Senior Cloud Security Engineer – Web Application Firewall
Deutsche Bank Vezi toate joburile
- București
- Permanent
- Full-time
- As a Cloud Security / Network Security Engineer, you will have a wide breadth of responsibility including system architecture, tool deployment, integrations, troubleshooting, vendor engagement and documentation.
- Provide expertise and thought leadership on cloud security and networking technologies with an emphasis on requirements, design and best practice implementation.
- Report and escalate issues, dependency challenges to senior management and follow though end-to-end until remediation.
- Ensure critical KPI, SLA and deliverables are met on a periodic basis for the Cloud Security / Network Security program.
- Need to work with tools such as Terraform Sentinel, Github, Prisma, ITSM tools such as ServiceNow, Confluence and other applications and processes.
- Assess current cloud security postures, identify the process gaps, propose, design and document solutions to strengthen the security posture and articulate and collaborate with wider teams to mobilize it.
- Manage Cloud Network Security Cloud Armor WAF solutions including changes to security policies and compliance requirements.
- Collaborate with security leadership, engineering teams and compliance to execute improved security strategies.
- Develop Proof of Concepts and prototypes using Terraform and Python to test and implement security controls.
- Extract data and insights from disparate systems with a strong desire for automation and connect them to arrive at security solutions quickly. Demolish manual silos.
- Take ownership of deliverables, troubleshoot, and resolve issues. Establish product support procedures, service as final L3 engineering escalation.
- 8+ years of experience with Network Security Engineering with 4+ years in one of GCP (preferred), AWS or Azure cloud platforms.
- Bachelor’s or Master’s degree in computer science, Information Technology, a related technical field, or equivalent experience. Google Cloud Network Engineering, Cloud Architect or Cloud Security Engineer certifications from one of the cloud providers (GCP preferred).
- Experience working as an Architect in security domain with a strong commitment to evangelize adopting reference security architectures.
- Experience working in DevOps / Terraform / Sentinel / Prisma / GKE / Python tooling / Policy as Code / CI-CD environments.
- Experience with routing, switching, firewalls and network security technologies in cloud and/or non-cloud, on-prem environments. VPC networking and Service Perimeters security (Cloud Firewall / Web Application Firewalls / Cloud Armor / Load balancers ) on a cloud platform, preferably GCP. Familiarity with Chronicle, Splunk, Service Now workflows integration.
- Strong knowledge in Security, Network Architecture, Networks and Infrastructure Security technologies. Strong knowledge in current security threats and corresponding technologies.
- Development experience & ability to work alongside dedicated development resource to deliver proof of concepts to reduce manual and process toil.
- A highly proactive, self-starter with strong work ethics, high level of professionalism and exceptional problem-solving skills.
- Experienced in working with various level of stakeholders and multi-cultural/global teams.
- Experience with business tools including Jira, Confluence, Share point, and Microsoft 365