About the job
Job Summary
Join our dynamic team at Megazone as a Cloud Security Engineer, where your proactive approach and expertise will be instrumental in safeguarding our cloud environment, particularly in AWS. You will design, implement, and manage robust security controls and best practices, ensuring the integrity of our cloud infrastructure, applications, and sensitive data through a suite of advanced security tools including CWPP, CSPM, and firewalls.
Key Responsibilities
Cloud Security Posture Management (CSPM): Configure and oversee AWS security services, such as AWS Config, AWS Security Hub, and AWS GuardDuty, to maintain compliance and detect security threats.
Cloud Workload Protection (CWPP): Implement a Cloud Workload Protection Platform to secure various cloud workloads including containers and serverless functions.
Network and Web Application Firewalls: Develop and enforce security policies for AWS Firewall and AWS WAF to guard against threats and vulnerabilities.
Incident Response: Proactively investigate security incidents, conduct root cause analyses, and lead remediation efforts.
Automation: Create and maintain security automation scripts using languages like Python, Bash, or PowerShell to enhance operational efficiency.
Vulnerability Management: Perform regular vulnerability assessments and collaborate with development teams to address identified issues.
Policy and Compliance: Assist in defining and enforcing security policies that meet regulatory standards (e.g., SOC 2, ISO 27001).
Access Management: Manage IAM policies and user roles, emphasizing the principle of least privilege, particularly in Database Access Control (DAC).
Threat Modeling: Engage in architectural reviews and threat modeling to integrate security measures from the outset of cloud solution designs.

