Lead Information Security Engineer (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Lead Information Security Engineer (Cloud Security): Leading the migration from Prisma Cloud to Wiz CNAPP with an accent on Cloud Security Posture Management (CSPM) and Policy-as-Code. Focus on designing scalable Rego policies, automating cloud misconfiguration detection, and securing Azure and GCP environments.
Location: Hybrid in Charlotte, NC | Chandler, AZ | Irving, TX
Company
is a staffing and professional services firm providing technical expertise for large-scale enterprise initiatives.
What you will do
- Lead engineering efforts to migrate CSPM capabilities from Prisma Cloud Enterprise to Wiz.
- Design, develop, and enhance Policy-as-Code (PaC) solutions using Rego to monitor cloud misconfigurations and drift.
- Build automation capabilities to streamline policy development and management via REST APIs.
- Configure and optimize Wiz detection for public cloud environments and IDE integrations.
- Collaborate with security engineers, cloud teams, and developers to implement scalable security controls.
- Mentor team members on automation best practices and maintain technical documentation.
Requirements
- 5+ years of Information Security Engineering experience.
- 4+ years of experience with Terraform and infrastructure automation.
- 2+ years of hands-on experience securing Azure and Google Cloud environments.
- 1+ year of experience with Rego Policy Development and/or Resource Query Language (RQL).
- Strong Python development and automation experience.
- Experience with CI/CD platforms such as GitHub Actions, GitLab CI, Jenkins, or Azure DevOps.
Nice to have
- Hands-on experience with Wiz in an engineering or support capacity.
- Kubernetes experience, including AKS, GKE, or OpenShift environments.
- Knowledge of cloud security frameworks like NIST, CIS Benchmarks, or CSA.
- Industry certifications such as CISSP, CISM, CISA, CRISC, CCSK, or GIAC.
- Microsoft Azure and/or Google Cloud certifications.
Culture & Benefits
- Work within a specialized Cloud Workload Lifecycle Security team.
- Participation in Agile Scrum or Kanban delivery processes.
- Opportunity to drive large-scale cloud transformation in an enterprise environment.
- Collaborative environment focusing on DevSecOps practices and automation.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →