Logo
Arena Family of Companies

Cloud Security Engineer

Arena Family of Companies, Fountain Valley, California, us, 92728

Save Job

Overview

Arena has partnered with a fast-growing global cloud & AI services company to hire a

Cloud Security Engineer (Bilingual Korean)

for their U.S. team. This newly created, on-site role is based at the client site in

Fountain Valley, CA

(local candidates preferred; no relocation). You’ll secure complex AWS environments at enterprise scale while collaborating with global engineering and leadership. Base pay range $120,000.00/yr - $150,000.00/yr What You’ll Do

Cloud Security Posture Management (CSPM) : Configure, monitor, and manage cloud security services such as AWS Config, AWS Security Hub, and AWS GuardDuty to ensure continuous compliance and identify potential security threats and misconfigurations. Cloud Workload Protection (CWPP) : Implement and manage a Cloud Workload Protection Platform to secure workloads (containers, virtual machines, serverless functions) running in the cloud. Network and Web Application Firewalls : Design, deploy, and maintain security policies and rules on Cloud Firewall and Cloud WAF to protect our network and web applications from common exploits and threats. Incident Response : Investigate security incidents, perform root cause analysis, and lead remediation efforts within the cloud environment. Automation : Develop and maintain security automation scripts and tools using languages like Python, Bash, or PowerShell to streamline security operations and response. Vulnerability Management : Conduct regular vulnerability scanning and penetration testing, and work with development teams to prioritize and patch identified vulnerabilities. Policy and Compliance : Help define and enforce security policies, standards, and best practices to meet regulatory and compliance requirements (e.g., SOC 2, ISO 27001). Access Management : Manage and audit Identity and Access Management (IAM) policies, roles, and user accounts to enforce the principle of least privilege, with specific focus on Database Access Control (DAC) using tools like ChakraMax. Threat Modeling : Participate in architectural reviews and threat modeling to ensure security is built into our cloud solutions from the initial design phase. What We’re Looking For

Must-Haves: Bilingual Korean & English

(written and conversational) 3+ years in a dedicated cloud security role Strong knowledge of AWS security services (IAM, Security Hub, GuardDuty, AWS Config, AWS Firewall, AWS WAF, AWS Inspector) Hands-on experience with CWPP and CSPM solutions Hands-on experience with DAC tools (e.g.,

ChakraMax ) Scripting/automation with Python, CloudFormation, or Terraform Solid understanding of networking concepts and security protocols Familiarity with

OWASP Top 10 Excellent problem-solving, communication, and collaboration skills Nice-to-Haves: AWS Certified Security – Specialty

or

CISSP/CCSP Container security (Docker, Kubernetes) CI/CD security practices and DevSecOps Experience in large-scale enterprise cloud environments Compliance Statement We are an Equal Opportunity Employer and consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected category under applicable law. Employment is offered on an at-will basis, meaning either the employee or the company may terminate the relationship at any time, with or without cause or notice, consistent with applicable law. We are committed to providing reasonable accommodations to individuals with disabilities throughout the application, interview, and employment process. Pursuant to the California Consumer Privacy Act (CCPA), we may collect personal information such as identifiers, employment history, and education details solely for employment consideration. This information will not be sold or shared without your consent unless required by law. Seniority level

Mid-Senior level Employment type

Full-time Job function

Information Technology Industries: Software Development, Computer and Network Security, and IT Services and IT Consulting

#J-18808-Ljbffr