What Ibexlabs Does
Ibexlabs is one of the leading software development and service companies. We build cloud native B2B SaaS software helping customers in their cloud transformation journey. We are rapidly growing and looking to hire smart people who can continue fueling our growth and be part of our success journey.
Position Details
Job Purpose
We are looking for a Security Engineer (with 3 years of experience in a public cloud environment), who is passionate about security design, architecture and implementation and learning new technologies and growing her/himself in his/her career.
As a Security Engineer, you will help guide our customers with the assessment through AWS Well Architected Framework of their public cloud infra with remediation and recommendation. You will also help our customers to make them SOC2 (Service Organisation Control) certified including policies/procedures creation and guiding and mentoring the rest of the team members.
Responsibilities and Requirements
- Deep understanding of AWS Well Architected Framework and best practice security design principles.
- Exceptional understanding of security principles, strategies and goals.
- Ability to actively assess existing cloud infrastructure to identify gaps and mitigations.
- Must be well-versed with security compliance frameworks SOC2 with security controls for SOC2 certification of customers.
- Work closely with the security team to create policies/procedures for internal and customers.
- Conduct Security Awareness Training, Security Drill, Phishing Compaign as a part of Security Audit.
- Ensure continuous compliance for the users and devices at the organization level.
- Ability to successfully perform Vulnerability Assessment and remediate with risk analysis for cloud infrastructure of customers.
- Possess and maintain up-to-date understanding of emerging trends in cloud native security including research of the latest products to combat the threats.
- Identify and assess Security Risks, understand risk management principles and practices, and develop and implement risk mitigation strategies.
- Familiarity with incident management and response, including threat detection and post-incident Root Cause Analysis.
- Ability to multitask and with continuously shifting priorities.
- Ability to communicate security concepts and issues to peers and management.
- Maintain Runbook, document and execute best practices on Security and continuously share knowledge with team members.
- Must be a great team player, mentor / coach and fun to work with.
- Must have AWS Solution Architect-Associate certification.
- AWS Security Speciality Certification a plus.
- AWS DevOps Certification (optional).
- Knowledge of IAC using Cloudformation/Terraform a plus.