Likeremote

Subscribe to the latest remote jobs:

  • Likeremote jobs on https://LinkedIn.com/
  • Likeremote jobs on https://telegram.org/
  • Likeremote jobs on Reddit.com
HC

AWS Security & Compliance Consultant

Highbridge Consulting LLC
🇺🇸 United States
On-site
3 weeks ago
  • AWS
  • DevSecOps
  • CI/CD
  • GuardDuty
  • EC2
  • CloudTrail
  • VPC
  • Python
  • Java
  • Bash
  • Jenkins
  • GitLab
  • Terraform
  • Vault
  • Git
  • Splunk
  • OWASP
  • CloudFormation
  • AWS CDK
  • EKS
  • ECS
  • API Gateway
  • CloudWatch
  • IAM
  • KMS
  • WAF
Not scoredNo CV on file. Upload one and this job gets a score out of 100.Upload CV
Our client, a 3rd-generation management consulting firm. They are now looking to add to their team and are hiring anAWS Security & Compliance Consultant. New York or New Jersey office or work remotely

Summary
The client is looking for anAWS SecOps Consultant, to join our team as afull-time employee in our New York or New Jersey office or work remotely. This person is responsible for the end-to-end planning, building, and deploying of software systems. He/she will be able to drive the programming of well-constructed, testable code.
As an AWS SecOps Consultant, you will implement technical solutions as part of a team for customer engagements. This role requires strong teamwork, communication, patience and organization skills needed to drive customer success.

Responsibilities
• Help customers shape their journey to adopting the cloud and provide our customers with technical and strategic guidance on their "cloud journey”.
• Consult, plan, design, and implement security solutions on the cloud customers
o Design and automate security and compliance solutions
o Become a deep technical resource that earns our customer's trust
o Develop high-quality technical content such as automation tools, reference
architectures, and white papers to help our customers build on the cloud
o Innovate on behalf of customers and translate your thoughts into action yielding
measurable results.
• Support solution development by conveying customer needs and feedback as input to technology roadmaps. Share real world implementation challenges and recommend expansion of capabilities through enhanced and new offerings.
o Assist with technical briefs that document solutions
o Assist with reference architecture implementations
• Support internal and external brand development through thought leadership:
o Work with Marketing/Alliances to write blog posts
o Work with Marketing/Alliances to develop internal case studies

Qualifications
• Professional experience architecting/operating automated Security & Compliance / DevSecOps solutions built on AWS
• Experience in software/technology customer facing experience
• You must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Sample Activities You'll Do
Creating a Self-Service Account Framework
• Assist Customer with organizational hierarchy design and configuration templates
• Assist Customer in the development of referenceable playbooks, supported by relevant code examples
• Assist Customer in the development of sample runbooks to automate the implementation of AWS account setup and configuration
• Account Framework - Developing an automated Continuous Delivery Pipeline framework that will be used to establish AWS Accounts to configured, tested infrastructure on AWS in a repeatable, reliable and secure manner eliminating the need for manual intervention.
• Security Control Policies - Development of the Service Control Policies and account baselines associated with the Customer's security and compliance requirements
• Assist Customer with the development of a report and supporting sample code addressing the controls as part of the playbook
Creating Security Threat Analytics and Dashboard Solutions
• Assist Customer in creating a framework to automatically gather, transform and interpret security event data in AWS.
• Assist Customer in selecting defining Identify security requirements and determine where:
o Macie can be leveraged
o GuardDuty can be leveraged
o Inspector can be leveraged
o Security Hub can be leveraged
o Alternative security products can be leveraged
• Codify the provisioning of security analytics and reporting workflow:
o Implement Security Hub with in a central account with inputs from all accounts
o Implement GuardDuty for global security events
o Implement Macie for detection of sensitive data in 23 buckets
o Develop AWS Config rules to enforce security configurations in CIS AWS Foundations standard
o Implementing Inspector to gather findings from EC2 instances
o Enable CloudTrail for monitoring API activity
o Enable FlowLogs for VPC traffic

Creating a Self-Service Compliance Framework
• Assist in selecting tools for building Policy-as-Code controls (preventative, detective, and responsive)
• Assist Customer in the development of referenceable playbooks, supported by relevant code examples for controls
• Assist Customer in the development of sample runbooks to automate the implementation of controls:
oPolicy Definition – Identification and documentation of Customer Policy in the form of specific statements that must be true about configuration of AWS resources
oPolicy-as-Code Development – Development of the logical tests associated with each of the policies established to be used to assert the configuration state of infrastructure on AWS in order to block a build in the pipeline, take automated reactive action, or alert on violations to the policy
oFramework Development – A design allowing for the execution of logical tests against infrastructure code or running AWS infrastructure in order to assert the configuration state of infrastructure resources on AWS and block a build in the pipeline, take automated reactive action, or alert on violations to the policy
• Assist Customer with the development of a report and supporting sample code addressing the controls as part of the playbook

Relevant Technical Tools
• Primary Languages – Python, Java, Bash
• Tooling, Services & Libraries – Jenkins, Gitlab, Terraform, Vault, Git, Splunk, OWASP, Trend Micro, Palo Alto, Fortify, Twistlock, Aqua Security

Relevant AWS Services
•AWS Infrastructure Scripting – CloudFormation, AWS CLI, AWS CDK
•AWS Storage Services – S3
• AWS Compute Services – Lambda, EC2, EKS, ECS, ECR
• AWS Networking Services – VPC, Route53, API Gateway, Direct Connect
• AWS Developer Services – CodePipeline, CodeBuild, CodeCommit, CodeDeploy
• AWS Management and Governance Services – Control Tower, Organizations, CloudWatch, Auto Scaling, Config, CloudTrail, Service Catalog, Systems Manager
• AWS Security, Identity, Compliance Services – IAM, Inspector, KMS, Secrets Manager, Security Hub, Detective, GuardDuty, Macie, HSM, Certificate Manager, WAF & Shield, Firewall Manager, Detective
• AWS Frameworks – Landing Zone

AWS Security & Compliance Consultant · Highbridge Consulting LLC

Auto apply with Likeremote