Назад
Company hidden
2 дня назад

Cyber Security Risk & Assessment Lead

150 000 - 160 000$
Формат работы
remote (только USA)
Тип работы
project
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Security Risk & Assessment Lead (Cloud and Application Security): Conducting detailed security reviews and risk assessments across applications, infrastructure, cloud platforms, and operational processes with an accent on security architecture, threat modeling, compliance, and remediation planning. Focus on evaluating AWS, Azure, and GCP environments, reviewing DevSecOps and Secure SDLC practices, and presenting risk-based recommendations to technical and executive stakeholders.

Location: Remote within the United States; candidates must be legally authorized to work in the United States. Jersey City, NJ.

Salary: $150,000–$160,000 yearly USD

Company

hirify.global provides the role through a contract engagement.

What you will do

  • Conduct detailed security reviews across applications, infrastructure, cloud platforms, and operational processes.
  • Identify vulnerabilities, control gaps, compliance issues, and security risks, then develop remediation plans and roadmaps.
  • Perform security architecture, threat modeling, application security, and secure design assessments.
  • Assess AWS, Azure, and GCP environments, containers, databases, APIs, networks, identity controls, encryption, and data protection.
  • Evaluate DevSecOps, Secure SDLC, security testing, monitoring, incident response, governance, and compliance practices.
  • Present findings and executive summaries, facilitate stakeholder workshops, and align technical and business leaders on remediation priorities.

Requirements

  • 10–15 years of experience in cybersecurity, security assessment, or risk management.
  • Strong experience with detailed security reviews, risk assessments, security architecture reviews, threat modeling, vulnerability management, governance, compliance, and control assessments.
  • Application security experience with Secure SDLC, SAST, DAST, SCA, API security, OWASP Top 10, secure coding principles, penetration testing concepts, and secure code review.
  • Experience assessing cloud security across AWS, Azure, and/or GCP.
  • Knowledge of IAM, privileged access management, container security, network security, data protection, encryption, SIEM concepts, incident response, audits, and policy reviews.
  • Legal authorization to work in the United States is required.

Nice to have

  • AI security architecture experience.
  • Experience with SAST and SCA tools, IBM Security Verify Governance or IDAM, and OT/ICS cybersecurity.
  • Experience with risk and crisis management, cloud governance, compliance frameworks, audits, and regulatory requirements.
  • Experience with application security sign-offs, remediation validation, and executive security reporting.

Culture & Benefits

  • Remote work mode.
  • Inclusive workplace committed to equal consideration for qualified applicants.
  • Contract engagement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →