- Company Name
- CARFAX
- Job Title
- Senior Security Engineer - Cloud Specialist
- Job Description
-
**Job title:**
Senior Security Engineer – Cloud Specialist
**Role Summary:**
Lead the design, implementation, and operation of security controls across hybrid cloud environments, ensuring continuous threat detection, incident response, and compliance with organizational security policies. Work closely with cross‑functional IT and business teams to embed security best practices into all cloud services and operations.
**Expectations:**
* Operate in a collaborative, fast‑paced environment with a focus on proactive defense.
* Deliver measurable improvements to cloud security posture through automation, threat hunting, and risk‑based reporting.
* Maintain up‑to‑date expertise in Azure and AWS security, cloud networking, and threat intelligence.
**Key Responsibilities:**
1. Monitor network traffic, systems, and applications continuously for cyber threats, conducting analysis and response.
2. Oversee continuous monitoring of public, private, and hybrid cloud environments, detecting and mitigating security findings.
3. Lead cloud security operations: detection, triage, investigation, containment, remediation, and reporting.
4. Apply an offensive security mindset to identify and remediate vulnerabilities and optimize tooling.
5. Perform in‑depth analysis of cloud‑related findings, assess risk, and determine root causes.
6. Develop and maintain a cloud management program to strengthen posture, assess risks, and enforce controls.
7. Conduct threat hunting using advanced analytics to uncover hidden threats and vulnerabilities.
8. Produce risk‑based performance and security reports with actionable insights for stakeholders.
9. Author and update security documentation (policies, procedures, guidelines) and support security awareness initiatives.
**Required Skills:**
* 4–7 years of cloud security operations experience, primarily in Microsoft Azure and Amazon Web Services (AWS).
* Strong knowledge of cloud technologies, management platforms, and security tools; familiarity with automation (Python, PowerShell).
* Ability to interpret and analyze data from multiple security and cloud tools to detect anomalies and malicious activities.
* Deep technical understanding of IaaS, PaaS, and SaaS security threats, risks, and vulnerabilities.
* Experience in cloud networking architecture, hybrid‑cloud operations, and encryption (VPN, IPsec, SSL/TLS, LDAP, PKI).
* Proficiency in container risk monitoring (build and runtime) and cloud‑native security solutions.
* Multi‑platform experience with Linux and Windows (VM‑based or containerized).
**Required Education & Certifications:**
* Bachelor’s degree in Computer Science, Information Technology, Cloud Computing, or a related field (or equivalent work experience).
* Certifications such as Microsoft Certified: Azure Security Engineer Associate, AWS Certified Security – Specialty, or equivalent are highly desirable.