Cloud Security Engineer ensuring secure solutions in the cloud for UMB's technology. Collaborating with teams to define security controls and integrate best practices.
Responsibilities
Define and execute public cloud-centric security controls and help design secure patterns for computing, storage, networking, operational, and security domains
Advise application, product, and cloud infrastructure teams on incorporating cloud infrastructure capabilities with an information security mindset
Actively collaborate with cloud stakeholders to deliver best-fit secure solutions for UMB
Identify emerging cloud infrastructure services and needs to meet business requirements
Serve as a pragmatic, results-driven thought leader and consensus builder with a technology-savvy mindset
Deploy, consult, and manage security controls leveraging solutions included but not limited to AWS multi-accounts structure, Organizational Units, Service Control Policies (SCP), IAM policies, Virtual Private Cloud (VPC), AWS Control Tower Guardrails and best practices
Partner with application teams to support them in their design and implementation of infrastructure-as-code stacks that meet the needs of the applications leveraging technologies, included but not limited to Terraform, CloudFormation, CDK constructs, and Ansible
Advise on all aspects of secure cloud infrastructure offerings and solution design
Provide hands-on technical coaching to accelerate cloud security learnings across the organization
Provide accurate and current information on AWS services and serve as a consultant to the IT Information Security organization to solve business use cases
Requirements
Bachelor’s Degree in Management Information Systems, Computer Science or related field OR equivalent work experience
At least 4 years of experience designing and implementing secure solutions and securing public cloud workloads
At least 2 years of experience with Metrics, Events, Logging, and Tracing solutions like Cloudtrail, CloudWatch, or Splunk
Strong infrastructure-as-code (IaC) expertise and deployment experience with technologies such as Terraform or AWS CloudFormation
In-depth experience with automation methodologies, processes improvement, and development of CI/CD pipelines
Demonstrated knowledge/experience with at least 2 scripting languages like Python, PowerShell, AWS/Azure CLI, Ansible, Bash, and JSON
Hands-on experience deploying and operating AWS computer instances (EC2), AWS Storage Services (EBS/S3/Glacier), AWS multi-accounts environment, IAM Policies, AWS Tower, AWS Config, and Service Control policies (SCP)
Demonstrated knowledge with configuration management and pipeline automation with AWS DevOps, Jenkins, Git or similar offering
Knowledge with container technologies, such as Docker, Kubernetes, AWS EKS and ECS
Collaborated with service providers and partners
Working knowledge and expertise with common enterprise-grade security solutions
Benefits
Paid Time Off
401(k) matching program
Annual incentive pay
Paid holidays
Comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage
Health savings, flexible spending, and dependent care accounts
Information Security GRC Program Senior Manager directing security governance, risk, and compliance functions at Kemper. Leading a team to ensure audits, exams, and control frameworks are maintained effectively.
Associate Director ICT Security overseeing the cybersecurity strategy and team leadership at PFH Technology in Dublin. Ensuring compliance and security in Ireland’s healthcare infrastructure.
Senior Consultant focused on ISMS, BCM, and cybersecurity compliance at VICCON GmbH. Leading projects and collaborating with clients to enhance their information security and resilience.
GSS Officer at Itad supporting safety, security, and travel policies. Overseeing risk management and collaborating with project teams for operational support.
Install and manage fall protection systems at height, ensuring compliance with safety standards. Leadership required in overseeing teams and project delivery at construction sites.
Security Design Lead in Rabobank's cybersecurity team, designing secure technology solutions for food & agribusiness banking. Collaborating across teams to ensure robust security implementations.
Identity Security Posture Management Specialist enhancing identity security posture at Kemper Insurance. Collaborates across teams to tackle identity risks and compliance challenges in a high - performing culture.
Zscaler Engineer responsible for maintaining cybersecurity tools and developing integrations at HP. Collaborating across teams to enhance data loss prevention strategies and monitor industry threats.
Senior Manager overseeing Security Risk Management at First American. Leading enterprise policies, third - party vendor security, and security strategy execution.
Principal Architect developing cybersecurity strategy for Ensemble's technology - enabled revenue cycle management solutions. Focus on securing cloud architectures and ensuring information assurance in healthcare.