- Company Name
- Rockwoods Inc
- Job Title
- Senior Cloud Security Engineer
- Job Description
-
Job title: Senior Cloud Security Engineer
Role Summary: Lead the design, implementation, and maintenance of secure cloud infrastructures across AWS, Azure, and GCP, focusing on infrastructure-as-code (IaC) security, cloud-native firewall configuration, and DevSecOps automation.
Expectations: • 7+ years in cloud security or DevSecOps roles
• Proven track record managing IaC security, cloud-native firewalls, and compliance audits
• Strong analytical and problem‑solving skills with a security‑first mindset
Key Responsibilities: • Integrate IaC security scanners (Checkov, TFSec, Snyk, Terraform Validator) into CI/CD pipelines.
• Review and remediate findings in Terraform, CloudFormation, and ARM templates.
• Design, deploy, and tune cloud‑native firewall rules (AWS Security Groups, Azure NSGs, GCP Firewall).
• Conduct firewall tuning, audits, and access reviews to reduce risk exposure.
• Ensure adherence to NIST, CIS Benchmarks, ISO 27001, and support external security audits.
• Automate security processes using Python, PowerShell, and Bash scripts.
Required Skills: • Deep knowledge of AWS, Azure, and GCP security services.
• Expertise in IaC tooling and security platforms (Checkov, Prisma Cloud, Aqua, Snyk).
• Strong scripting and automation proficiency (Python, PowerShell, Bash).
• Experience with CI/CD pipeline integration and DevSecOps practices.
Required Education & Certifications: • B.S. in Computer Science, Information Security, or related field (or equivalent experience).
• Security certifications such as AWS/Azure/GCP Security, CISSP, CCSP preferred.