Security Engineer (Research) jobs in United States
cer-icon
Apply on Employer Site
company-logo

ZEST Security · 2 months ago

Security Engineer (Research)

ZEST Security is an AI-powered risk resolution platform focused on mitigating cloud risks. The role involves conducting security research, implementing security solutions, and assessing cloud security risks in various environments.

ComputerNetwork Security

Responsibilities

Conduct security research to identify vulnerabilities in cloud environments, including detecting and addressing CVEs
Lead the design and implementation of security solutions for cloud infrastructure (AWS, Azure, GCP)
Assess and mitigate cloud security risks, including misconfigurations, vulnerabilities, and compliance gaps
Perform penetration testing and vulnerability assessments to identify new vulnerabilities
Develop and maintain security policies, standards, and procedures for cloud services
Contribute to security incident response processes, providing guidance on remediation and mitigation
Design and implement automation scripts for vulnerability detection and remediation
Conduct research on emerging threats, security tools and methodologies to enhance the overall security posture

Qualification

Cloud securityVulnerability managementCloud platformsSecurity standardsScriptingAutomationDevSecOps practicesCloud toolsAnalytical skillsThreat modelingCommunication skillsCollaboration skillsAttention to detail

Required

2+ years of experience in cloud security, with a strong focus on vulnerability management and research (CVE detection and mitigation)
In-depth experience with cloud platforms such as AWS, Azure, and Google Cloud Platform
Strong understanding of security concepts such as IAM, firewalls, encryption, key management, and network security
Hands-on experience with vulnerability management and cloud misconfiguration(scanning and remediation)
Hands-on experiences with cloud tools such as Wiz, Crowdstrike or other CNAPP tools
Proven ability to identify and mitigate cloud vulnerabilities, including research into CVEs and applying patches or security workarounds
Experience with DevSecOps practices, including integrating security into CI/CD pipelines
Strong understanding of security standards and frameworks such as CIS, NIST, or ISO 27001
Experience in scripting and automation for security tasks (Python, Bash, PowerShell, etc.)
Excellent analytical and problem-solving skills, with strong attention to detail
Strong communication and collaboration skills, with the ability to work with cross-functional teams

Preferred

Relevant certifications such as AWS Certified Security – Specialty, Certified Ethical Hacker (CEH), Certified Cloud Security Professional (CCSP), or Offensive Security Certified Professional (OSCP)
Experience with Kubernetes security and container-based environments
Knowledge of threat modeling and risk assessment methodologies

Company

ZEST Security

twittertwitter
company-logo
ZEST Security is identifying security risks and efficiently remediating to bridge the gap.

Funding

Current Stage
Early Stage
Total Funding
$5M
2024-07-24Seed· $5M

Leadership Team

leader-logo
Uri Aronovici
Co-Founder & CTO
linkedin
Company data provided by crunchbase