Job Closed

This listing is no longer active.

LITIT logo
LITIT

We deliver quality through client engagement and talent excellence

Cloud Security Assurance Consultant

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 51-200Since 2024H1B No SponsorCompany SiteLinkedIn

Location

Lithuania

Posted

115 days ago

Salary

€4.5K - €7K / month

Seniority

Senior

Bachelor Degree6 yrs expEnglishAWSAzureGCP

Job Description

Cloud Security Assurance Consultant

LITIT

• Lead security architecture and assessment reviews for cloud-native and hybrid solutions • Validate solution designs against industry frameworks such as National Institute of Standards and Technology (NIST CSF), Center for Internet Security (CIS Benchmarks), and Cloud Security Alliance (CSA CCM) • Conduct cloud penetration testing following CREST and CHECK methodologies • Validate Infrastructure as Code (IaC) security controls and CI/CD pipeline security • Lead compliance assessments including ISO 27017, ISO 27018, SOC 2, GDPR, NIS2, and DORA • Assess cloud governance frameworks and Cloud Security Posture Management (CSPM) implementations • Coordinate cloud security audits with internal and external stakeholders • Assess cloud IAM architectures and privileged access management controls • Validate encryption standards, key management processes, and data residency controls • Review SSO, MFA, and least-privilege implementations

Job Requirements

  • Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field
  • 6+ years of experience in information security with a strong focus on cloud security
  • 3+ years of hands-on experience conducting cloud security assessments and architecture reviews
  • Proven multi-cloud experience across production environments, including Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP)
  • CCSP (Certified Cloud Security Professional) or CCSK (Certificate of Cloud Security Knowledge) certification (mandatory)
  • Strong senior-level stakeholder communication and executive presentation skills
  • Demonstrated ability to develop and drive strategic cloud security roadmaps
  • Proven cross-functional collaboration experience with DevOps and Platform Engineering teams
  • Strong analytical mindset with a risk-based decision-making approach

Benefits

  • Learning opportunities with compensated certificates
  • Learning lunches
  • Language lessons
  • Chance to switch projects after one year
  • Team building twice a year
  • Themed lunches
  • Pet-friendly environment
  • Flexible time off depending on a project
  • Seasonal activities with colleagues
  • Additional health insurance
  • Loyalty days for Lithuanian residents
  • Referral bonuses
  • Recognition of important occasions of your life

Related Categories

Related Job Pages

More Security Engineer Jobs

Kiss My Apps logo

Security Engineer

Kiss My Apps

Platform company of 30+ web & mobile apps with 100M+ users in utilities, fitness, lifestyle & more.

Security Engineer115 days ago
Full TimeRemoteTeam 201-500Since 2022H1B No Sponsor

• побудова та впровадження практик Secure SDLC у процеси розробки; • інтеграція SAST/DAST/SCA та інших security-сканерів у CI/CD пайплайни; • виявлення, аналіз та супровід усунення вразливостей у застосунках і залежностях; • автоматизація базових механізмів фішинг-захисту та security-контролів; • консультація інженерних команд щодо безпечного коду та практик безпеки; • проведення security-навчання та підвищення awareness команд; • участь у моніторингу та реагуванні на security-інциденти; • допомога у впровадженні підходів asset та risk management.

Ukraine
Job Closed

Senior Security Engineer

Ardent Mills

Ardent Mills, founded in 2014, is a premier flour-milling and ingredient company operating over 40 facilities across North America, specializing in flour, quinoa, pulses, organic,

