9728 Cloud Security Architect Vulnerability Management
Posted today
professional recruitersTempe (AZ)
Computer Systems Engineers/ArchitectsComputer Systems Design Services
SENIORITY
Lead
About the role
Cloud Security Architect, Vulnerability Management Utah or TempeThe Company has experienced significant growth serving some of the most innovative companies in the world. Our clients are forward thinkers. True believers. Optimists. Inspired by them, we are changing the face of banking. Our clients have redefined products in many areas of the global economy, and every day we power their ability to do so. And we need leaders with the same can-do attitude as our clients. We're looking for creative thinkers who want to challenge the status quo and create a truly seamless digital banking experience on a global scale.In this newly created role, you will drive The Company's vulnerability management cloud program implementation. You will establish processes and governance for a successful cloud vulnerability remediation program, working with technology partners to determine an appropriate remediation approach for cloud assets. With your unique blend of cloud engineering experience and vulnerability management expertise you will be the subject matter expert in cloud vulnerability management. As part of our collaborative teams, you will produce actionable results by working with IT asset owners, management, and other subject matter experts to ensure our cloud environment is secure.Qualifications:Deep understanding of vulnerability remediation. Core competency is giving remediation advice to end-users(IT Administrators) to resolve vulnerabilities.Proficient in AWS EC2,RDS, Lambda, EKS - understanding of mechanisms and methods used to deploy compute in AWS.Experience and working knowledge of network architecture, subnetting, and TCP/IP protocols, and OSI model layers and protocols at each model layerUnderstanding of international and United States laws and regulations impacting cyber security and personal data privacy, including GLBA, SOX, and the FFIEC Information Security requirementsWorking knowledge of security frameworks and control references such as NIST CSF, CIS 20, COBIT, PCI DSS, OWASP, ISO 27000 family and NIST SP 800 series.Familiar with various security architectures and methodologies (Defense in Depth, Segmentation, Least Privilege, Zero-Trust, Kill-Chain, etc.)Skills:Excellent analytical and problem solving skillsAbility to demonstrate empathy while seeking common interests; effective problem and conflict resolution skillsFamiliar with government security standards and regulations including GLBA, SOX, PCI, COBIT, ITILFamiliar with various security architectures and methodologies (Defense in Depth, Kill-Chain, NIST, Critical Controls, OWASP, etc.)Leadership qualities, desire to influence horizontally and vertically, and mentor team members.Excellent written and verbal communication skillsEducation/Experience:Bachelor's degree in management Information Systems, Computer Science, and/or Business, or equivalent work experience1-2+ years working in IT security domainExperience with AWS cloud services and security toolsExperience with SIEM technologiesExperience with AWS in a security environment preferredExperience working with Windows and Linux operating systemsExperience with rapid7 insightVM and vulnerability assessmentsCertifications:One or more of the following professional certifications: CISSP, CISM, SANS GIAC, CISA,CCNA, Security+, AWS Solutions Architect, AWS Security Specialist (or willingness to obtain within 6 months).
Before you apply
Applying takes about a minute. These four things decide how fast it moves after that.
Your profile is current
It's what we read first. Occupations, seniority and locations matter more than a long history.
Two examples you can talk through
Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.
A number in mind
What you're on now and what would make you move. We negotiate better when we know both.
Your notice period
Employers plan around it, and it's the question that stalls offers most often.
Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.
More like this
