Lead Cloud Security Engineer
Raymond James Financial, Inc.
**Job Description**
_This position follows our hybrid-friendly schedule, so you get the best of both worlds – flexibility and collaboration. In office days will be 2-3 per week averaging 10-12 days per month in one of the following Corporate Office locations: St. Petersburg, FL; Southfield, MI; Memphis, TN; Denver, CO._
**Job Summary:**
As the Cloud Security Engineer, you will be responsible for the analysis, design, development, implementation and maintenance of cloud security controls in nan AWS and Azure multi-cloud environment, and work with operational teams and specialists to maintain our cloud security posture. The candidate must be a self-motivated individual who can collaborate with a team and across the organization.
**Responsibilities:**
+ Evaluate events and alerts within the cloud native protection platform, and platform, and metric observability platform, and tune alerts based on environment and compensating controls
+ Manage the lifecycle for all security threats, vulnerabilities, and remediations associated with cloud workloads.
+ Partner with the security teams to design, test, implement, and maintain security controls that align with our security policies.
+ Work effectively across security, engineering, and architecture functions within the organization to affect change and enhance cloud security strategies
+ Design and maintain baseline security controls and hardening requirements within AWS and Azure.
+ Develop and maintain alerting mechanisms using cloud native tools, Splunk, and cloud security posture management platforms (Wiz, AquaSec, Prisma Cloud)
+ Recommend and assist in implementing security guardrails to protect workloads within the cloud while maintaining deployment agility.
+ Problem solving different cloud providers using various scripting languages (Bash, PowerShell, JavaScript, Python)
+ Develop infrastructure as code using Terraform.
+ Proactively explore emerging technologies and their potential impact on security teams, from the perspective of securing and protecting those technologies
+ Proactively explore emerging cloud security threats, recommend solutions, and assist in implementation of those solutions.
+ Contributes to a culture of innovation, collaboration, and continuous improvement.
+ Communicates blockers and delays before they require escalation.
+ Design and select business-critical networks, servers, storage, and virtualization applications to design cloud solutions in line with industry best practice and provide a third-line point of escalation for appropriate global cloud service delivery infrastructure solutions.
+ Review existing operations in a major area of work and implement innovation processes to generate new ideas and ensure the required continuous improvement outcomes are delivered.
+ Supervise others on continuous integration activities (sharing, testing and building), working within established operational systems.
+ Document "as is" and "to be" processes and describe the changes required to migrate to the "to be" capability to record accurately the change required.
+ Design and implement disaster recovery and contingency plans to protect company data.
+ Implement required security measures and provide input on their design, monitoring performance to notify security experts of any problems.
+ Develop own capabilities by participating in assessment and development planning activities as well as formal and informal training and coaching; gain or maintain external professional accreditation, where relevant, to improve performance and fulfill personal potential. Maintain an in-depth understanding of technology, external regulation, and industry best practices through ongoing education, attending conferences, and reading specialist media.
**Skills:**
+ Minimum 4 years of AWS experience
+ Experience writing in multiple coding languages (e.g., Python, Go, Bash, etc.)
+ Experience with Infrastructure as Code (e.g., CDK, Cloud Formation, Terraform, etc.)
+ Experience with Git based source code management tools
+ Experience with Agile / Scrum planning tools (GitHub, Azure DevOps, Jira, etc.)
+ Experience with Splunk (creation of alerts and dashboards, and comprehensive querying logic)
+ Experience with AWS security services: CloudWatch, Security Hub, KMS, Inspector, Guard Duty, Config, CloudTrail.
+ Experience with Cloud Security Posture Management (CSPM) tools such as AquaSec, Wiz, Palo Alto Prisma, etc.
+ Experience with on-premises and cloud-based networking, firewalls, and network security.
+ Experience with working in a DevSecOps environment.
+ Preferred certifications: AWS Solution Architect Associate, AWS Certified Security – Specialty, CISSP, CCSP (certified cloud security specialist), Splunk Certified Power User
+ Demonstrated engagement in security conferences, training, learning, associations are highly desired and fully supported.
+ Uses comprehensive knowledge and skills to work independently while providing guidance and training to others on developing appropriate plans or performing necessary actions based on recommendations and requirements.
+ Uses comprehensive knowledge and skills to act independently while guiding and training others on maintaining the security, integrity, compliance and continuity of IT systems and services.
+ Applies comprehensive knowledge and skills to work independently while providing guidance and training to others on creating relevant, lucid and effective reports.
+ Works with full competence to manage, prioritize, and track the achievement of the tasks on the backlog. Typically works without supervision and may provide technical guidance.
+ Works without supervision and provides technical guidance when required on identifying, assessing, prioritizing and managing project-related risks.
+ Works with full competence to orient work in a workflow to plan, organize, and execute the steps it takes to achieve a goal to achieve higher efficiencies. Typically works without supervision and may provide technical guidance.
+ Works at an advanced level to shift into and out of a mental mindsets associated with assessing the facts and circumstances of the current situation and/or environment and making the appropriate/innovative adjustments to thinking and work habits to thrive in any scenario. Typically works independently and provides guidance.
+ Uses comprehensive knowledge and skills to act independently while guiding and training others on managing information throughout its lifecycle by designing and executing appropriate architectures, policies and practices.
+ Works with full competence to find practical solutions for unexpected client problems. Typically works without supervision and may provide technical guidance.
**Licenses/Certifications:**
+ AWS Certifications preferred but not required
**Education**
Bachelor’s: Computer and Information Science, Bachelor’s: Information Technology
**Work Experience**
Manager Experience - 7 to 12 months
**Certifications**
**Travel**
**Workstyle**
Hybrid
At Raymond James our associates use five guiding behaviors (Develop, Collaborate, Decide, Deliver, Improve) to deliver on the firm's core values of client-first, integrity, independence and a conservative, long-term view.
We expect our associates at all levels to:
• Grow professionally and inspire others to do the same
• Work with and through others to achieve desired outcomes
• Make prompt, pragmatic choices and act with the client in mind
• Take ownership and hold themselves and others accountable for delivering results that matter
• Contribute to the continuous evolution of the firm
At Raymond James – as part of our people-first culture, we honor, value, and respect the uniqueness, experiences, and backgrounds of all of our Associates. When associates bring their best authentic selves, our organization, clients, and communities thrive. The Company is an equal opportunity employer and makes all employment decisions on the basis of merit and business needs.
Confirm your E-mail: Send Email
All Jobs from Raymond James Financial, Inc.