Company

HearstSee more

addressAddressCharlotte, NC
CategoryInformation Technology

Job description

Hearst Technology, Inc, Information Security Office seeks a Senior Cloud Security Engineer to lead the design and development of Azure and AWS security architecture. This position will contribute directly to the enterprise’s global cloud architecture and lead the security vision and strategy for cloud-based applications.

The Cloud Security Engineer role is responsible for architecting, implementing, and advising a secure cloud infrastructure supporting business needs. The position will design secure infrastructure and applications that align with business and cybersecurity strategy to support a fast-paced environment. An advanced role, the Cloud Security Engineer will deliver resilient applications at scale to support business initiatives. The Cloud Security Engineer must have advanced administration and troubleshooting skills and the knowledge to support architecture, engineering, and design principles. 

The role requires deep technical knowledge of cloud computing architecture, security principles and cybersecurity best practices. A Cloud Security Engineer is highly technical and proficient in cybersecurity and systems administration across various infrastructure types (SaaS, IaaS, PaaS). Also, demonstrated experience with AWS, Microsoft Azure, Google Cloud and other cloud solutions is required. The ability to automate, provision and manage cloud resources across multiple environments with infrastructure as code (IaC) principles is required. Successful candidates in this role are adept at working with business units and have good listening and communication skills. In tandem with security leadership, cloud architects will consistently assess the threat landscape and adapt quickly to protect the business from risk. The Cloud Security Engineer will report to the Director of Security Architecture and have strong working relationships with IT and application development leadership.

Typical Duties & Responsibilities

  • Conduct Cloud Security planning to determine and describe Cloud Security requirements
  • Architect, design and implement scalable, resilient solutions in public, private and hybrid clouds.
  • Support Cloud Security architecture for SaaS, PaaS and IaaS.
  • Recommend and advise on strategies and best practices for cybersecurity and a flexible architecture.
  • Draft cybersecurity strategies that align with business objectives and meet compliance and regulations.
  • Design security for monitoring, logging, IAM, encryption, data protection, detection and preventive controls.
  • Work in tandem with team leads and subject matter experts to validate configurations are aligned, adopted and implemented.
  • Oversee enforcement of vulnerability management mitigation in technical teams’ operational responsibilities.
  • Liaison with cybersecurity teammates to investigate security incidents and breaches.
  • Orchestrate scalable, resilient and efficient containerized microservices.
  • Integrate and automate secure continuous integration/continuous delivery build configurations for development pipelines.
  • Proactively analyze, identify and resolve performance bottlenecks.
  • Assist with strategy, implementation and recovery point/time objective for business continuity and disaster recovery.
  • Recommend and implement Cloud Security tools and controls.
  • Use Cloud Security tools for asset discovery, cloud workload protection platform (CWPP), control plane configuration and Cloud Security posture management (CSPM).
  • Stay up to date with cybersecurity threats, risks and vulnerabilities with potential impact to services.
  • Form relationships with colleagues in operations, threat intel, software development and risk management.
  • Collaborate with IT and cybersecurity leadership to develop practices to reduce attack surface, as well as countermeasures to impede internal threats and external attackers.
  • Define key performance indicators, objectives and key results, and metrics to illustrate efficacy with cloud infrastructure and applications.
  • Attend project and implementation meetings and advise secure application and infrastructure configurations.
  • Develop, maintain and enforce Cloud Security policies and procedures, as well as best practices for following standards such as FedRAMP, Cloud Security Alliance, SOC 1/2/3, CIS and NIST SP 800 series.
  • Communicate the state of Cloud Security posture to cybersecurity leaders, stakeholders, IT and developers.
  • Participate in Cloud Security groups and consortiums for knowledge and building relationships.
  • Be willing to work nonstandard business hours for projects, business impact issues and incident response.
  • Perform other duties as assigned.

