Cloud Security Engineer
Cloud Security Engineer (10301412)AIG Employee Services, Inc. Dallas, TX Support multi-cloud security projects covering Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWP), and Data Security Posture Management (DSPM). Develop and implement security policies, standards, and procedures for cloud-based applications and infrastructure leveraging Prisma Cloud’s security solutions, including Workload Protection (Compute), Cloud Security Posture Management (CSPM), and Code Security modules. Integrate robust code security measures and scanning capabilities into CI/CD pipelines and other cloud workflows using Infrastructure as Code (IaC). Implement enterprise security policies using Prisma CSPM’s advanced capabilities, including preventive guardrails and automated remediations, to ensure proactive measures are in place. Collaborate with the security architecture team, cloud security engineering, and security remediation teams to implement approved blueprints polices in Prisma. Leverage IaC and CI/CD to seamlessly deploy, patch, and upgrade Prisma Defenders in Kubernetes, as well as serverless architectures. Configure vulnerability items, misconfigurations, and other alerts using ServiceNow/Prisma Cloud integration, actively assisting stakeholders with timely remediation efforts. Assist the SOC and Cyber Defense and Response Team during security incidents, involving timely configuration changes to Prisma and participation on incident resolution. Coordinate user access in the Prisma portal based on least privilege roles, and provide operations training and support as needed. Work with WiZ CNAPP tool engineering, implementation, and deployment; SaaS security tools and multi-cloud environment, including Azure, AWS and Google Cloud Platform architectures; SaaS Security Posture Management (SSPM) initiatives, including integrations, access governance, compliance alignment, user behavior monitoring, RBAC, and continuous posture improvement to strengthen organizational security; cloud platforms, including AWS, Azure, and Google Cloud; Cloud Security Posture management solutions, including compute agents, DevOps code scanning deployment, and posture management policy tuning, utilizing IaC automation for efficient and secure cloud operations; cloud/cloud hybrid platforms (IDaaS/IaaS/SaaS/PaaS) and associated security tools and processes; implementing robust security measures, including agent/agentless workload defenders, in cloud-native environments (Kubernetes (AKS, EKS, GKS) and Azure Functions); enterprise-level Cloud services, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) across multiple cloud providers, including AWS, Google Cloud Platform (GCP), and Microsoft Azure (Azure); and, Cloud Security Architectures, Vulnerability Management and Network Defense to protect cloud workloads and data deployed into different types of cloud and cloud/hybrid sys...