Expedite Talent Solutions ยท 4 months ago
Senior Cloud Security Engineer
Expedite Talent Solutions is seeking a highly skilled and experienced cloud security professional. The role focuses on securing cloud workloads and services, implementing Zero Trust principles, and managing secure cloud environments across various platforms.
IT ManagementProfessional ServicesWarehousing
Responsibilities
Ensure secure, scalable, and policy-driven access control through ZTNA engineering and automation
Architect and approve ZTNA configurations, implement identity-aware segmentation, and enforce least privilege access policies
Lead the transition from traditional VPNs to ZTNA solutions
Design and implement secure cloud architectures across multiple platforms
Implement least privilege access controls, federation, single sign-on (SSO), and other IAM solutions across multiple cloud platforms
Automate security tasks and processes using scripting and automation tools such as Python, Terraform, CloudFormation, and Azure Resource Manager
Analyze security logs and alerts, conduct threat hunting, and participate in incident response procedures and methodologies
Implement security controls to meet compliance requirements and have experience with cloud-specific compliance frameworks like FedRAMP
Demonstrate an understanding of data classification standards and experience with data loss prevention (DLP) configurations
Manage network security concepts and technologies, including firewall management, IDS/IPS, network segmentation, VPNs, and network traffic analysis
Lead and mentor junior security engineers, and effectively communicate complex technical concepts to non-technical audiences
Qualification
Required
Extensive experience in ZTNA engineering and automation, ensuring secure, scalable, and policy-driven access control
Architecting and approving ZTNA configurations, implementing identity-aware segmentation, enforcing least privilege access policies, and leading the transition from traditional VPNs to ZTNA solutions
Deep understanding of NIST 800-207 and Zero Trust Architecture best practices
Hands-on experience with ZTNA technologies, particularly Zscaler
Comprehensive understanding of cloud security platforms and Infrastructure As A Service (IAAS) solution providers like Google, Amazon, and Microsoft
In-depth knowledge of each provider's security services (e.g., IAM, security centers, firewalls, key management, logging, and monitoring tools)
Ability to design and implement secure cloud architectures
Well-versed in cloud-native security controls, security posture management (CSPM) tools, and best practices for ensuring compliance with relevant security frameworks (NIST, ISO, SOC 2)
Working knowledge of IAM concepts and best practices
Proficient in implementing least privilege access controls, federation, single sign-on (SSO), and other IAM solutions across multiple cloud platforms
Strong understanding of automation pipelines and experience with scripting and automation tools such as Python, Terraform, CloudFormation, and Azure Resource Manager
Ability to automate security tasks and processes
Experience with Security Orchestration, Automation, and Response (SOAR) platforms
Experience with Security Information and Event Management (SIEM) logging and analysis
Understanding of Endpoint Detection and Response (EDR) and Extended Detection and Response (XDR) concepts
Capable of analyzing security logs and alerts, conducting threat hunting, and participating in incident response procedures and methodologies
Working knowledge of current security policies, federal and state compliance regulations, and governance standards
Ability to implement security controls to meet compliance requirements
Experience with cloud-specific compliance frameworks like FedRAMP
Understanding of data classification standards and experience with data loss prevention (DLP) configurations
Deep understanding of modern networking standards, including Zero Trust principles
Extensive experience with network security concepts and technologies, including firewall management, intrusion detection/prevention systems (IDS/IPS), network segmentation, VPNs, routing and switching protocols, network traffic analysis, and network security tools (e.g., Wireshark, tcpdump)
Experience with Network Access Control (NAC), DNS security, load balancers, and web application firewalls (WAFs)
Understanding of endpoint security concepts and technologies
Ability to lead and mentor junior security engineers
Excellent communication and presentation skills
Ability to effectively explain complex technical concepts to non-technical audiences
Strong analytical and problem-solving skills
Ability to think critically and strategically, anticipate security risks, and develop effective mitigation strategies
Preferred
Specific experience in Okta
Experience with Security Orchestration, Automation, and Response (SOAR) platforms
Experience with Network Access Control (NAC), DNS security, load balancers, and web application firewalls (WAFs)
Company
Expedite Talent Solutions
Expedite Talent Solutions is a minority- and woman-owned firm delivering agile staffing, project outsourcing, and professional services to clients across the Healthcare, Commercial, and Public Sectors.