team environment.
Proven expertise in designing systems that prioritize customer outcomes, leveraging fast feedback loops and iterative design.
Familiarity with logging and monitoring tools (e.g., Datadog, Prometheus, Grafana) is strongly preferred.