Principal Cloud Security Engineer (Remote)
Job Description
Job Summary:Â
At iHerb, we are on a mission to make health and wellness accessible to everyone globally through our products and platforms. The Infrastructure Engineering team at iHerb focuses on improving our infrastructure, scalability, performance, reliability, and security of the systems and tools for our technology teams. We provide a wide range of services internally to our teams. Infrastructure Engineering teams comprises Cloud Operations (CloudOps), Site Reliability Engineering (SRE), Network Engineering (NetEng), and Production Operations (ProdOps).Â
The Principal Cloud Security Engineer/Architect is developing and implementing an extensive and well defined cloud security architecture. Ensure that our security standards are meeting and exceeding cloud security best practices. Lead our cloud security strategy, drive remediation with cloud security tooling, optimize cloud architecture and design, and work cross functionally to define new security capabilities. Partner with teams across the organization to deliver company-wide security initiatives, and respond to current and emerging cloud security threats.Â
Job Expectations:
- Define, build, and maintain cloud security policies, standards, and procedures that meet or exceed all regulatory requirements.
- Implement commercial and vetted open-source solutions to continuously secure and monitor AWS cloud infrastructure, services, and workloads.
- Collaborate with multiple teams, to drive remediation of vulnerabilities.
- Lead cross-functional projects and establish cloud infrastructure security best practices.
- Research emerging threats, determine applicability, and proactively implement mitigations.
- Participate and be available on-call for security incident response.
- Function as a Cloud Security SME, providing guidance on implementation of new cloud security technologies and initiatives.
Knowledge, Skills and Abilities:Â Â Â Â
- Knowledge and familiarity with common security frameworks such as NIST CyberSecurity, CIS, and CSA.
- Knowledge and ability to implement and operationalize the AWS Security Pillar of the AWS Well Architected Framework.
- In-depth experience working with AWS services and securing AWS services such as VPC, EC2, S3, Lambda, Datastore offerings, etc.
- Strong knowledge of AWS (Amazon Web Services) (preferred), GCP (Google Cloud Platform), Azure (Microsoft), or other cloud platforms and related technologies is strongly desired.
- Experience with Content Delivery Networks (CDN), Web Application Firewall (WAF), Bot Management and Distributed Denial of Service (DDOS) tooling.
- Knowledge of new and emerging attacker tools, tactics and techniques (TTP) that may pose threats to the organization.
- Experience with compliance requirements such as PCI, SOX, and GDPR.Â
- Understanding of cloud network security design including segmentation, encryption, logging, monitoring, and remediation.
- Strong work ethic, including consistent documentation and tracking of work activities.
- Ability to work in a fast paced, rapidly changing environment with a strong desire to learn.
- You are a self-starter and require minimal guidance to produce results.
- Excellent problem solving, critical thinking, collaboration and communication skills.
- Prioritizes and adjusts tasks to accomplish project results.
The duties and responsibilities described above may provide only a partial description of this position. This is not an exhaustive list of all aspects of the job. Other duties and responsibilities not outlined in this document may be added as necessary or desirable, with or without notice.
Experience Requirements:Â
8+ years of experience securing enterprise-scale cloud infrastructure, software, and services.
Education Requirements:Â
Bachelor’s degree in Computer Science, Information Technology, or related field. (Masters preferred)
Desired advanced industry certifications: AWS Solutions Architect, AWS Security Specialty, CCSP, CKS, or SANS GIAC.
#LI-JC1
Employees (and their families) that meet eligibility criteria as outlined in applicable plan documents are eligible to participate in our medical, dental, vision, and basic life insurance programs and may enroll in our company’s 401(k) plan. Employees will also be eligible for Time Off and Paid Sick Leave pursuant to the company’s policies. Employees will enjoy paid holidays throughout the calendar year. Eligibility requirements for these benefits will be controlled by applicable plan documents.
Staffing Agency Submission Notice
iHerb does not accept unsolicited 3rd party ("Agency") candidates. If you are an Agency, please send any requests to be considered as a supplier in our Vendor Management System to [email protected]. Do not contact iHerb employees directly. If requested to work on a role, any Agency candidates would be presented through the internal recruiting organization.
About iHerb
iHerb is on a mission to make health and wellness accessible to all. We offer Earth’s best-curated selection of health and wellness products, at the best possible value, delivered with the most convenient experience.
We’re the world’s largest eCommerce platform dedicated to vitamins, minerals, and supplements, and other health and wellness products. For more than 25 years, we’ve been making it simple for people all over the world to purchase the highest quality products. From supplements to skincare to grocery items, we ship over 30,000 products, from over 1,200 brands direct to our customers in 185+ countries.
Our vision is to become the #1 destination for health and wellness across the world.
With a passion for wellness and a mind for innovative solutions, iHerb team members share a vision for a healthier world that drives them each day. Our 5 Shared Values unite our global team:
Focus on the Customer · Empower Our People · Be Entrepreneurial & Pivot Quickly ·
Embrace Diversity & Inclusion · Strive for Simplicity
iHerb Benefits
At iHerb, we are dedicated to offering programs designed to help our employees and their families stay healthy, live well, and plan for their financial future. Built on a strong foundation, our programs provide options and upgrades with flexibility, protection, and security in mind. For the comprehensive benefits list, visit www.iHerbBenefits.com. For our international team members, you may be eligible for benefits depending on the country where you are employed. The Talent Acquisition Partner/local HR representative will go over the benefits you are eligible for.Â
iHerb is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. iHerb provides equal employment opportunities to all applicants for employment and prohibits discrimination and harassment.
Date Posted
04/12/2023
Views
7
Similar Jobs
Quality Engineer, RM & Pre-Production - ARC'TERYX
Views in the last 30 days - 0
Arcteryx is seeking a Quality Engineer with 3 years of experience in manufacturing preferably in the apparel industry The role involves developing and...
View DetailsSr RF Engineer - Universal Electronics
Views in the last 30 days - 0
Universal Electronics is hiring a Sr RF Engineer to lead the design and optimization of advanced RF solutions for IoT and smart home products The role...
View DetailsMission Systems Engineer - Maxar Technologies
Views in the last 30 days - 0
Maxar Intelligence is currently hiring for a Mission Systems Engineer in Westminster CO The role involves collaborating with experts to explore remote...
View DetailsLead AIT Systems Engineer - Maxar Technologies
Views in the last 30 days - 0
Maxar Intelligence is currently hiring for a Lead AIT Systems Engineer in Westminster CO The role involves managing a team ensuring performance from c...
View DetailsSpacecraft Systems Engineer - Maxar Technologies
Views in the last 30 days - 0
Maxar Intelligence is seeking a Spacecraft System Engineering Team member with a Bachelors degree in engineering physics or a related field and 510 ye...
View DetailsQuality Engineer (Internal Assignment / Project Hire) - The Walt Disney Company
Views in the last 30 days - 0
The job posting is for a Quality Engineer position in Worldwide Safety Assurance Disneyland Resort Quality Engineering team The role involves providin...
View Details