Job Closed
This listing is no longer active.
Aprio, LLP is an accounting firm that is on a mission to advise its customers on “how to achieve what’s next.” As an employer, the company is recognized f
Manager, Cloud Security
Location
United States
Posted
135 days ago
Salary
$120K - $170K / year
Seniority
Lead
Job Description
Manager, Cloud Security
Aprio
• Work with a nationally ranked CPA and advisory firm that is passionate for what's next. • Join Aprio's Risk Advisory and Assurance team and help clients maximize their opportunities. • Lead our cloud security consultants serving small to enterprise organizations across the Defense Industrial Base. • Guide consultants who assist our clients through their CMMC Level 2 certification journey while ensuring they have the right leadership support.
Job Requirements
- Bachelor’s degree in computer science, Information Security, or related field (Master's preferred)
- 10+ years of progressive in information security and compliance, with significant consulting experience
- 4+ years managing security consultants with proven track record of team productivity
- Deep expertise in securing complex cloud environments, threat modeling, and risk assessment
- Strong cross-functional collaboration skills, balancing security requirements with business objectives
- Clear and persuasive communicator in both writing and verbal settings
- Low ego, high empathy leader who attracts talent and builds diverse, inclusive teams
- Passionate about developing engineers' careers in a supportive yet challenging environment
- 5+ hands-on experience implementing Microsoft security solutions across varied environments
- Experience translating technical requirements into business terms for non-technical stakeholders
- Holds any Microsoft security certifications (SC-200, SC-300, SC-400, AZ-500)
Benefits
- Medical, Dental, and Vision Insurance on the first day of employment
- Flexible Spending Account and Dependent Care Account
- 401k with Profit Sharing
- 9+ holidays and discretionary time off structure
- Parental Leave – coverage for both primary and secondary caregivers
- Tuition Assistance Program and CPA support program with cash incentive upon completion
- Discretionary incentive compensation based on firm, group and individual performance
- Incentive compensation related to origination of new client sales
- Top rated wellness program
- Flexible working environment including remote and hybrid options
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Lead
WhopWhop is marketplace that helps 1M+ entrepreneurs earn online. Discover, buy, & sell communities, courses and software.
• own all security outcomes: infrastructure, compliance, external programs, and internal security • drive execution and hold an extremely high bar for our security posture • hands-on role, independently build these programs from scratch • own SOC2 and data privacy compliance (audits, GDPR, CCPA) • own infrastructure security (AWS, Vercel, Cloudflare, PlanetScale - secrets, access controls, monitoring) • own security incident response (detection, triage, remediation, post-mortems) • own external security programs (bug bounty, pen tests, threat monitoring) • own internal security (IT vendor, device security, office security, training) • first line of escalation for all security issues
• Work directly with engineering teams as the main point of contact for product security. • Conduct formal TARA (ISO/SAE 21434) to define security requirements for vehicle ECUs and autonomous stacks. • Develop data integrity standards for CAN and Automotive Ethernet to block injection and spoofing attacks. • Perform threat modeling for new infrastructure to identify vulnerabilities in fleet management and diagnostic tools. • Specify automated security testing requirements, including protocol fuzzing, for the software build pipeline. • Translate high-level security goals into actionable engineering specifications alongside senior architects. • Design Hardware Security Module (HSM) integrations to establish a hardware-rooted Chain of Trust. • Architect secure boot and OTA update mechanisms using cryptographic signing to prevent unauthorized code execution. • Design secure truck-to-cloud interfaces utilizing end-to-end encryption and robust mutual authentication.
• Work directly with engineering teams as the main point of contact for product security. • Conduct formal TARA (ISO/SAE 21434) to define security requirements for vehicle ECUs and autonomous stacks. • Develop data integrity standards for CAN and Automotive Ethernet to block injection and spoofing attacks. • Perform threat modeling for new infrastructure to identify vulnerabilities in fleet management and diagnostic tools. • Specify automated security testing requirements, including protocol fuzzing, for the software build pipeline. • Translate high-level security goals into actionable engineering specifications alongside senior architects. • Design Hardware Security Module (HSM) integrations to establish a hardware-rooted Chain of Trust. • Architect secure boot and OTA update mechanisms using cryptographic signing to prevent unauthorized code execution. • Design secure truck-to-cloud interfaces utilizing end-to-end encryption and robust mutual authentication.
Security Engineer
Fieldwire by HiltiThe all-in-one jobsite management software for field to office communication.
• Implement essential security projects. • Help maintain a Vulnerability Management program. • Help define and evangelize requirements and guidance for security best practices. • Participate in security incident management, evaluation, assessment, and testing for vulnerabilities across web and mobile applications as well as cloud infrastructure and internal networks. • Provide information and vulnerability notices to the team from Threat Hunting. • Collaborate with product and engineering teams to improve security visibility, monitoring, hardening, and operational response. • Manage and configure security controls on endpoint solutions such as GSuite, SSO, Data Loss Prevention, and firewalls. • Routinely manage engagements such as tabletop, red team exercises, or bug bounties.



