You will join our Cyber Security Operations team and play a key role in protecting our cloud-native and enterprise environments. In this hands-on role, youll design, implement, and operate security controls across AWS, Kubernetes, CI/CD pipelines, and identity systems. Youll lead incident response efforts, build security automation, and drive continuous improvement of our detection and prevention capabilities in a fast-paced, highly technical environment.
The day-to-day
Own and enhance security for large-scale AWS environments (IAM, VPC, CloudTrail, GuardDuty, EKS, S3).
Build and operate threat detection, incident response, and DFIR processes across cloud, Kubernetes, identity, and SaaS platforms.
Design and implement security automation for access control, cloud hygiene, incident response, and SIEM workflows.
Drive DevSecOps initiatives, securing CI/CD pipelines and enabling shift-left security.
Develop and tune SIEM detections, threat hunting queries, and automated remediation pipelines.
Manage identity, access, and Zero Trust / ZTNA architectures using IdP, SSO, RBAC, and federation.
Simulate real-world attacks and perform vulnerability discovery to validate security controls.
Requirements: 4+ years of experience in SecOps, Cloud Security, DevSecOps, or Security Engineering.
Strong hands-on experience with AWS, Kubernetes/EKS, Terraform, and cloud-native security tooling.
Proven incident response and threat hunting experience in distributed, cloud-native environments.
Deep understanding of security best practices for cloud-native and distributed systems (eg. NIST & CIS), with the ability to apply them pragmatically in enterprise environments.
Ability to build security automation using Python, Bash, APIs, or similar tools.
This position is open to all candidates.