Lead Cloud Security Engineer
Remote, USA
Applications have closed
PointClickCare
With Collective Medical & Audacious Inquiry, we’ve become the most expansive, full-continuum care collaboration network, offering care teams immediate, point-of-care access to deep, real-time insights at every stage of a patient’s journey.
For more information on PointClickCare, please connect with us on Glassdoor and LinkedIn.
We are looking for a talented, experienced Lead Cloud Security Engineer who will play a fundamental role and be part of a team that designs, protects, and manages security services for PointClickCare’s cloud infrastructure, supporting both corporate cloud solutions and PointClickCare product offerings delivered via the cloud as Software as a Service (SaaS) platform. The successful candidate should think of infrastructure as code and actively identify, design, and develop and implement security configurations and compliance as code solutions. The Lead Cloud Security Engineer will have a proven track record developing and implementing security tools, technologies, and process integrations for cloud-based architectures., and significant prior experience working closely with product and DevOps Engineers and/or SRE’s on security requirements. Experience with DevOps environments and Azure & AWS security controls is a strong plus.
Responsibilities
- Implement, develop, engineer and tune cloud security solutions including cloud native and third-party security solutions, such as data loss prevention (DLP), digital rights management (DRM), identity management, endpoint protection, SIEM and other security solutions.
- Participate in projects and work with the Project team to support ongoing activities and project deliverables.
- Stay abreast of emerging technologies, cloud security best practices, frameworks, and threats to proactively assess and evaluate secure solutions, to address threats, and potential vulnerabilities.
- Participate in developing security standards and best practices appropriate for PointClickCare and recommend security enhancements to Security team leadership.
- Participate in proof of concepts and other technical evaluations of technologies, designs and solutions and provide recommendations.
- Development and maintenance of KPIs, KRIs, and SLAs
- Act as an expert in cyber security incident resolution and analysis as needed.
Qualifications
- Extensive experience as Cloud Engineer or Cloud Admin engineering, tuning, cloud security controls
- Extensive experience with Cloud, virtualization, container, docker, Kubernetes (AWS, GCP or Azure)
- Experience working with Python, PowerShell, Ruby, Bash, RegEx, JSON, Query DSL, Kusto Query Language (KQL) or other automation, plus Terraform, Ansible
- Good understanding of Azure or AWS infrastructure components: server, storage, network, data, and applications (IAAS/PAAS/SAAS)
- Experience with of Automation frameworks, DevSecOps best practices, etc.
- Strong Unix/Linux experience with familiarity with Windows/Linux administration and hardening guidelines
- Bachelor's Degree in Computer/Software Engineering, or the equivalent combination of training, education, and experience.
- Strong understanding of Threat Modeling including Threat Detection & Prevention
- Must demonstrate the ability to interact professionally with a diverse group of stakeholders including subject matter experts and strong analytical and problem-solving skills are required for this role.
- Ability to quickly learn and develop expertise in highly complex existing applications and architectures. Attitude to thrive in a high-production, customer-oriented environment.
- Ability to contribute to multiple projects / demands simultaneously. Strong team player. Strong documentation skills and keen attention to detail.
- Excellent communication skills
Preferred Qualifications
- Certification: Azure Security Engineer Associate or AWS Certified Security - Specialty
- Strong knowledge of MITRE ATT&CK framework
- One or more of the following Security certifications: GIAC, CISSP, CISM, CISA, CEH.
- Knowledge of relevant security and privacy legislation as NIST, PHIPA, PIPEDA, HIPAA
- Significant experience with multiple technical tools including: DLP (Data Loss Prevention), Anti-Virus, EDR (Endpoint Detection Response), MDM (Mobile Device Management), IDS, cloud security access broker, Virtual Network security, DDOS protections, DNS, etc.
- Detailed proficiency with Linux (or similar) operating systems;
- In depth understanding of TCP/UDP/ICMP/IP protocols;
- Experience with PKI, SSL, SSH, HTTPS, etc;
- Understanding of software development domain and principles, including design patterns, code structure, programming languages, continuous integration (Git), continuous deployment (Jenkins), and deployment orchestration
- Detailed understanding of Virtual Network Technologies Routers, switches, Load Balancers, firewalls, proxy, etc.
- Understanding of AWS services including: GuardDuty, Inspector, Detective, Security Hub, Macie, Shield, CloudTrail, ACM, SSM
When you apply for a position, your information is processed and stored with Lever, in accordance with Lever’s Privacy Policy. We use this information to evaluate your candidacy for the posted position. We also store this information, and may use it in relation to future positions to which you apply, or which we believe may be relevant to you given your background. When we have no ongoing legitimate business need to process your information, we will either delete or anonymize it. If you have any questions about how PointClickCare uses or processes your information, or if you would like to ask to access, correct, or delete your information, please contact PointClickCare’s human resources team: recruitment@pointclickcare.com
PointClickCare is committed to Information Security. By applying to this position, if hired, you commit to following our information security policies and procedures and making every effort to secure confidential and/or sensitive information.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Automation AWS Azure Bash CEH CISA CISM CISSP Cloud Compliance DDoS DevOps DevSecOps DNS Docker EDR Firewalls GCP GIAC HIPAA IaaS IDS JSON KPIs Kubernetes Linux MITRE ATT&CK Network security NIST PaaS PKI PowerShell Privacy Python Ruby SaaS SIEM SLAs SSH Terraform Threat detection UNIX Vulnerabilities Windows
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Cyber Security Architect jobs
- Open Manager Pentest H/F jobs
- Open Senior Cyber Security Engineer jobs
- Open Senior Information Security Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Product Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Cybersecurity Analyst jobs
- Open IT Security Analyst jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Senior Security Architect jobs
- Open Security Operations Analyst jobs
- Open CISM-related jobs
- Open ISO 27001-related jobs
- Open Network security-related jobs
- Open Application security-related jobs
- Open Windows-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open DevOps-related jobs
- Open Security assessment-related jobs
- Open Kubernetes-related jobs
- Open Security Clearance-related jobs
- Open Malware-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open DevSecOps-related jobs
- Open CEH-related jobs