Education

  • Bachelor’s degree in computer science, business, information technology, or a related field

Required Skills & Experience

  • At least 10 years’ experience in IT and security operations, with a focus on Cloud Security.
  • Demonstrated experience as a team lead, managing people, as well as technology.
  • Functional use with cloud tools (CWPP, CSPM, cloud-native application protection platform) and automation (Chef, Puppet, Salt, Ansible).
  • Proficient in one or more: Terraform, Kafka, Kubernetes, scripting (Python, JavaScript, Bash).
  • Proven use with zero trust network access, encryption, web application firewalls, data protection, vulnerability management, API security, IaC.
  • Ability to influence technical team and business units and collaborate to reduce attack surface.
  • Knowledge in one or more: NIST 800-144, CIS, CSA-CCM, ISO (27040, 27017, 27001).
  • Capacity to comprehend complex technical infrastructure, managed services and third-party dependencies.
  • Applicable knowledgeable as needed about FISMA, GDPR, PCI, CCPA, HIPAA, GLBA
  • Strong written and oral communication skills across varying levels of the organization.
  • Capacity to work in a team environment, excellent interpersonal and communication skills
  • Capability to work independently with minimal direction; initiative and motivation to work alone

Preferred Qualifications

  • Preferably one or more certifications such as GCSA, CCSP, CCSK or CISSP, or one offered by AWS, Google or Microsoft.

Hearst is one of the nation’s largest global, diversified information, services and media companies.


Hearst has been innovating for more than a century, leading with purpose, integrity and a culture of care, with a mission to inform audiences and improve lives.


The company’s diverse portfolio includes global financial services leader Fitch Group; Hearst Health, a group of medical information and services businesses; Hearst Transportation, which includes CAMP Systems International, a major provider of software-as-a-service solutions for managing maintenance of jets and helicopters; ownership in cable television networks such as A&E, HISTORY, Lifetime and ESPN; 35 television stations; 24 daily and 52 weekly newspapers; digital services businesses; and more than 200 magazines around the world.


Hearst is always moving forward, investing in healthcare solutions to improve patient outcomes and technology that curbs emissions; providing vital analysis, data and software to the global financial services industry; delivering important service and investigative journalism; and inspiring audiences with sports and entertainment programming.


With a commitment to maintaining the highest quality in its products and services, Hearst is dedicated to serving the communities it operates in, both civically and philanthropically.


Hearst is an Equal Employment Opportunity employer.  We do not discriminate in hiring on the basis of race, color, national origin, religion, creed, sex or gender, gender identity, gender expression, sexual orientation, age, physical or mental disability, military or veteran status, or any other characteristic protected by federal, state, or local law.

Benefits

Flex hours, Health care
Refer code: 9277707. Hearst - The previous day - 2024-05-18 06:53

Hearst

Charlotte, NC
Popular Senior Cloud Security Engineer jobs in top cities
Jobs feed

Dog Walker/Pack Leader

Aunt Wendy's Dog Care Llc

Maplewood, NJ

$50,000 - $100,000 a year

Transporter/Aide FT Evenings

Rwjbarnabas Health

Elizabeth, NJ

$33K - $41.8K a year

Facilities Maintenance Coordinator

Elizabethcoalition To House The Homeless

Elizabeth, NJ

From $25 an hour

Parts Counter Person

Sansone Toyota

Avenel, NJ

$45,000 - $75,000 a year

Office Assistant/Bookkeeper

Piece Of Cake

Rahway, NJ

$18 - $20 an hour

Customer Service Specialist

Dick's Sporting Goods

Glens Falls, NY

$15 - $22 an hour

Stylist - Retail Sales Associate

Banana Republic

Lake George, NY

$15 - $16 an hour

Grocery Associate Part Time

Product Connections

Queensbury, NY

$17 - $25 an hour

Retail Sales Associate

Homegoods

Saratoga Springs, NY

$15.00 - $15.50 an hour

Retail Sales Associate

Francesca's

Saratoga Springs, NY

$15.00 - $15.25 an hour

Share jobs with friends