Posted on: 07/04/2026
Role Overview :
As a Security Controls Engineer, you will be at the forefront of safeguarding our organization's digital assets and ensuring the security posture of our cloud environments. Your daily activities will involve designing, implementing, and maintaining security controls across various platforms, collaborating closely with DevSecOps and DevOps teams to embed security into the software development lifecycle. You will work with security architects, system administrators, and application developers to identify and mitigate risks, ensuring compliance with industry best practices and regulatory requirements. Your efforts will directly contribute to protecting our users' data, maintaining the integrity of our systems, and enabling the business to operate securely and efficiently.
Key Responsibilities :
- Design and implement security controls for cloud environments (AWS, Azure, GCP) to protect data and infrastructure.
- Collaborate with DevSecOps teams to integrate security into the CI/CD pipeline, ensuring secure software development practices.
- Configure and manage SIEM solutions to monitor security events, detect threats, and respond to incidents effectively.
- Develop and maintain security policies, standards, and procedures to ensure compliance with industry regulations and best practices.
- Conduct security assessments and vulnerability scans to identify weaknesses in systems and applications.
- Automate security tasks and processes to improve efficiency and reduce manual effort.
- Provide security guidance and training to development and operations teams to promote a security-conscious culture.
- Participate in incident response activities to investigate security breaches and implement remediation measures.
Required Skillset :
- Demonstrated ability to design, implement, and manage security controls in cloud environments (AWS, Azure, GCP).
- Proven experience in integrating security into the CI/CD pipeline using DevSecOps principles and tools.
- Expertise in configuring and managing SIEM solutions (e.g., Splunk, QRadar, Sentinel) for threat detection and incident response.
- Strong understanding of security principles, technologies, and best practices.
- Excellent communication and collaboration skills to work effectively with cross-functional teams.
- Bachelor's degree in Computer Science, Information Security, or a related field.
- Ability to adapt to a dynamic and fast-paced environment, working both independently and as part of a team.
- Lead implementation and enforcement of security controls within cloud and DevSecOps environments (AWS, GCP, Azure).
- Design and operate cloud native security architectures aligned to enterprise security programs.
- Develop automation and custom tooling using Python and Terraform.
- Define and implement policy as code using Open Policy Agent (OPA).
- Lead detection engineering efforts, including detection as code and rule lifecycle management.
- Develop and maintain advanced detections using SIEM query languages (e.g., Splunk SPL, YARA). - Apply software testing methodologies to security controls and pipelines.
- Mentor junior engineers and provide technical leadership.
- Experience : 5+ years in DevSecOps / cloud security (mandatory).
- Strong DevOps tooling, CI/CD, and Agile delivery experience.
- Implement and support IAM roles, policies, and access controls in AWS and/or GCP environments.
- Collaborate with cross functional teams to support secure cloud service consumption.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1626425