LHH ยท 7 hours ago
IT Cloud Security Director I (Security Automation/DevOps)
Maximize your interview chances
AdviceConsulting
H1B Sponsor Likely
Insider Connection @LHH
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Design and implement security automation into existing systems using a combination of Python, Bash, and CI/CD tooling.
Design and integrate automated security controls, such as SAST, SCA, etc. into an existing, customized SDLC.
Work across functional teams to gather requirements and propose technical solutions.
Work across teams to enforce security controls consistently and reduce existing security debt.
Direct application teams with onboarding the cloud security requirements; working with vendors to troubleshoot the platform and issues related to such integrations.
Leverage automated process to mitigate security vulnerabilities in the environment by working with the Application Security team to triage security vulnerabilities.
Contribute to security requirements across CNA cloud applications, provide guidance for cloud security and automation, and ensure that logical security controls are manageable and scalable.
Stay abreast of industry trends and best practices; conduct research, tests, and execute new techniques that can be reused and applied to SDLC.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
At least 5 years of strong/solid IT Cloud Security experience
At least 3 years of Sr/Lead experience
Design and implement security automation into existing systems using a combination of Python, Bash, and CI/CD tooling
Design and integrate automated security controls, such as SAST, SCA, etc. into an existing, customized SDLC
Work across functional teams to gather requirements and propose technical solutions
Work across teams to enforce security controls consistently and reduce existing security debt
Direct application teams with onboarding the cloud security requirements
Work with vendors to troubleshoot the platform and issues related to such integrations
Leverage automated process to mitigate security vulnerabilities in the environment
Contribute to security requirements across CNA cloud applications
Provide guidance for cloud security and automation
Ensure that logical security controls are manageable and scalable
Stay abreast of industry trends and best practices
Conduct research, tests, and execute new techniques that can be reused and applied to SDLC
Strong oral and written communication skills in the English language
Proven track records of building CI/CD pipelines for both application and infrastructure, with a focus on security
Expert knowledge of Cloud Native Engineering (GCP preferred)
Excellent hands-on experience with securing containers at scale
Hands on experience developing and deploying applications in a containerized environment
Mastery of automation tools (e.g., Concourse, Jenkins, Terraform, Ansible etc.)
Hands on experience developing, deploying and maintaining automation using automated tooling using Python, Go, or similar
Comfort with automated, frequent, incremental code testing and deployment as part of a set of mature DevOps practices
Expert knowledge of both Windows server operating system as well as expertise with one or more various Linux operating systems
Bachelor's degree in computer science, or equivalent
Minimum of 5 years of related work experience
Preferred
Experience in cloud security is a strong plus
Any supply chain protection experience is a plus
GitHub Actions is a plus
Company
LHH
Welcome to LHH! We're a global leader in HR solutions that future-proofs organizations and careers worldwide.
H1B Sponsorship
LHH has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2022 (1)
2020 (1)
Funding
Current Stage
Late StageCompany data provided by crunchbase