riveron - Cyber Security - Engineering Lead
Requirements
• 5+ years in cybersecurity or cloud security engineering, with hands-on experience across at least two major cloud providers (AWS, GCP, Azure). • Expertise in zero-trust architecture, cloud networking, container security (Kubernetes, Docker), secrets management, vulnerability management, and data protection across multi-cloud environments. • Understanding of compliance frameworks and cloud-native threat models. • Relevant credentials such as AWS Certified Security – Specialty, Google Cloud Professional Cloud Security Engineer, Microsoft Certified: Azure Security Engineer Associate (AZ-500), or CISSP preferred. • You take ownership of your work and your client relationships. You bring people along rather than waiting to be told what to do. • You think about security in terms of business impact, not just technical controls. • You are adaptable. You can move between an engineering, strategy, compliance, or technical architecture conversation without losing your footing. • You are a natural collaborator. You work well across teams, and you make the people around you better. • You are curious and motivated to keep growing. The security landscape moves fast, and you stay with it. • You enjoy being part of something bigger, including recruiting, training, firm events, and building a practice that stands out in the market.
Responsibilities
• Threat Detection & Response: Monitor and analyze security telemetry across platforms using Azure Sentinel, AWS GuardDuty/CloudTrail, and Google Cloud Logging. Investigate alerts, respond to incidents, and tune detection rules for multi-cloud environments. • Identity and Access Management: Design and implement identity solutions across multi-cloud environments including Azure Entra ID / AWS IAM / GCP Identity and Access Management, Role-Based Access Control (RBAC), and Privileged Access Management (PAM). Enforce least-privilege principles and zero-trust identity frameworks. • Security Posture & Compliance: Deploy and maintain cloud-native security tools—Microsoft Defender for Cloud, AWS Security Hub, and Google Cloud Security Command Center—to enforce security baselines, detect misconfigurations, and maintain regulatory compliance (SOC 2, ISO 27001, PCI-DSS, HIPAA). • Cloud Infrastructure Security: Secure cloud networking, data encryption, and workload protection across Azure (NSGs, Application Gateways), AWS (Security Groups, NACLs, VPC), and GCP (VPCs, Cloud Armor, Firewall Rules) and CSPM Platforms. Implement encryption, DLP, and data residency controls. • Automation & DevSecOps: Embed security controls into CI/CD pipelines using Infrastructure-as-Code (Terraform, CloudFormation, Deployment Manager) and scripting (Python, Bash, PowerShell). Automate compliance scanning and remediation across all three clouds. • AI-Accelerated Internal Tooling & Innovation: Develop and enhance internal security tools and automation frameworks using AI platforms such as Claude, GitHub Copilot, and other LLM technologies. Leverage generative AI to accelerate code generation, security script development, threat analysis automation, and documentation, enabling faster iteration on security solutions and driving continuous innovation across the security program.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT