Cloud Security Engineer
- AWS
- Azure
- GCP
- OCI
- ServiceNow
- IAM
- CrowdStrike
- SIEM
- AI
- ChatGPT
- Claude
- Zscaler
- Okta
- GLBA
- IaC
- Terraform
- Agile
- CCSP
- CISSP
The client is a prominent global technology solutions provider, renowned for its comprehensive range of services and products tailored to meet the diverse needs of businesses.
The company's core focus revolves around assisting organizations in managing and optimizing their IT operations, thereby driving productivity, efficiency, and innovation. It offers an extensive array of services, including strategic consulting, technology implementation, cloud computing, data center management, cybersecurity, software licensing, and hardware procurement.
In addition to its business-to-business (B2B) services, it also serves as a valuable resource for IT professionals and decision-makers, providing valuable insights and thought leadership through its various publications, webinars, and events.
Rate Range: $80-$85/Hr
Job Description:
- Contract Cloud Security Engineer to stand up a cloud security program across Client's multi-cloud, SaaS-heavy environment.
- Over a 12–16 week engagement the resource will: (1) build an authoritative inventory of all cloud properties (AWS, Azure, GCP, OCI, and material SaaS) and land it in the ServiceNow CMDB; (2) assess cloud security posture against CIS, CSA, and NIST CSF 2.0 baselines; (3) build a cloud account onboarding and monitoring workflow in ServiceNow and integrate cloud telemetry into the existing security stack; and (4) author operational runbooks and run the program in steady state. This is a build-and-operate role - the ServiceNow workflow and CMDB integration are the core deliverable.
- Enumerate cloud accounts, subscriptions, and projects (AWS, Azure, GCP, OCI) and Client material SaaS applications; reconcile into a ServiceNow CMDB cloud asset class.
- Run cloud posture assessments; document misconfigurations and IAM, exposure, logging, and encryption gaps; risk-rank and map findings to owners; surface them in a ServiceNow posture dashboard.
- Build the cloud account onboarding and monitoring workflow in ServiceNow (M&A fast-track).
- Onboard cloud telemetry into CrowdStrike, Obsidian, and Varonis DSPM; configure log forwarding (Cribl) into NG-SIEM; tune detections; route alerts into SecOps.
- Author operational runbooks and operate the program in steady state; provide weekly status.
- Apply frontier AI models (ChatGPT Enterprise, Claude) to accelerate inventory analysis, posture assessment, runbook drafting, and workflow design.
Must-Haves:
- Hands-on multi-cloud security experience (AWS, Azure, and GCP at minimum; OCI a plus).
- Cloud security posture management (CSPM) concepts and tooling; assessment of IAM, network exposure, logging/telemetry, and encryption/key management.
- ServiceNow build experience - workflows and CMDB integration. Non-negotiable; this is the engagement's core (capital) deliverable.
- SIEM / log-pipeline integration (NG-SIEM, cloud log forwarding).
- Proficiency with AI frontier models (e.g., ChatGPT Enterprise, Claude) applied to security-engineering work, with an understanding of secure, governed AI use in an enterprise setting.
- Strong documentation skills and the operational discipline to run steady-state operations.
- Direct experience with CrowdStrike (Falcon Cloud Security / NG-SIEM), Obsidian SSPM, Zscaler, Varonis DSPM, Cribl, and Okta.
- Insurance, financial-services, or other regulated-industry experience (GLBA, NY Client 500).
- Infrastructure-as-code familiarity (e.g., Terraform).
- Self-directed; able to operate from discovery through steady-state with light oversight; comfortable in a fast-moving, acquisition-heavy environment.
Work Setting and Culture:
- Fully remote. Collaborative, fast-paced IT Security engineering team operating in a SAFe Agile model. ServiceNow is used for ITSM and SecOps; Zoom for collaboration.
- The culture is AI-forward, with frontier models actively used across security workflows. A heavy M&A cadence means the environment changes constantly.
