Title: | Cloud Security Engineer |
Department: | Information Technology |
Reports To: | Vice President – Information Technology |
Date Prepared/Revised: | November 2024 |
Are you interested in joining a fast growing and customer focused company that is consistently rated as one of the Top Workplaces in Northeast Ohio? Do you feel that hard work should pay off and you value things like workplace flexibility, career advancement opportunities, a positive culture and a genuine feeling that you belong to a team? If so, you would be perfect for Fleet Response. Fleet Response specializes in providing services to corporations who self-insure physical damages to their vehicle fleets. Built from an insurance background with an eye for detail, Fleet Response prides itself on offering a variety of customized services to all our clients. Fleet Response is seeking qualified candidates for the position of Cloud Security Engineer.
Purpose, Scope & Dimension of Job:
The Cloud Security Engineer will ensure the company’s resources, networks, applications and cloud infrastructures are securely architected, configured, deployed, and maintained in alignment with the organization’s policies and requirements utilizing industry best practices through automation.
This role is responsible for the organizations’ technical security projects, improving secure cloud architecture patterns, and verifying proper security controls are implemented. This position requires participation in technical research, planning and development to enable continuous improvements of the organization’s security posture. The Cloud Security Engineer is the primary subject matter expert who utilizes his/her Cloud Security Engineering expertise to resolve complex problems in consideration of established policies, guidelines, or processes.
Essential Duties/Major Accountabilities:
- Continuous automation of security hardening in the Cloud to ensure gaps are identified and addressed quickly in alignment with our standards and industry best practices.
- Engineer and maintain security solutions to protect Cloud resources from malicious internal and external threats by providing real-time detection, alerting and remediation.
- Plans and documents remediation strategies and procedures in alignment with organizational requirements and commitments.
- Leads the organization’s cybersecurity strategy through policies and procedures in alignment with continual education and research into technical security capabilities and evolution.
- Coordinate with the organization’s architects to ensure a strategic security architecture vision is implemented into all technical solutions and communicate the security requirements to senior management and technical teams.
- Performs as the Subject Matter expert focused on multiple technologies within the Security domains (Security Engineering, IAM, Cloud Security, Data Security, Network Security, Encryption, Privileged Access Management, Federation etc.).
- Schedule, coordinate and perform security audits and vulnerability assessments to assess security procedures, requirements and controls.
Accountability Standards for all Department Staff:
As part of the Information Technology Department, each staff member is responsible for contributing to achievement of the department’s mission, vision and goals; conducting oneself in accordance with the department’s Key Performance Expectations; participating in team activities and assignments; and assisting any member of the department when the need arises or is observed, including in the absence of another.
- Ensure that assigned projects and activities adhere to accepted professional standards.
- Coordinate work efforts with other appropriate groups, staff, vendors, supervisors, and managers.
- Conduct basic research, assemble data and information, prepare reports, and complete surveys.
- Perform or assist in the performance of any task required of any member of the department when necessary due to workload, absences, deadlines, etc.
- Ensure that the Company is in compliance with the legal, regulatory, contractual, collectively bargained, and procedural requirements related to assigned operations.
- Create, document and communicate user-friendly, efficient policies and procedures for assigned areas of responsibility.
- Give presentations to employees and supervisors.
- Prepare reports and studies; maintain data, files, etc. needed to document and defend the actions of the Company related to assigned areas of responsibility; create and maintain organized libraries of information, reference materials, policies and procedures for department operations to minimize the transition time required of a new or replacement employee.
- Generate support for the department by providing high quality customer service. Communicate and provide accurate and timely information and service to the various customers served by and groups who interact with the department to meet customer needs and create a positive impression of the Company’s Information Technology department. Promptly resolve questions and problems related to assigned areas raised by either employees or customers.
- Identify the need for changes in policies and procedures and take initiative to implement within assigned area of responsibility or make recommendation for change to responsible party.
- Serve as an advocate for and representative of the Company’s interests and position. Represent, explain, and advocate the Company’s position when interacting with others.
- Maintains the confidentiality of sensitive information utilized or viewed inadvertently while performing work. Sensitive/confidential information includes, but is not limited to marketing and pricing plans; discussions and information related to the potential sale or purchase of physical assets or operating and business entities; bids and related purchasing or financial information prior to award of the bid or proposal; information of a personal nature contained in employee files such as medical information; information protected by the lawyer/client relationship; and confidential labor relations matters and strategies.
- Consistent and timely attendance.
Minimum Required Knowledge, Skills, and Abilities:
- Possession of a college degree or equivalent work experience in an applicable technical field.
- Directly related experience (may be earned concurrently) in the following areas:
- 5+ Years security architecture, implementation and design experience required, designing Cloud security solutions.
- 3+ Years IaC experience, preferably Terraform, Ansible and DevOps
- Cloud Security and hands on knowledge with Azure and Microsoft 365 is highly desired.
- Cloud security & compliance related tools (Azure Sentinel, Azure AG, Entra, Microsoft Purview)
- Able to multitask and prioritize.
- Demonstrated work history of providing high quality, strong customer-oriented services including:
- problem solving
- strong listening skills
- history of coordinated work effort with extensive follow-through and follow-up
- experience identifying customer needs
- effective communication and people skills.
- Ability and interest to function effectively as a team leader.
Additional Preferred Qualifications:
- Experience with Graph API, PowerShell, Python, or other automation scripting platforms.
- Experience with Microsoft Azure Sentinel.
- Strong executive reporting and narrative based presentation skills.
- Excellent written and verbal communications skills.
Unique Aspects of Job:
Possible off-hours configuration, maintenance and installation, network devices, security appliances, and related components. Additionally, a small percentage of travel may be required depending on project requirements.
Physical Requirements:
With or without accommodation, the employee in this position needs to move about and position him/herself to access files and operate office machinery. The employee must be able to work at a desk for long periods of time and operate a computer workstation and telephone. Due to the managerial/customer service aspect of this position, it is necessary to communicate both in person and over the telephone with a variety of people each day. It is also essential to occasionally transport up to fifty (50) pounds. The employee must, with or without accommodation, have the ability to detect that the Company’s information systems are operating efficiently. This position works in a normal office environment but is occasionally exposed to moving parts and loud noise from technology devices and systems.
The minimum reasoning skills necessary for this position include the ability to solve practical problems and deal with a variety of concrete variables in situations where standardization does not exist. Ability to interpret a variety of instructions furnished in written, oral, diagram, or schedule form.
The minimum language skills necessary for this position include the ability to read and interpret documents such as technical procedure manuals.
Hours/Schedule:
52 Weeks, 40-hours per week, Monday through Friday. Will be required to work a variable schedule/varying hours to meet operational needs. This position may be on call 24/7 and will either carry a Company provided cell phone or provide a personal cell phone number. Work hours will be determined by the Vice President of Information Technology. Occasional travel is required for workshops, seminars, training, presentations, consulting and/or advising, and visiting branch and extensions sites.
Fleet Response is an equal opportunity employer.