Cloud Security Engineer
Maine Staffing - Westbrook, Maine, us, 04098
Work at Maine Staffing
Overview
- View job
Overview
We are seeking a highly skilled Cloud Security Engineer with deep expertise in Cloud Security Posture Management (CSPM) to join a growing security team. This role will be responsible for designing, implementing, and maintaining security controls across multi-cloud environments (e.g., AWS, Azure, GCP) to ensure compliance, visibility, and risk mitigation. Key responsibilities include: Design and implement CSPM solutions to monitor and improve cloud security posture across AWS, Azure, and GCP. Develop and enforce security policies, standards, and best practices for cloud infrastructure. Integrate CSPM tools with CI/CD pipelines and DevOps workflows to enable secure cloud deployments. Continuously assess cloud environments for misconfigurations, vulnerabilities, and compliance gaps. Collaborate with cloud architects, DevOps, and application teams to remediate security issues. Generate reports and dashboards to communicate risk posture and compliance status to stakeholders. Stay current with emerging threats, vulnerabilities, and regulatory requirements affecting cloud environments. Participate in incident response and forensic investigations related to cloud infrastructure. Required qualifications include: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience). 5+ years of experience in cloud security engineering or related roles. Hands-on experience with CSPM tools such as Prisma Cloud, Wiz, Orca Security, Microsoft Defender for Cloud, or AWS Security Hub. Strong understanding of cloud-native services and architectures in AWS, Azure, and GCP. Familiarity with security frameworks and standards such as CIS Benchmarks, NIST, ISO 27001, and SOC 2. Experience with Infrastructure as Code (IaC) tools like Terraform, CloudFormation, or ARM templates. Proficiency in scripting languages (Python, Bash, PowerShell) for automation and integration tasks. Preferred qualifications include: Cloud certifications such as AWS Certified Security Specialty, Azure Security Engineer Associate, or Google Professional Cloud Security Engineer. Experience with SIEM, SOAR, and threat detection tools in cloud environments. Knowledge of container security and Kubernetes posture management. Familiarity with DevSecOps practices and secure software development lifecycle (SDLC).