Hi,
DevOps Cloud Security Engineer
Remote- USA
Full Time
Job Summary
We are seeking an experienced DevOps Cloud Security Engineer to design, implement, and maintain secure, scalable cloud infrastructure and DevSecOps solutions. The ideal candidate will have strong hands-on experience across cloud platforms, CI/CD, infrastructure automation, container security, cloud security controls, and security monitoring.
Key Responsibilities
- Design and implement secure, scalable cloud infrastructure across AWS, Azure, or GCP.
- Integrate security controls throughout the DevOps/DevSecOps lifecycle.
- Develop and maintain CI/CD pipelines with automated security, compliance, and quality checks.
- Implement Infrastructure as Code using Terraform, CloudFormation, or similar tools.
- Secure cloud services including IAM, networking, storage, compute, containers, Kubernetes, APIs, and serverless services.
- Implement cloud security best practices including least privilege, encryption, secrets management, vulnerability management, and identity-based access controls.
- Deploy and manage security tooling for SAST, DAST, SCA, container scanning, IaC scanning, and vulnerability assessment.
- Secure Docker containers and Kubernetes environments, including RBAC, network policies, admission controls, secrets, and image security.
- Monitor cloud environments for security threats, misconfigurations, vulnerabilities, and compliance violations.
- Automate security and operational processes using Python, Bash, PowerShell, or similar scripting languages.
- Collaborate with Cloud, DevOps, Infrastructure, Application Development, and Cybersecurity teams to identify and remediate security risks.
- Support incident response, root-cause analysis, and remediation of cloud security events.
- Implement and maintain security controls aligned with frameworks such as NIST, CIS, SOC 2, ISO 27001, PCI DSS, or FedRAMP, as applicable.
- Participate in architecture and security reviews and provide recommendations for improving cloud security posture.
- Maintain security documentation, standards, architecture diagrams, and operational procedures.
Required Technical Skills
- Strong experience in DevOps, Cloud Engineering, Cloud Security, or DevSecOps.
- Hands-on experience with AWS, Azure, or GCP.
- Strong knowledge of CI/CD tools such as Jenkins, GitLab CI, GitHub Actions, Azure DevOps, or similar.
- Experience with Terraform or other Infrastructure-as-Code technologies.
- Strong knowledge of Docker and Kubernetes.
- Experience with cloud security services such as AWS IAM/Security Hub/GuardDuty, Azure Defender/Microsoft Defender for Cloud, Azure Entra ID, or equivalent.
- Strong understanding of IAM, RBAC, networking, firewalls, VPNs, DNS, TLS/SSL, encryption, and key management.
- Experience with security scanning and DevSecOps tools such as Snyk, SonarQube, Checkmarx, Veracode, Trivy, Prisma Cloud, Wiz, Aqua, or similar.
- Proficiency in Python, Bash, PowerShell, or similar scripting languages.
- Experience with Git and Git-based development workflows.
- Knowledge of SIEM, logging, monitoring, and security incident response.
Warm Regards,
Navneet Jha
Team Lead
[email protected]
Direct No: 848-999-0314
Synchrony Systems Inc.