- AWS, Azure, GCP, OCI; CrowdStrike (Falcon Cloud Security, NG-SIEM); Obsidian (SSPM); Zscaler (ZIA/ZPA); Varonis DSPM; Cribl; Okta; ServiceNow (CMDB, SecOps); ChatGPT Enterprise and Claude.
- Joins a security engineering team under IT Security leadership.
- Works alongside the in-house ServiceNow SecOps developer on the workflow and CMDB build, and coordinates with tool owners (endpoint, network, infrastructure) and the Compliance team for regulatory mapping. Operates within SAFe Agile cadences.
- ServiceNow build proficiency (workflows + CMDB) and AI frontier model proficiency (ChatGPT Enterprise / Claude) are required.
- Relevant cloud/security certifications are preferred but not required where hands-on experience is strong - for example, AWS / Azure / GCP security specialties, CCSP, CISSP, or GIAC cloud certifications.
About ApTask:
ApTask is a leading global provider of workforce solutions and talent acquisition services, dedicated to shaping the future of work. As an African American-owned and Veteran-owned company, ApTask offers a comprehensive suite of services, including staffing and recruitment solutions, managed services, IT consulting, and project management. With a focus on excellence, collaboration, and innovation, ApTask provides unparalleled opportunities for professional growth and development. As a member of the ApTask team, you will have the chance to connect businesses with top-tier professionals, optimize workforce performance, and drive success across diverse industries. Join us at ApTask and be part of our mission to empower organizations to thrive while fostering a diverse and inclusive work environment.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Candidate Data Collection Disclaimer:
At ApTask, we prioritize safeguarding your privacy. As part of our recruitment process, certain Personally Identifiable Information (PII) may be requested by our clients for verification and application purposes. Rest assured, we strictly adhere to confidentiality standards and comply with all relevant data protection laws. Please note that we only collect the necessary information as specified by each client and do not request sensitive details during the initial stages of recruitment.
If you have any concerns or queries about your personal information, please feel free to contact our compliance team atbusinessexcellence@aptask.com.
Applicant Consent:
By submitting your application, you agree to ApTask's (www.aptask.com)Terms of Use andPrivacy Policy, and provide your consent to receive SMS and voice call communications regarding employment opportunities that match your resume and qualifications. You understand that your personal information will be used solely for recruitment purposes and that you can withdraw your consent at any time by contacting us at 732-355-8000 or help@aptask.com. Message frequency may vary. Msg & data rates may apply
About ApTask:
ApTask is a leading global provider of workforce solutions and talent acquisition services, dedicated to shaping the future of work. As an African American-owned and Veteran-owned company, ApTask offers a comprehensive suite of services, including staffing and recruitment solutions, managed services, IT consulting, and project management. With a focus on excellence, collaboration, and innovation, ApTask provides unparalleled opportunities for professional growth and development. As a member of the ApTask team, you will have the chance to connect businesses with top-tier professionals, optimize workforce performance, and drive success across diverse industries. Join us at ApTask and be part of our mission to empower organizations to thrive while fostering a diverse and inclusive work environment.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Candidate Data Collection Disclaimer:
At ApTask, we prioritize safeguarding your privacy. As part of our recruitment process, certain Personally Identifiable Information (PII) may be requested by our clients for verification and application purposes. Rest assured, we strictly adhere to confidentiality standards and comply with all relevant data protection laws. Please note that we only collect the necessary information as specified by each client and do not request sensitive details during the initial stages of recruitment.
If you have any concerns or queries about your personal information, please feel free to contact our compliance team atcompliance@aptask.com.
Applicant Consent:
By submitting your application, you agree to ApTask's (www.aptask.com)Terms of Use andPrivacy Policy, and provide your consent to receive SMS and voice call communications regarding employment opportunities that match your resume and qualifications. You understand that your personal information will be used solely for recruitment purposes and that you can withdraw your consent at any time by contacting us at 732-355-8000 or help@aptask.com. Message frequency may vary. Msg & data rates may apply.
Cloud Security Engineer · ApTask