Biztec Global is seeking an experienced Information Security Engineer IV (CSPM Specialist) to help secure enterprise cloud environments across public and hybrid cloud platforms. This role focuses on Cloud Security Posture Management, cloud security engineering, and implementing secure solutions while collaborating with various teams to enhance security controls.
Responsibilities:
- Serve as a cloud security engineer and security consultant for enterprise cloud initiatives
- Design, engineer, and implement secure cloud solutions following industry best practices and security standards
- Support the security of public and hybrid cloud environments through both custom-built and commercial security tools
- Collaborate with Principal Engineers, Architects, and Product Owners on product security strategy and roadmap initiatives
- Design, test, and deploy security solutions at the feature and platform level
- Develop and maintain security standards, procedures, and operational guidelines
- Implement and enhance cloud security monitoring, governance, and compliance controls
- Support operational security responsibilities and participate in security engineering initiatives
- Contribute to automation efforts using Infrastructure as Code (IaC) and CI/CD pipelines
- Participate in operational support and on-call rotations as required
- Work closely with DevOps and Cloud Engineering teams to embed security throughout the software development lifecycle
Requirements:
- 6+ years of experience in Information Security, Cloud Security, or Security Engineering
- Strong understanding of cloud security principles across public cloud environments
- Experience securing AWS, Azure, GCP, or hybrid cloud infrastructures
- Hands-on experience with containerization technologies such as Docker and Kubernetes
- Strong knowledge of DevOps methodologies and secure software development practices
- Experience implementing Infrastructure as Code (IaC) and automation frameworks
- Knowledge of enterprise security controls, vulnerability management, and risk mitigation strategies
- Experience working within Agile delivery environments
- Information Security
- Cloud Security
- Public Cloud Platforms (AWS, Azure, GCP)
- DevOps Practices
- Jenkins
- GitHub
- CI/CD Pipelines
- Terraform
- Containerization Technologies
- Agile Methodologies
- Cloud Security Posture Management (CSPM)
- Prisma Cloud
- AWS Config
- Container Security & Container Scanning
- Cloud Compliance & Governance
- Security Automation
- Kubernetes Security
- Infrastructure Security Monitoring