About this role
About the Role Cloud security engineer responsible for creating and implementing security concepts via Terraform across cloud environments such as GCP, Azure, Alibaba and OpenShift, with a focus on GCP. The role also conducts security assessments, identifies gaps, enforces guardrails via code, monitors CNAPP risk, and promotes Kubernetes security best practices. What You'll Do
- Create and implement via Terraform security concepts and architectures in various cloud environments (GCP, Azure, Alibaba, OpenShift), with focus on GCP
- Conduct security assessments and risk analyses of cloud infrastructures and work with internal teams to ensure optimal security solutions
- Identify cloud security gaps and develop risk mitigation measures, predominantly via code
- Enforce security guard-rails (policy restrictions) in cloud environments via code
- Monitor CNAPP (CSPM, CIEM, CWPP) cloud security risks and address them accordingly for resolution
- Develop and enforce whenever possible Kubernetes Security Best Practices What We're Looking For
- Degree in Computer Science, Information Security or a comparable qualification
- Expertise in the design and implementation via code of security concepts (e.g. organization policies) for cloud platforms (GCP and OpenShift is a must, Azure and Alibaba is preferable)
- Expertise in setting up and managing CNAPP solutions
- Expertise in ASPM (Application Security Posture Management) and DevSecOps is a plus
- Advanced Kubernetes skills and Advanced Terraform coding skills
- Good knowledge of network security, identity and privilege access management, landing zone concepts for cloud platforms (Azure, GCP, Alibaba, OpenShift) and usage of project factories for complete cloud landing