Security Engineer115 days ago

• Own detection engineering: SIEM use-cases, data pipelines, parsers, enrichment, and tuning to reduce false positives • Lead threat hunting and purple-team exercises; drive control improvements based on TTPs (ATT&CK) • Architect endpoint and email security baselines; optimize EDR/XDR policies and response automation • Implement and optimize Data Loss Prevention (DLP) technical controls and integrations in alignment with enterprise data protection requirements • Guide vulnerability management strategy (risk-based prioritization, exploitability analysis, compensating controls) • Design partner in network security architectures (micro-segmentation, firewall policies, NDR) and secure remote access (SASE/ZTNA) • Provide key insights for cloud workload protection (CSPM/CWPP/CIEM) and secure identity governance integrations • Perform root-cause analysis and forensics coordination, document findings and corrective actions • Mentor engineers; set coding and automation standards for security tooling and integrations • Drive technology selection, POCs, and reference implementations; maintain technical roadmaps • Track and improve detection quality metrics (e.g., false positives, coverage, MTTR) • Represent security in architecture boards and major program decisions • Develop and maintain security automation and response playbooks in partnership with SOC/MDR providers to improve detection and response efficiency • Familiarity with OT/ICS security considerations in manufacturing environments • Partner with SOC/MDR provider to continuously improve detection coverage and tuning

Alaska + 7 moreAll locations: Alaska | Connecticut | District of Columbia | Hawaii | New Mexico | Mississippi | Rhode Island | Wyoming
$140K - $200K / year
Job Closed

Cloud Security Engineer

Ardent Mills

Ardent Mills, founded in 2014, is a premier flour-milling and ingredient company operating over 40 facilities across North America, specializing in flour, quinoa, pulses, organic,

Security Engineer115 days ago

• Design, implement, and operate security controls primarily across Microsoft Azure environments • Lead design and implementation for cloud landing zones, identity, and network controls (VPC/VNet, security groups/NSGs, private endpoints) • Configure cloud-native security services (e.g., Microsoft Defender for Cloud, Microsoft Sentinel, Defender XDR) • Build posture management (CSPM) and workload protection (CWPP) with policy-as-code and automated remediation • Implement key management, encryption at rest/in transit, and certificate governance using KMS/Key Vault/Cloud KMS • Establish logging, telemetry, and alerting (Azure Monitor) integrated to SIEM/XDR • Work with key team members across IT and Security to test and validate total coverage / maturity of detection telemetry from cloud native sources • Determine architecture as needed to harden serverless containers, and managed services (Functions, Logic Apps, Container Apps, AKS, ACI) with baseline controls • Perform threat modeling and security reviews for cloud architectures and application designs • Partner with platform and product teams to deliver IaC guardrails, image baselines, and patch/vulnerability workflows • Respond to cloud incidents as a point of escalation; perform triage, containment, and post-incident improvements • Develop automation architecture where applicable to optimize cloud detection and response capabilities • Leverage automation and AI-assisted capabilities where appropriate to enhance cloud detection and response • Document standards and runbooks; conduct enablement sessions with dev and ops teams • Design partner in cloud security strategy and program maturity

Alaska + 7 moreAll locations: Alaska | Connecticut | District of Columbia | Hawaii | New Mexico | Mississippi | Rhode Island | Wyoming
$140K - $200K / year
Job Closed

Senior IAM Security Engineer

Ardent Mills

Ardent Mills, founded in 2014, is a premier flour-milling and ingredient company operating over 40 facilities across North America, specializing in flour, quinoa, pulses, organic,

Security Engineer115 days ago

• Design and maintain IAM security architecture: directory services, federation, SSO (SAML/OIDC), MFA, conditional access, device trust • Implement identity lifecycle automation (joiner/mover/leaver), birthright roles, and SCIM-based provisioning/deprovisioning • Define RBAC/ABAC models; perform access reviews, role mining, and segregation-of-duties analyses • Integrate identity governance platforms (where applicable) with HRIS/ERP and downstream applications • Engineer privileged access management (PAM) solutions (Examples: CyberArk/BeyondTrust) including JIT elevation and session recording • Secure service and machine identities, secrets, and certificates; enforce rotation and attestation • Develop identity security monitoring and anomaly detection (e.g., Identity Protection, risk-based access); integrate with SIEM/XDR for response • Support Zero Trust identity strategy, including strong authentication, device trust, and continuous access evaluation • Support compliance audits (where applicable) with access certification evidence and control narratives • Troubleshoot complex federation and authorization issues; provide tier-3 support and root-cause analysis • Document standards, patterns, and runbooks; advise application teams on secure integration

Alaska + 7 moreAll locations: Alaska | Connecticut | District of Columbia | Hawaii | New Mexico | Mississippi | Rhode Island | Wyoming
$140K - $200K / year
Job Closed