Consultant - Cloud Security Assessments

11 hours ago

Apply Now
Logo of CrowdStrike

CrowdStrike

Next-Generation Endpoint Protection • Endpoint Detection and Response • Next Generation Anti-Virus • Managed Threat Hunting • Incident Response

Description

• CrowdStrike is looking for highly motivated, self-driven, Cloud Security Consultants dedicated to making a difference in global security by protecting organizations against the most advanced adversaries in the world. • The Cloud Security Consultant would be responsible for delivering cloud security assessments and providing actionable recommendations to enhance the security posture of customer cloud environments. • Actively contribute to a cloud assessment methodology - collaborate with leadership, research, and product teams to continuously improve and develop new analysis approaches. • Leverage scientific thinking, analytics, and threat intelligence to identify viable attack paths and contextualize risk in client cloud environments based on resource configurations and business context. • Develop tools, detections, and queries to work with large data sets at scale, including SIEM analytics, querying APIs, and automating repetitive tasks. • Manage client engagements, lead internal teams, and provide regular status updates to clients regarding project status and findings. • Analyze cloud security architecture and resource configurations to identify security weaknesses and misconfigurations that may expose cloud environments to threats. • Review identity plane configurations and advise clients about hardening authentication and authorization controls, including hybrid identity. • Conduct workshops with stakeholders to identify gaps in cloud security management practices and governance, including logging, workload security, DevSecOps, and network security. • Write queries and simple scripts to interact with APIs exposed by security tools and cloud control plane services. • Produce high-quality written and verbal reports, presentations, recommendations, and findings to key stakeholders including customer management, regulators, and legal counsel. • Demonstrate industry thought leadership through blog posts, CrowdCasts, and other public speaking events.

Requirements

• At least 6 years of hands-on experience in cloud engineering, DevOps, security, or cloud support roles. • A strong understanding of one or more of the following cloud platforms: Azure, M365, AWS, GCP, or OCI. • Familiarity with modern cloud workloads - DevOps, CICD pipelines, containers, and related security defenses and pitfalls. • Strong analytical skills, attention to details, and critical thinking skills • Excellent communication skills, including a strong ability to communicate executive and/or detailed level findings to clients; ability to effectively communicate tasks, guidance, and methodology with internal teams. • Incident Remediation: strong understanding of targeted attacks and able to create customized tactical and strategic remediation plans for compromised organizations related to major cloud platforms. • Cloud Incident Response: knowledge in AWS, Azure, M365, or GCP incident response methodologies. • An understanding of Kubernetes management plane, deployment models within public cloud environments, and container security. • Capable of completing technical tasks without supervision. • Desire to grow and expand both technical and soft skills. • Strong project management skills. • Contributing thought leader within the cloud security/incident response industry. • Ability to foster a positive work environment and attitude.

Benefits

• Remote-friendly and flexible work culture • Market leader in compensation and equity awards • Comprehensive physical and mental wellness programs • Competitive vacation and holidays for recharge • Paid parental and adoption leaves • Professional development opportunities for all employees regardless of level or role • Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections • Vibrant office culture with world class amenities • Great Place to Work Certified™ across the globe

Apply Now

Similar Jobs

Yesterday

As an Application Security Engineer at Bonterra, perform web application security assessments to enhance security.

Yesterday

Join Coinbase to ensure security compliance in building the future of the global financial system.

Yesterday

Join Tixr to defend networks and systems as a Security Operations Engineer. Your role emphasizes incident resolution and security automation.

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com