nesto logo
nesto

The bright side of mortgages

Cloud Security Developer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 501-1,000Since 2018H1B No SponsorCompany SiteLinkedIn

Location

Canada

Posted

4 days ago

Salary

0

Seniority

Senior

Job Description

Cloud Security Developer

nesto

• Implement and maintain robust security controls to protect our cloud infrastructure and applications. • Discover, remediate, and validate security issues across cloud infrastructure. • Perform architectural/design reviews through a security lens and provide timely, actionable requirements and recommendations. • Collaborate with security leadership, compliance, and engineering teams to execute security strategies. • Build, deploy, and manage security tools such as WAF, IDS/IPS, workload protection, GCP Command Center, and Azure Security Center, etc. • Propose and contribute to security and compliance improvements for nesto CI/CD pipelines and deployment processes. • Automate infrastructure provisioning and deployment processes using Infrastructure as Code (IaC) tools like Terraform or Pulumi. • Design and operate scalable processes to provision cloud access and maintain least privilege. • Participate in and support the incident detection and response process by enhancing observability and alerting and assisting the incident response team. • Self-organize and prioritize activities independently. • Support audits and first-party security questionnaires. • Conduct and oversee security assessments and threat modeling exercises. • Implement security controls within Kubernetes. • Build DevSecOps tools/integrations.

Job Requirements

  • 5+ years of experience working on a team focused on infrastructure and/or security.
  • 5+ years of development experience (ideally GoLang, TypeScript/JS).
  • Knowledge of common web application vulnerabilities and the OWASP Top 10 framework.
  • The ability to analyze and act on results from DAST and SAST tools (e.g., Tenable, Snyk).
  • Skilled in DevSecOps principles and familiarity with CI/CD pipelines (GitHub Actions, Argo CD, Azure DevOps) to perform automated security testing.
  • Experience deploying and customizing security tools to address threats and lower risk, including vulnerability scanners, static analyzers, web application firewalls (WAFs), intrusion detection/prevention systems (IDS/IPS), and endpoint security monitoring.
  • A comprehensive grasp of cloud and network security, including an in-depth understanding of Kubernetes.
  • Experience in GCP specifically with one or more of the following services: Security Command Center, GKE, Cloud IDS, Cloud Armor, and Secrets Manager.
  • Experience in Azure specifically with one or more of the following services: Security Center, Azure PaaS App Services, VMs, Azure SQL, Front Door, and Key Vault.
  • Experience writing infrastructure-as-code using tooling such as Terraform, Pulumi, and Helm.
  • Knowledge of common security-related frameworks and benchmarks like CIS, NIST, and MITRE ATT&CK.
  • An understanding of identity and access management (IAM) principles and cloud-native IAM solutions.
  • Passionate about constant learning and sharing knowledge with others.
  • Bilingual (English & French).

Benefits

  • Premium benefits plan fully paid by nesto, including comprehensive insurance and unlimited access to telemedicine and mental health services for you and your family.
  • 4 weeks of vacation to ensure you stay at peak performance.
  • Access to the resources and tech you need to execute without friction.
  • The environment that makes you productive and enables teamwork (Hybrid model).

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 1-10Since 2025H1B No Sponsor

Role Description Als Information Security Consultant (m/w/d) begleitest Du unsere Kunden partnerschaftlich und serviceorientiert beim Aufbau, Betrieb und der Weiterentwicklung moderner ISMS-Strukturen. In enger Zusammenarbeit mit Kunden analysierst du Geschäftsmodelle und technische Gegebenheiten und entwickelst darauf aufbauend praxistaugliche, auditfähige Lösungen. Kundenkontakt ist zentraler Bestandteil der Rolle - Austausch, Beratung und gemeinsame Lösungsfindung machen Dir idealerweise Spaß. - Enge Zusammenarbeit mit Kunden bei Planung, Umsetzung und Betrieb von ISMS- und Compliance-Strukturen - Durchführung von Gap-Analysen, Ableitung und Priorisierung von Maßnahmen - Erstellung und Abstimmung von Policies, Prozessen, Rollenmodellen, SoA und Nachweisen - Vorbereitung und Begleitung von internen und externen Audits - Übersetzung regulatorischer Anforderungen in praxisnahe Betriebsmodelle - Regelmäßiger Austausch mit technischen, organisatorischen und Management-Stakeholdern Qualifications - Erfahrung in Informationssicherheit, ISMS, GRC, IT-Projekten oder Prozessmanagement - Freude an kundenorientierter Beratung und gemeinsamer Lösungsentwicklung - Fähigkeit, komplexe Security-Themen klar und verständlich zu vermitteln - Erfahrung mit ISO/IEC 27001 (oder hohe Motivation, hier schnell einzusteigen) - Kenntnisse in SOC 2, C5, NIS2 oder DSGVO von Vorteil - Tool-Affinität (z. B. Jira, Confluence, Microsoft 365/SharePoint) - Sehr gute Deutsch- und Englischkenntnisse Benefits - 100 % Remote-Arbeit (Deutschland) - Optionale 4-Tage-Woche - Hoher Kundenkontakt und sichtbarer Impact - Professionelle, offene Kultur mit starkem Fokus auf Service & Zusammenarbeit - Langfristige Entwicklungsperspektiven - Projekte im Umfeld Cloud, AI und Data Center Company Description Heartland Solutions ist eine spezialisierte Beratung für Informationssicherheit, Compliance und Managementsysteme. Wir arbeiten mit technologiegetriebenen Unternehmen aus Cloud, AI und Data Center. Unser Anspruch: Sicherheit entsteht im Dialog mit dem Kunden - und zeigt ihren Wert in funktionierender Umsetzung.

