Job Description
The Cloud Security Engineer Expert implements technology solutions that enforce security policies and best practices to safeguard data and infrastructure from internal and external threats.
The Cloud Security Engineer role is responsible for the design, build, integration, and support of the enterprise Cloud Access Security Broker (CASB) and SaaS Security Posture Management (SSPM) solutions. Engineer will design, build, integrate and support the CASB and SSPM solutions in alignment with enterprise strategy and vision.
Duties & Responsibilities:
* Design, develop and recommend solutions that ensure the security of data in cloud applications and services.
* Support integration of cloud applications with our cloud security solutions to enhance visibility of user activity across cloud applications and services.
* Independently assess risks and identify vulnerabilities in cloud applications with an eagerness to suggest new processes, policies, and overall improvements to internal security controls.
* Partner with internal stakeholders to implement security policies in cloud applications and services.
* Provide second and third tier support for troubleshooting production issues. Perform root cause analysis and implement sustainable fixes.
* Create technical documentation and support architectural and infrastructure reviews.
* Provide support for completing security control audits.
* Continually seek opportunities to improve the performance, stability, and efficiency of cloud security solutions.
* Maintain a comprehensive understanding of services provided by Huntington and develop relationships throughout the organization to assist the Cybersecurity organization in accomplishing its goals for the company.
Required Skills & Experience
* Four-year college preferred or commensurate work experience.
* 7+ years of experience in Cybersecurity or 7+ years of experience in Information Security Engineering or a related field
* Comprehensive understanding of security methodologies and best practices.
* Experience with securing cloud applications either with native cloud service provider capabilities or 3rd party vendor tools.
* Experience with identifying shadow IT and remediating vulnerabilities within shadow applications.
* Familiarity with common Information Security and data protection frameworks and standards (i.e. CSA CCM, CIS, NIST, MITRE, ITIL, HIPAA, GDPR, PCI DSSS, ISO 270001).
* Experience working in a highly regulated environment is a plus.
* Working knowledge of Agile/Scrum, experience adopting or leading continuous integration and continuous delivery concepts and frameworks.
* Highly organized and motivated self-starter who can deliver results with minimal direction.
* Excellent verbal and written communication skills with ability to distill key data points and effectively present information.
Plus:
Nice to Have Skills & Experience
* Experience with administering CASB and SSPM solutions.
* Experience in automation and scripting of applications and systems
* Certified Cloud Security Professional (CCSP), or related certification(s).
Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.