Job Specifications
Job#: 3022930
Job Description:
Client: Financial Services
Team: CyberSecurity
Job Title: Posture Management Engineer
Location: Phoenix, AZ, Charlotte, NC, Dallas, TX | Hybrid 3x/week
Contract Length: 6+ months
Rate: $69-73/hr
Top Requirements:
5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
4+ years of Intermediate to Advanced experience with Terraform/automation
2+ years of practical experience and strong understanding of Azure & Google public cloud – platforms, services, configurations, workloads & hardening practices
1+ year of experience with Resource Query Language (RQL) and/or Rego policy dev
Experience with extracting, transforming, and loading data via REST API endpoints
Advanced experience with Python programming/automation
Familiarity with CI/CD tools (GitHub Actions, GitLab CI, Jenkins, Azure DevOps)
Plusses:
1+ year of deep Wiz experience, in either an engineering or support role
Advanced experience with Rego policy automation
Knowledge and understanding of DevSecOps and deployment automation to cloud environments
Expertise and experience with API driven automation of policy creation
Expertise and experience with Infrastructure as Code (IaC) and/or Policy as Code (PaC) concepts/tools
Job Summary:
This manager is looking for a Posture Management Engineer to join their Cloud Workload Lifecycle Security (CWLS) team, within the Cybersecurity – Vulnerability & Patch Management organization. The Posture Management Engineer will support the migration from Prisma Cloud Enterprise to the Wiz CNAPP (Cloud Native Application Protection Platform) tool, with specific focus on Cloud Security Posture Management or the CSPM module of the Wiz product. This area of our team specializes in engineering and support for Public Cloud mis-configuration and configuration drift detective scanning and the associated integrations to partner systems for logging, delivery of Findings, etc.
Day-to-Day Responsibilities:
Leveraging your deep expertise with automation to “semi-automate” Rego Policy as Code development, leveraged to monitor for cloud resource misconfiguration/config. drift.
Engineering and support for the migration of CSPM capabilities from Palo Alto Prisma Cloud Enterprise to Wiz.
Act as the subject matter expert (SME) for Wiz capabilities, roadmap features, and best practices specific to CSPM.
Enable and tune Wiz detection for:
Public Cloud mis-configurations
Public Cloud config drift
Ad-hoc, on demand mis-config. scanning for Developers w/ IDE integration
Ability to efficiently transform security requirements/parameters into Rego policies for Wiz CSPM.
Strong collaboration with direct teammates, vendors and partners, ensuring the success of policy development automation.
Lead technical/engineering requirement gathering discussions and effectively design/develop complex solutions.
Troubleshoot and resolve support escalation cases related to Wiz CSPM.
Contribute to internal code repositories to continuously improve overall code quality for the team.
Provide high quality documentation of the delivered solutions.
Train other team members on utilizing the PaC semi-automation tooling/approach you establish for our policy development practice
Be a motivated self-starter, quick to adapt and stay focused on delivering results in a fast-paced environment with aggressive deadlines.
Work effectively with a virtual Team consisting of members across various locations in the U.S. and India.
EEO Employer
Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation in using our website for a search or application, please contact our Employee Services Department at [email protected] or 844-463-6178.
Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing® in Talent Sat
About the Company
Apex Systems is a leading global technology services firm that incorporates industry insights and experience to deliver solutions that fulfill our clients' digital visions. We offer a continuum of services, specializing in strategy, transformation, and managed services across application development, data, enterprise platforms, cloud and infrastructure, and cybersecurity. Through our ability to innovate alongside our customers, we build and deploy the right artificial intelligence solutions to realize business value and impr...
Know more