17 Minutes ago β’ All levels β’ $150,000 PA - $180,000 PA
Cyber Security
Job Description
A financial firm is seeking a Cloud Security Specialist in New York, NY. This role involves acting as a Subject Matter Expert for cloud security, developing and implementing IT security strategies, and providing security advice for IT projects. Key responsibilities include managing IDPS deployments, optimizing detection and response in cloud/hybrid environments, monitoring security alerts, and contributing to incident investigations and threat hunting. The specialist will also ensure regulatory compliance and improve security processes.
Good To Have:
Financial and/or Banking industry experience.
Security certifications such as CISSP and at least one GIAC (GSEC, GCED, GCIA, GCIH, GREM, GCFR or equivalent).
Cloud certifications such as AWS Solution Architect, AWS Security Specialty.
Must Have:
Act as Cloud Security Subject Matter Expert (SME).
Develop and implement firm IT Security Strategy.
Provide security advice and support for IT projects.
Experience with IDPS deployments (Suricata/Snort) and PCAP analysis.
Implement and optimize detection and response workflows in cloud-native/hybrid environments.
Monitor, investigate, and triage cloud security alerts from SIEM and cloud native tools.
Create and maintain cloud-focused detection rules and playbooks.
Contribute to investigations and assist in threat hunting.
Ensure incident response efforts and documentation comply with industry standards (GDPR, SOC, NIST, ISO).
Operate and maintain controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection.
Conduct IT Security risk assessments.
'Hands-on' IT Security analysis and engineering experience.
Proven experience in intrusion detection, malware analysis, forensics, and incident response in cloud/hybrid environments.
Extensive knowledge of cloud environments such as AWS & Azure.
B.S. in a technology discipline (Computer Science, Computer Engineering, Cybersecurity or equivalent).
Add these skills to join the top 1% applicants for this job
timeline-management
risk-management
risk-mitigation
game-texts
incident-response
aws
azure
threat-intelligence
snort
amazon-web-services
cloud-security
microsoft-azure
Responsibilities:
SME Consultancy:
As part of the IT Security team, develop and implement firm IT Strategy in consultation with the IT teams, ensuring that all initiatives are mirrored in respective strategies including the overall firm Strategy
Provide security advice and support for information technology projects as Cloud Security subject matter expert (SME)
Research new security related products and services to ensure that firm is equipped with appropriate industry best tools and solutions
Cloud Security:
Subject Matter Expert (SME) for cloud security within the Security Operations Department
Experience working with and managing IDPS deployments such as Suricata/Snort including a strong PCAP analysis skillset
Implement and optimize detection and response workflows in cloud-native/hybrid environments
Monitor, investigate, and triage cloud security alerts from SIEM and cloud native tools
Collaborate with cloud operations and infrastructure teams to ensure secure architecture and configuration
Create and maintain cloud-focused detection rules and playbooks in collaboration with incident response teams
Contribute to investigations and assist in threat hunting within environments
Review cloud logs
Support compliance efforts through evidence gathering, control validation, and reporting
Participate in security reviews for existing integrations and new services etc.
Investigate and respond to security incidents escalated from the SOC
Assist in implementing cloud workflows utilizing Lambda and Step functions which enable cloud incident response
Regulatory Compliance & Reporting:
Ensure incident response efforts and documentation comply with industry standards and best practices (GDPR, SOC, NIST, ISO etc.)
Maintain detailed documentation and reporting for audits and compliance reviews
Process Improvement & Risk Mitigation:
Develop and refine incident response standard operating procedures and playbooks
Conduct root cause analysis and post incident reports to identify areas for improvement
Recommend and implement process improvements to enhance detection, response and recovery capabilities
Operational:
Operate and maintain controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, etc with an emphasis on cloud deployments and implementations
Conduct IT Security risk assessments for all high impact projects, defining security mitigating controls that impact the technology architectures of firm, service providers, and business partners
Review and update IT Security procedures to reflect best practice and mitigate current and emerging threats
Maintain relationships with third-party IT security vendors and strategic partners
Qualifications:
'Hands-on' IT Security analysis and engineering experience including securing systems, networks and infrastructure; operational support, including on-call experience
Proven experience including combination of intrusion detection, malware analysis, forensics and incident response, particularly in cloud/hybrid environments
Extensive knowledge of cloud environments such as AWS & Azure
Monitor, tune and develop technical IT Security controls and frameworks to ensure appropriate preparation, monitoring and response to threats
Ensure a risk-based approach to IT Security is adopted in every part of the business and solutions
Work with members of the IT Security team to help design, implement and maintain security
Prepare for, identify (hunt) and remediate cyber threats
Operate and maintain IT Security controls related to SIEM, DLP, Vulnerability Management, Cyber Threat Intelligence, Endpoint Protection, etc.
Deliver IT Security projects from concept, approval, design, and implementation to operation
Ability to collaborate effectively with others to drive forward key security objectives
Strong documentation and report writing skills (to both technical and business audiences)
Excellent time management and organizational skills combined with technical IT Security acumen