- Company Name
- WYZ GROUP
- Job Title
- CDI - INGENIEUR INFRASTRUCTURE CLOUD & SECURITE (/D) F/H
- Job Description
-
Job Title: Infrastructure Cloud & Security Engineer
Role Summary:
Design, implement, and secure scalable cloud environments (primarily AWS) while embedding DevSecOps practices across the software development lifecycle. Drive security policy definition, compliance, and continuous improvement of security controls, and lead vulnerability management and remediation initiatives.
Expectations:
- Deliver secure, compliant cloud infrastructures that meet ISO 27001, GDPR, and internal standards.
- Proactively identify, prioritize, and remediate security vulnerabilities to maintain a robust threat posture.
- Champion a security‑first culture and provide clear, actionable guidance to multidisciplinary teams.
- Maintain and evolve CI/CD pipelines with integrated security scanning and automated IaC deployments.
Key Responsibilities:
- Define and enforce security and compliance policies for AWS environments.
- Conduct and coordinate internal security audits and technical compliance checks.
- Plan, execute, and supervise internal penetration testing campaigns.
- Analyze vulnerability findings, prioritize risks, and track remediation progress.
- Design and maintain scalable, resilient cloud architectures using Terraform and IaC best practices.
- Collaborate with development teams to implement secure CI/CD pipelines (BitBucket Pipelines, Trivy, SonarQube, DefectDojo).
- Evaluate and recommend security tools, technologies, and processes to enhance reliability and protection.
- Document technical risk assessments, gaps, and corrective actions.
- Facilitate knowledge transfer and security awareness across teams.
Required Skills:
- 2+ years in a similar role focused on cloud security and infrastructure.
- Strong expertise in AWS services and security controls (AWS Security Hub, IAM, VPC, etc.).
- Proficiency with DevSecOps tools: Trivy, SonarQube, DefectDojo, and automated scanning workflows.
- Hands‑on experience with IaC (Terraform) and automated deployment pipelines.
- Knowledge of security frameworks and standards (ISO 27001, GDPR, OWASP, NIST).
- Scripting proficiency in Python, Bash; experience with PHP acceptable.
- Familiarity with observability platforms (Grafana, ELK/EFK, Dynatrace).
- Excellent documentation, communication, and stakeholder management skills.
Required Education & Certifications:
- Bachelor’s or Master’s degree in Security Engineering, IT, or related field.
- Certifications such as AWS Certified Security – Specialty, CISSP, or equivalent are a plus.