Associate Director Cloud Security Engineering
The Depository Trust & Clearing Corporation (DTCC) · Tampa, FL · 1 wk ago
Full-time
Are you ready to make an impact at DTCC? Work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development. We are at the forefront of innovation in the financial markets and are committed to helping our employees grow and succeed.
Pay and Benefits
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence to support your physical, financial, and emotional well-being
DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
Responsibilities
- Lead and mentor a team of cybersecurity engineers specialized in securing cloud and cloud assets including workloads, containers, applications and data
- Align cloud security strategy with business objectives and regulatory requirements for IaaS, PaaS, and SaaS
- Identify deficiencies in cloud security services, propose plans for improvement and implement them
- Find opportunities for automation and improving AI/ML capabilities across the technology stack
- Evaluate and create cloud security baselines and implement monitoring to assure compliance
- Document security policies, controls, and processes, and develop runbooks and how-to guides for operational readiness of engineered solutions
- Partner closely with stakeholders to prepare new security technologies and functionalities for implementation into the production environment, including security standard methodologies
Requirements
- Minimum of 8 years of related experience
- Bachelor's degree and/or equivalent experience
Skills
- 8+ years of proven experience with AWS, Network security, and System security with demonstrated experience in Cloud Security tools such as Aquasec, Inspector and Wiz
- Additional Cloud computing experience with Azure, GCP, and Containerization is a plus
- Experience securing Kubernetes, Containers, workloads and monitoring using CNAPP and CSPM tools
- Understanding of Terraform, CI/CD and deployment architectures
- Experience with vulnerability management, SIEM, compliance to security baselines, and Identity and Access Management in the cloud and on-prem (AD, Ping, ADFS, etc.)
- Familiarity with industry standards, guidelines, and regulatory compliance requirements related to information security and cloud computing (NIST 800-53, ISO-27001, etc.)
- Experience with delivering reliable, available, and high-performance enterprise-scale solutions
- Programming experience in one or more of the following languages: Python, C#, C++, PowerShell, Bash, Terraform, and SQL, as well as experience with GIT version control (GITFlow, GitHub, BitBucket, etc.)
- One or more of the following certifications: Cloud (AWS, Azure, Google Cloud Platform), CISSP