Job Description:
Key Responsibilities:
Collaborate with engineering on security during design/development/testing
Provide domain expertise in cloud security and compliance and be a trusted technical advisor
Analyze technical risks of existing network / system and application architectures (IAAS/PAAS/SAAS) against correlating policies and risks, and provides appropriate remediation or risk reduction plans
Evaluates ongoing practices and procedures, technical documentation, and diagrams for appropriate security measure maturity and effectiveness
Solve cloud security and compliance challenges
Design and develop cloud security architectures and solutions to meet and exceed security requirements
Work with architecture and engineering teams in specifying technical requirements to support shared components deployed according to FedRAMP, NIST, DoD RMF, other applicable security, privacy requirements, frameworks, develop DevOps workflows, and CI/CD pipelines
Perform cloud security assessments, code audits and design reviews
Research and develop technical solutions to mitigate cloud security risks
Conduct research to identify new attack vectors
Develop Threat Models using industry best practices
Define technical control requirements, evaluate existing tool effectiveness, and propose solutions to enhance the company's security posture
Experience working within industry and government compliance standards and requirements including FedRAMP, CMMC, GDPR etc.,
Qualifications / Requirements:
7+ years of relevant experience
Bachelor's degree in Computer Science, or a related technical field, or equivalent practical experience
Experience with various public cloud services Using Azure / AWS / GCP strongly preferred
Certifications such as: CISSP, CCSP, AWS/Azure Security/DevOps/Professional Certifications is a plus
Understand secure development lifecycles
Solid understanding of IAM, PKI and network protocols
Relevant work experience in web application security
Experience with security testing methodologies and tools
Foundation in, and in-depth technical knowledge of, security engineering, computer and network security, authentication, security protocols and applied cryptography is a plus
Excellent writing and verbal communication skills
Very detail-oriented in planning, implementation, documentation, and follow-up
The ability to work completely independently or with a team
Team player attitude with experience working in a collaborative environment
P Himabindu
Talent Acquisition Specialist
Rrootshell Technologiiss Pvt Ltd
| m: +91 7997168***| e: hi******u@ro*********c.com | w: www.rootshellinc.com
https://www.linkedin.com/in/hima-bindu-60818116b/