Cloud Security Engineer

unlimited holidays
Work set-up: 
Full Remote
Contract: 
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Minimum of 3 years of experience securing complex AWS environments., Strong understanding of AWS security tools, IAM roles, and CloudWatch/Athena., Proficiency in scripting and automation to improve security processes., Bachelor's degree in Computer Science, Software Engineering, or related field, or equivalent experience..

Key responsibilities:

  • Implement and monitor security controls for AWS-based workloads.
  • Support compliance efforts including SOC2 and TX-RAMP.
  • Collaborate with development and DevOps teams on security architecture.
  • Develop security reports, dashboards, and alerting strategies.

Encoura logo
Encoura Education Scaleup https://encoura.org/
51 - 200 Employees
See all jobs

Job description

Role Overview
We are looking for an experienced, talented, and motivated Cloud SecOps Engineer with strong experience with the secure delivery of AWSbased Linux and Windows workloads, and related systems and processes. The role involves broad governance, risk and compliance responsibility for evaluating systems, providing recommendations, supporting the SOC2 and TXRAMP compliance programs, and mitigating issues to ensure the security of the Encoura systems. You will be a key member of a small, skilled, resultsoriented team of technology professionals tasked with ens ring our systems and data are protected. The candidate should be detailoriented and be able to quickly evaluate processes and systems and optimize security controls and practices.

This role partners with application development teams and DevOps Engineers in the development and secure delivery of AWSbased platforms and products and to align account permissions and access levels to business needs consistent with required auditcompliance standards. Additionally, this role will audit systems security and ensure Encoura platforms meet relevant compliance benchmarks. A few examples of technologies we work with daily are AWS Core Services, API Gateway, Lambda, Sumo Logic, Data Dog, Docker, Linux, Windows, Okta, PostgreSQL, MS SQL Server, MongoDB, Databricks, Node.JS, Python, Kubernetes, GitHub, GitHub Actions, StackHawk, JIRA & Confluence, LaunchDarkly, GraphQL, OneTrust, Tenable, CrowdStrike and Snowflake.

A Day in the Life
  • Risk & compliance tracking against government standards (e.g. CCPA, NIST, SOCII).
  • Tracking and remediation management of vulnerability issues and system patches.
  • Review and recommend additional or changes to existing AWS securityminded services.
  • Work with managed security service provider to triage and respond to potential security events.
  • Grow, as needed, the data fed to SIEM to provide visibility into potential security events.
  • Develop securityminded reports and dashboards for the Exec team, and for techies.
  • Develop and deploy security system alerting and monitoring strategy.
  • Systems access level inventory and auditing.
  • Provide asneeded securityminded operational support of our applications and platforms.
  • Partner with development teams on security architecture decisions.
  • Implement tagging and reporting strategy to measure security event riskimpact.
  • Gain functional knowledge of all Encoura applications.
  • Serve in an oncall rotation for security, or potential securityrelated issues.

  • Role Progression
  • Within 1 month, you’ll: Be learning about the company and department priorities for nearterm and longterm security tasks, compliance support and risk mitigation.
  • Within 3 months, you’ll: Support your security team members for tactical support of product, process and SOC2 audit evidence.
  • Within 6 months, you’ll: Begin to take ownership and provide securityminded improvements.
  • Within 1 year, you’ll: Be an integral part of the security team, securing Encoura’s systems and data, learning and growing your career.

  • About You
  • Experience securely delivering in a complex AWSbased microservices application environment.
  • Strong understanding of the AWSbased security tooling and services.
  • Strong understanding of AWSbased IAM roles and accounts.
  • Strong understanding of AWS CloudWatchAthena.
  • Proficiency and understanding of the AWS console and CLI.
  • 3+ Years experience securing a similarly complex AWSbased environment.
  • 5+ Years of IT experience designing and implementing security solutions.
  • Strong scripting and automation skills – you believe you can automate everything.
  • Handson experience with troubleshooting, securing, and improving AWS environments.
  • As related to related to security, familiar with the concepts of microservice architecture and how those concepts are implemented in AWS.
  • Experience installing, configuring, and managing and patching cloudbased and onprem systems.
  • A solid security foundation – you’re always thinking, “what happens if this system is compromised?”
  • Experience working with application development teams who work in AgileScrumKanban.
  • Able to balance security requirements with budgetary requirements.
  • Experience working with SaaSbased solutions that integrate with AWS is a plus.
  • Experience with Linux and Windows administration.
  • Information Security experience preferred.
  • BS in Computer Science, Software Engineering or equivalent, or a Bachelor’s in an unrelated field with at least 5 years of professional technologybased experience.
  • AWS Security – Specialty certification (strongly preferred).
  • Additional AWS certifications are a plus, as are other relevant certifications.
  • A detailoriented, datadriven decisionmaker with a strong appreciation for simplicity in system architecture.
  • A collaborative team player, comfortable mentoring others and crossfunctionally communicating.

  • What Sets Us Apart
  • Mission driven culture
  • Comprehensive health and benefits package
  • 401k company match that vests immediately upon participation
  • Paid holidays and a generous PTO policy
  • Paid parental leave
  • About Us

    Encoura’s mission is to empower students and institutions to create meaningful connections so everyone can make the most informed decisions to achieve their goals. Since 1972, the company has evolved its products and services to better represent the link between students and higher education institutions and to create the highest probability of student success.
    With the launch of the Encoura platform in 2017, the company provides custom technology solutions that combine Eduventures research, data science, strategic enrollment, and multichannel marketing services to over 2,000 higher ed institutions. The company also offers Encourage® —the nation’s largest free college and career planning program used by millions of high school students and educators nationwide.
    It is the policy of the Company to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information. All applicants must be eligible to work in the U.S.
  • Required profile

    Experience

    Level of experience: Senior (5-10 years)
    Industry :
    Education
    Spoken language(s):
    English
    Check out the description to know which languages are mandatory.

    Other Skills

    • Collaboration
    • Lateral Communication
    • Detail Oriented
    • Mentorship

    Cloud Security Engineer Related jobs