Staff Cloud Security Engineer

Kyruus Health Logo

Kyruus Health

πŸ’΅ $143k-$174k
πŸ“Remote - United States

Summary

Join Kyruus Health as a Staff Cloud Security Engineer and contribute to a better healthcare system by ensuring the security of our cloud infrastructure and data. You will maintain and operate secure cloud environments, focusing on AWS and cloud-native technologies. Responsibilities include defining security requirements, implementing protection measures, managing secrets, and responding to security incidents. You will collaborate with various teams and contribute to a collaborative security strategy. Growth opportunities within Kyruus Health are available, including linear career paths and lateral moves. The role requires extensive experience in cloud security, specific certifications, and strong technical skills.

Requirements

  • 8+ years of experience in cloud security or related roles, with at least 3 years focused on securing cloud environments (AWS, GCP)
  • Hands-on experience securing cloud environments, including IAM, network security, data protection, and vulnerability management
  • Proficiency in cloud-native security tools (e.g., AWS GuardDuty, Google Cloud Security Command Center) and third-party security solutions (e.g., Tenable, Crowdstrike)
  • Strong proficiency in scripting languages (e.g., Python, Bash, Terraform) and automation tools
  • In-depth knowledge of networking protocols (TCP/IP, DNS, VPN, etc.) and encryption technologies (SSL/TLS, AES)
  • Strong experience with incident response, including monitoring, detection, and triage of security events in cloud environments
  • Familiarity with industry regulations and frameworks (e.g., NIST, SOC 2, ISO 27001) and experience implementing security controls to meet compliance requirements
  • Exceptional analytical and problem-solving skills, with the ability to identify and address complex security risks and develop innovative, comprehensive mitigation strategies
  • Strong leadership and project management skills, with the ability to plan, execute, and monitor security projects and initiatives, effectively prioritizing based on risk and business impact
  • Excellent communication and collaboration skills, enabling effective interaction with both technical and non-technical stakeholders, including presenting findings to executive leadership and board members
  • Experience in mentoring, coaching, and developing less experienced team members, building a strong team culture and fostering collaboration across the organization
  • Ability to drive strategic security initiatives and influence decision-making at the organizational level, aligning security practices with business objectives

Responsibilities

  • Maintain and Operate Secure Cloud Infrastructure: Lead the ongoing maintenance and operation of secure cloud infrastructures, focusing on AWS and cloud-native technologies. Ensure environments are resilient, compliant, and secure through multi-layered protection strategies
  • Cloud Platform Management : Define requirements for securely managing and configuring cloud infrastructure, leveraging Infrastructure as Code (IaC) practices to automate and standardize the deployment and management of cloud resources
  • Perimeter Protection: Measures to safeguard the perimeter of cloud environments, including network security controls such as firewalls, intrusion detection and prevention systems (IDS/IPS), and secure access controls
  • Cloud Native Application Protection: Secure applications built for cloud environments by automating security assessments, monitoring runtime environments, and integrating security practices into the development lifecycle. Focus on containers, serverless architectures, and virtual machines, adapting to emerging threats
  • Cloud Workload and Data Protection: Implement robust security controls for cloud workloads and data, including containers, virtual machines, and serverless architectures. Protect against threats while maintaining performance and scalability, using encryption, data loss prevention, and access controls
  • Secrets Management: Lead efforts to ensure keys are securely managed, store, and rotate secrets and sensitive data (e.g., API keys, passwords, certificates, encryption keys) across cloud environments. Implement best practices for secrets management using tools to ensure secure and efficient access control, data protection, and compliance
  • Identity and Access Management (IAM): Define requirements for managing user identities, authentication mechanisms, and access privileges within cloud environments to prevent unauthorized access and ensure least privilege access principles are followed
  • Security Incident Response: Contribute to incident response efforts, including detection, analysis, containment, and recovery. Work with internal and external stakeholders to minimize the impact of incidents and prevent future occurrences
  • Compliance & Auditing: Ensure that cloud infrastructure is compliant with relevant industry standards (e.g., SOC 2, HITRUST, HIPAA) and internal security policies
  • Collaboration: Act as a liaison between the security team and other departments, such as IT, legal, and executive management. Communicate complex security concepts and issues in a clear and actionable manner to non-technical stakeholders
  • Continuous Improvement: Identify opportunities for process improvements and enhancements in cloud security. Lead initiatives to upgrade or replace outdated systems and practices
  • Contribute to a Collaborative Security Strategy: Engage with various teams in defining and implementing the overall security strategy related to infrastructure, ensuring that security is an enabler for our business
  • Help Us Achieve our Certification Goals: Participate in our journey to HITRUST or FedRamp certification

Preferred Qualifications

Industry certifications such as AWS Certified Security Specialty, Certified Cloud Security Professional (CCSP), or similar are preferred

Benefits

  • Annual bonus program
  • Equity
  • Medical, dental, and vision benefits
  • Unlimited paid time off (PTO)
  • Generous paid parental leave
  • A home office stipend
  • 401(k) program with company match
  • A wellness and lifestyle program

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Remote Jobs