FUSTIS LLC is looking for an experienced Cloud Security Engineer to drive the remediation of critical issues in their public cloud platforms, including GCP, Azure, and AWS. The role involves developing mitigation plans, coordinating with engineering teams, and ensuring the security of cloud resources through effective remediation strategies.
Responsibilities:
- Develop and execute mitigation plans to address high-priority issues in GCP, Azure or AWS. This will typically involve updating Terraform repositories and/or scripting the remediation steps to fix the same issue in multiple projects
- Coordinate the rotation of mismanaged cloud secrets which can only be done by the end users (engineering or infrastructure teams)
- While your main goal will be fixing existing cloud resources, you will need to address the root cause to avoid the issues from reoccurring in future deployments
- You will be responsible to validate that the issues has been effectively remediated – either directly by you – or your partner teams
Requirements:
- 5+ years writing automation pipelines and/or scripts for GCP specifically
- Infrastructure-as-Code: at least 3+ years writing production Terraform code in a complex environment (e.g. > 100 GCP projects)
- Proficiency with on-prem and cloud networking (SDN). Strong understanding of core infrastructure components on-prem and in the cloud: compute, storage, databases, IAM etc
- 5+ years of Cloud Engineering experience with a 4-year degree (or equivalent experience). GCP is a must-have
- Strong proficiency in cloud engineering, traditional infrastructure and automation (infrastructure-as-Code, Scripting, CI/CD etc.)
- Ability to design new testing methods and resolve complex technical issues with minimal assistance
- Ability to navigate the current architecture and repositories to understand the context of the issues at stake. Ability to anticipate problems and/or possible outages in the proposed remediation plans
- Clearly communicates Agile concepts to partners and demonstrates a commitment to team priorities
- Stays current with evolving technologies via formal training and self-directed education
- Experience with Azure or AWS
- Experience with Github or Atlantis
- Experience with Cloud Security specifically
- Mix of infrastructure and security background