Title : Cloud Security Consultant
Location: Holyoke ,MA ( Hybrid)
Candidate Requirements
Client is seeking a highly skilled Cloud Security Engineer with the following qualifications:
Candidate must be available to perform services during standard Eastern Time business hours.
" Hands-on experience securing AWS and Microsoft Azure environments.
" Experience implementing cloud security best practices across multi-cloud environments.
" Experience securing Kubernetes (EKS) and Amazon ECS Fargate container workloads.
" Hands-on experience with Splunk for security monitoring, log analysis, and cloud security investigations.
" Experience implementing DevSecOps practices and securing CI/CD pipelines, including source code, dependency, Infrastructure-as-Code (IaC), and secrets scanning.
" Experience identifying, analyzing, and remediating Cloud Security Posture Management (CSPM) and Cloud Infrastructure Entitlement Management (CIEM) findings in AWS and Azure environments.
" Experience with AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, CNAPP platforms, and vulnerability management tools such as Tenable.
" Experience performing cloud security architecture reviews and Infrastructure-as-Code (Terraform/CloudFormation) security reviews.
" Experience securing Microsoft Entra ID and AWS IAM through conditional access, IAM roles and policies, least privilege access, and cross-account access controls.
" Strong analytical, documentation, communication, and problem-solving skills with the ability to work independently.
Primary Responsibilities
" Provide services primarily in support of enterprise cloud security initiatives, including the following:
" Secure AWS and Microsoft Azure environments by implementing cloud security best practices.
" Monitor and investigate cloud security events using Splunk and cloud-native security tools.
" Review, analyze, and remediate CSPM and CIEM findings, including IAM permissions, excessive privileges, and cloud misconfigurations.
" Secure Kubernetes (EKS) clusters and Amazon ECS Fargate container workloads.
" Implement security controls throughout CI/CD pipelines, including code, dependency, IaC, and secrets scanning.
" Perform cloud security architecture reviews, IAM assessments, and Infrastructure-as-Code security reviews.
" Utilize AWS Security Hub, GuardDuty, Microsoft Defender for Cloud, CNAPP platforms, and Tenable to identify and mitigate security risks.
" Prepare documentation of security findings, remediation recommendations, and technical procedures, and collaborate with engineering teams to resolve complex cloud security issues.
" Develop technical documentation and provide knowledge transfer to other security analysts, as needed.
Minimum Requirements / Education
" Bachelor's degree in Cyber Security, Information Technology, Computer Science, or an equivalent combination of education and work experience.
" Hands on experience in cloud security engineering or cloud security operations.
" Hands-on experience securing AWS and Microsoft Azure environments.
" Experience with enterprise cloud security tools and DevSecOps practices.
" AWS, Azure, CISSP, CCSP, or other relevant cloud security certifications are preferred.
Infowave Systems is an equal opportunity employer that is committed to diversity and inclusion in the workplace.