- Company Name
- Orbis Group
- Job Title
- Senior Cloud Security Engineer (Infrastructure and Security) – New York – Competitive Salary + Competitive Package + Opportunity to work with an Ambitious, Young, Growing Organisation!
- Job Description
-
Job Title: Senior Cloud Security Engineer (Infrastructure and Security)
Role Summary
Lead cloud security initiatives, design and implement AWS security controls, conduct risk assessments, incident response, and policy management for a technology platform focused on identity and fraud risk. Serve as the subject‑matter expert for infrastructure hardening, monitoring, and compliance across the organization.
Expectations
- Demonstrated deep expertise in AWS security, including IAM, KMS, GuardDuty, Inspector, Config, and WAF.
- Proven experience scripting and automating infrastructure with Terraform, CloudFormation, or CDK.
- Strong incident‑response background with on‑call experience.
- Ability to translate security best practices into actionable architecture and policy recommendations.
Key Responsibilities
- Serve as cloud security subject‑matter expert; advise on and enforce best practices for AWS environments.
- Conduct and document cloud security risk assessments, audits, and due‑diligence reviews.
- Respond to security incidents, investigate threats, and coordinate remediation in partnership with engineering teams.
- Participate in on‑call rotations for incident detection, response, and post‑mortem analysis.
- Manage and configure security tools and services (VPC, route tables, NACLs, Security Groups, iptables, WAF, GuardDuty, Inspector, KMS, IAM).
- Draft, update, and enforce cloud security policies and procedures.
- Stay current on emerging threats, vulnerabilities, and AWS security updates; recommend mitigations.
- Review third‑party vendors for compliance with cloud security standards.
Required Skills
- Advanced knowledge of AWS security services and best practices.
- Proficiency in IaC with Terraform, CloudFormation, or CDK.
- Strong understanding of network architecture, routing, and protocol security.
- Experience with incident‑response workflows, on‑call duties, and threat investigation.
- Excellent analytical and communication skills; ability to guide cross‑functional teams.
- Passion for reducing risk and protecting data assets in cloud environments.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Certified AWS Security Specialty or equivalent cloud security certification preferred.
- Additional certifications (CISSP, GCFA, GRC, or Cloud Native Computing Foundation) considered an advantage.