Cloud Security Engineer responsible for architecting secure cloud application infrastructure at QTS. Drive strategic security initiatives across public, private, and hybrid cloud environments to support growth.
Responsibilities
Build and maintain secure, resilient cloud environments across public, private, and hybrid platforms.
Apply security best practices to new and existing cloud applications, ensuring compliance with QTS security and regulatory standards.
Partner with architects, IT teams, and system owners to guide secure application and infrastructure design.
Implement and support strong identity and access management controls, including MFA, hardware tokens, and other authentication methods.
Maintain consistent cloud configurations using tools like Puppet, Chef, or Ansible.
Work with SOC and incident response teams to investigate alerts, analyze threats, and respond quickly to cloud security events.
Create playbooks, documentation, and automated response workflows using AI and SOAR to improve speed and accuracy.
Develop and maintain scripts (Python, PowerShell, Ruby) to support secure data flow and security operations.
Review cloud environments regularly to identify risks and recommend security improvements.
Support remediation efforts following audits, assessments, and vulnerability reports.
Stay current on emerging security threats, tools, and best practices, applying them to strengthen QTS’ cloud posture.
Participate in project and implementation meetings as a security advisor.
Communicate risks and recommendations clearly to both technical and non-technical teams.
Work effectively with internal teams and external vendors to ensure cloud solutions remain secure.
Requirements
Bachelor's degree in computer science, information assurance, MIS or related field, or equivalent industry experience
At least 5-7+ years’ experience in cybersecurity as a practitioner and with at least 2-3+ years exposure with SaaS platforms (Box, Salesforce, ServiceNow, M365 etc), Amazon Web Services (AWS), Microsoft Azure or VMware.
Strong Linux and Windows support skills.
Experienced in cloud networking architecture and cloud operations, with cloud access security broker (CASB) experience preferred.
Familiarity with tools such as Git, Jenkins, Chef, Puppet and Salt.
Network and encryption experience, including virtual private networks (VPNs), IPsec, SSL/TLS, LDAP and public key infrastructure (PKI).
IDAM experience, such as OAuth, OpenID, Azure Active Directory.
Experience with scripting languages such as Python, Ruby, PowerShell or JavaScript.
Experienced in the use of threat intelligence services in a production environment.
Experience and understanding of various regulatory requirements and laws, including but not limited to: Payment Card Industry (PCI), Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA), General Data Protection Regulation (GDPR) and Gramm-Leach-Bliley Act (GLBA). Additionally, experience in one or more of the following: ISO 27001/2, ITIL or NIST.
Up-to-date understanding of a wide-range of incident response, system configuration, vulnerability management and hardening guidelines.
Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.
Team leadership experience to help with the organizational and team dynamics in a growing field.
Demonstrated problem-solving abilities to manage complex local and international security requirements.
Self-motivated and directed, well-organized and able to position controls in anticipation of threats.
Successful track record collaborating with technical and non-technical teams to promote ideas to support business enablement.
Familiarity with international and state privacy laws.
Experience writing technical documentation.
Highly trustworthy; leads by example.
US Citizenship for this position is required by law due to federal customer contracts
Benefits
medical, dental, vision, life, and disability insurance
OT Security Consultant improving security for operational technology and industrial control systems. Collaborating with clients to enhance their OT security posture and governance in critical infrastructure.
Technical security lead managing security operations for Kong Cloud. Architecting advanced security solutions and mentoring engineers in a fast - paced environment.
Manager in Cyber Security & Regulatory Compliance overseeing IT security and compliance processes at C.H.BECK, a longstanding media group. Engaging in risk management and collaboration across departments.
Designs cybersecurity systems and frameworks for Navy Federal’s information security strategy. Collaborates with stakeholders, solving complex issues to enhance security architecture.
Support in quality and information security management, optimizing processes in collaboration with departments. Create reports and help maintain documentation ensuring up - to - date records.
Workday Security Consultant serving as bridge between HR functional area and IT for technology solutions. Involves analysis, development, and maintenance of HRIS solutions.
IT Security Architect responsible for building security concepts and enhancing company - wide safety measures. Contributes to reliable global software solutions in an international team context.
Cyber Security Service Performance Manager managing the delivery of cyber security services within TfL. Focusing on service transition, contract management, and stakeholder engagement.