Germany
Atlas Governance logo

Mid-level Information Security Analyst

Atlas Governance

Atlas Governance is the ultimate Board Portal, and provides the most secure and intuitive software available.

Full TimeRemoteTeam 201-500Since 2016H1B No Sponsor

• Administer and operate security tools, including: - Architect and implement Azure-native AI agents - Develop automated pipelines for real-time alert triage and enrichment - Integrate LLM models (e.g., GPT) into incident response workflows - Apply embeddings for semantic correlation of security events - Azure (Cloud Security) - SIEM: Microsoft Sentinel - Build automated playbooks integrated with generative AI - Develop serverless automations using Azure Functions and Logic Apps - Orchestrate end-to-end response flows - Implement intelligent triage with risk-based prioritization • Develop and maintain automations in Microsoft environments using tools such as PowerShell, Bash, Logic Apps, Power Automate, Automation Account, APIs, and AI capabilities.

Brazil
Casas Bahia Tecnologia logo

Especialista em Cyber Segurança – Resposta a Incidentes

Casas Bahia Tecnologia

A Tecnologia do Grupo Casas Bahia - A dedicação nunca foi tão forte!

Full TimeRemoteTeam 1,001-5,000Since 2021H1B No Sponsor

• Coordenar as operações do Security Operations Center, garantindo monitoramento contínuo, resposta rápida e alinhamento com as políticas de segurança da empresa; • Avaliar e otimizar processos de resposta a incidentes, implementando automações, playbooks e métricas para aumentar a eficiência e reduzir o tempo de resposta; • Conduzir análises detalhadas de incidentes, identificando causas raiz, impactos e propondo medidas corretivas e preventivas; • Administrar soluções SIEM, SOAR e outras ferramentas de monitoramento, garantindo integração e eficácia na detecção de ameaças; • Trabalhar com equipes de defesa cibernética, GRC, IAM e infraestrutura para coordenar ações durante incidentes e melhorar a postura geral de segurança; • Elaborar relatórios técnicos e executivos sobre incidentes, tendências e melhorias implementadas; • Treinar analistas do SOC e demais envolvidos em melhores práticas de resposta a incidentes e uso de ferramentas; • Manter-se atualizado sobre novas técnicas de ataque, frameworks de resposta (ex.: NIST, MITRE ATT&CK) e tendências do mercado.

Brazil
General Dynamics logo

Junior Identity Security Metrics Consultant & Databricks Analyst

General Dynamics

General Dynamics is a global aerospace and defense company offering products designed to provide safety and security to people around the world. In the past, General Dynamics has p

Title: Junior Identity Security Metrics Consultant & Databricks Analyst Job Description: Responsibilities for this Position Location: Any Location / Remote Full Part/Time: Full time Job Req: RQ220569 Type of Requisition: Pipeline Clearance Level Must Currently Possess: None Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: MBI (T2) Job Family: Data Science and Data Engineering Job Qualifications: Skills: Artificial Intelligence (AI), Data Analytics, Databricks Platform Certifications: None Experience: 1 + years of related experience US Citizenship Required: No Job Description: Advance your career while impacting our national security as Junior Identity Security Metrics Consultant & Databricks Analyst. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government. MEANINGFUL WORK AND PERSONAL IMPACT This position will support the United States Postal Service (USPS) and drive identity security initiatives like generating "metrics-that-matter" within existing identity platforms like Okta or Ping. This candidate is also expected to know Databricks and help USPS extract data and reports from the Databricks platform. WHAT YOU'LL NEED TO SUCCEED Education: - Bachelor's degree in computer science or a related field, preferred but not required. - NOTE: If resources do not have a relevant college degree, an additional 4 years of relevant work experience is required. Required Experience: - 1+ years of experience as an Identity Security Metrics Consultant & Databricks Analyst - 1+ years of supporting technical implementations related to Identity tools (e.g., Ping, Okta, Databricks) - Experience with using artificial intelligence and machine learning (AI/ML) for detection of fraudulent activity and authentication of user identities in large scale enterprise context and data quality improvement - Executive briefing, stakeholder management, storytelling with data - Ability to communicate and collaborate with multiple functional groups Security Clearance Level: - Ability to obtain and maintain a Public Trust clearance and successfully pass a thorough Government background screening process requiring the completion of detailed forms and fingerprinting - This position has a U.S. residency requirement. The USPS security clearance process requires the selected candidate to have resided in the U.S. (including U.S. Territories) for the last five years as follows: U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 6 months consecutively in the last 3 years (unless they meet certain exceptions). Non-U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 90 days consecutively in the last 3 years. Location: - Remote GDIT IS YOUR PLACE: - 401K with company match - Comprehensive health and wellness packages - Internal mobility team dedicated to helping you own your career - Professional growth opportunities including paid education and certifications - Cutting-edge technology you can learn from - Rest and recharge with paid vacation and holidays #zxc726 The likely salary range for this position is $63,312 - $85,658. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: Less than 10% Telecommuting Options: Remote Work Location: Any Location / Remote Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc. Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Worldwide
$63.3K - $85.7K / year