Tekgence Inc | Senior Cloud Security Engineer | wichita, ks

4 days ago


wichita, United States Tekgence Inc Full time

Role: Senior Cloud Security Engineer

Location: Hybrid – 3 days in office, 2 days remote. Must be in Wichita, KS

Contract Length: 3-month CFH


Required Technologies: AWS, AWS solutions architect and security certifications are big. Terraform, python, git hub, git lab, AWS IAM.

Preferred: Other cloud certifications are “icing on the cake”.

Nice to haves: CSPM – InsightCloudSec: if they have it it’ll accelerate them. Kubernettes.

Soft Skills: Must have VERY strong written and verbal communication skills, ability to drive and manage their own projects, ability to lead projects and organize work.

Certifications/Education requirements: College Degree not required but desirable

Team Size/Makeup: It is currently just the hiring manager right now, and the new resource. The new hire will collaborate extensively with the KGS team, which handles the cloud platform aspects.


Daily Responsibilities:

  • Security operations and responding to findings.
  • Responding to finops anomaly alerts
  • Breakfix for AWS service or IAM permissions problems
  • Creating/updating/fixing existing fhr cloud services to ensure their viability.
  • AWS service lifecycle events and creating recommendations and solutions for product teams.

Notes:

  • Security Focus: The role will be approximately 50-60% focused on security engineering, requiring a strong foundation in cloud security and risk analysis.
  • Infrastructure Focus: About 30-40% of the role will involve cloud infrastructure tasks, supporting software engineers and managing cloud services.
  • FinOps Tasks: The remaining 5-10% of the role will involve FinOps tasks, including cost management and optimization within the cloud environment.
  • Dan emphasized the need for a technically savvy individual who can expand and improve existing services, ideally someone more technical than himself.


Cloud Security Operations

  • Security Vulnerability Discovery and Remediation - Responsible for using CSPM, CIEM, security tools, security reviews, and any other means to find areas of cloud security risk for FHR. Create monitoring and alerting processes and set expectations with customers on how to remediate the cloud misconfigurations which put our applications at risk and other security vulnerabilities within a standard SLA. Responsible to analyze the situation to understand the real risk and communicate that with the stakeholders on what risk is recommended to accept and which risk should drive action. Prioritizes vulnerabilities so that higher risk findings are addressed first. Works with software engineers and product teams to ensure good software development practices are being used to deploy secure solutions. Responsible for recurring reporting of cloud security risks to IT directors.
  • Workload Protection Services via Web Application Firewall Management - Responsible for the creation and deployment of standard WAF rules across our workloads. Monitoring traffic for effectiveness of security protection and to catch any potential false positives. Responsible for other protections for internet-facing workloads. Responsible for creating custom rules to ensure protection of workloads without creating disruption. Logging of requests to assist with troubleshooting and reporting. Escalation of security incidents with the security operations center.
  • Remote Access Solutions - Design and implement remote access solutions for administration of cloud-based workloads. Automation and implementation of Zscaler ZPA or AWS Client VPN services. Work in coordination with our Cloud Operations team to fulfill these requests.


Cloud Infrastructure Operations

  • Cloud Infrastructure - Responsible for troubleshooting any cloud infrastructure issues with software engineers. Including connectivity issues, capacity, and performance issues. Responsible for ensuring ownership of the cloud infrastructure is defined well and all resources are owned.
  • IAM Management Services - Creates and tests standard roles and policies for the company to use using least privilege principals. Monitors for overprivileged roles and works with customers to remediate the risk. Assists software engineers with IAM role and policy creation to ensure least privilege. Manages the roles and policies via Terraform deployed through a Gitlab pipeline to ensure standards are deployed consistently and enforced. Creates and tests new AWS service control policies. Deploys all changes using standard change control processes to reduce the risk of unplanned events.
  • EC2 Management - Responsible for server creation automation which is used by the server management team. Escalation point for the server management team regarding cloud-specific EC2 and EBS issues. Knows the hybrid cloud networking design and assists with design changes and troubleshooting. Ensures that EC2s in our hybrid cloud environment are positioned for long-term success which enables the server team to manage them.
  • Cloud Service Management - Responsible to review cloud services for security risks and supportability concerns. Will collaborate with customers to understand their needs and determine if a new service should be used or if existing reference architectures should be used. Will enable new cloud services by implementing new standards and reference architectures for the solution which ensures consistency and supportability.
  • Application Cloud Infrastructure - Coordinates with software engineers and software architects to design and create solutions for applications in the cloud. To creating and maintaining standard solutions which can be deployed by software engineers. Assists software engineers and software architects with experimentation on new services.


Cloud Financial Operations

  • Operate our finops program that enables our software engineers and product teams to be cost efficient with our cloud spend. Discover cloud cost trends and anomalies and collaborate with product teams and software engineers to take corrective action. Create automation for remediation when necessary. Perform analysis on costs to understand if application design changes may be required or just small configuration changes are required to ultimately keep our workloads cost efficient. Provide rightsizing information for the cloud services with the most significant spend. e.g. compute and storage. Provide recurring executive level reports to ensure IT directors are seeing trends and how their teams are impacting the overall cloud cost spend.


List of immediate work/projects for this person when they start.

  • Implement new Standard IAM Roles across all our accounts for employees.
  • Ensure least privilege.
  • Ensure pipelines still function.
  • Should ready the organization for using AWS Identity Center.
  • Review of current cloud security standards and start the continuous review process to create new standards and implement controls.
  • API Security scanning
  • Container security
  • Migration of KGS-managed VPC from the FHR Alkira segment. Networking changes to ensure there are not backdoors into the fhr network for the other operating companies.
  • Create our terraform structure so that code can be managed as a team and not just in my local files.
  • ZPA connector rollout for 30-40 accounts. CentOS is deprecated. Migration to RHEL. Requires updating automation.
  • Micro segmentation/Application fencing planning and design. Assist with Illumio POC.
  • Account meta data verification process
  • Find the owners associated and set up a verification process for each account they own.


  • wichita, United States Tekgence Inc Full time

    Role: Senior Cloud Security EngineerLocation: Hybrid – 3 days in office, 2 days remote. Must be in Wichita, KSContract Length: 3-month CFHRequired Technologies: AWS, AWS solutions architect and security certifications are big. Terraform, python, git hub, git lab, AWS IAM.Preferred: Other cloud certifications are “icing on the cake”.Nice to haves: CSPM...


  • Wichita, United States Tekgence Inc Full time

    Role: Senior Cloud Security EngineerLocation: Hybrid – 3 days in office, 2 days remote. Must be in Wichita, KSContract Length: 3-month CFHRequired Technologies: AWS, AWS solutions architect and security certifications are big. Terraform, python, git hub, git lab, AWS IAM.Preferred: Other cloud certifications are “icing on the cake”.Nice to haves: CSPM...


  • Wichita, United States BloKchain Talent Full time

    Job DescriptionJob Description Title: Senior Cloud Security EngineerCompany: Refining and Manufacturing CompanyJob Type: Contract-to-HireDuration: 3 months (Contract period)Location: Wichita, KS (Hybrid: 3 days on-site, 2 days remote - MUST BE LOCAL)Compensation:Pay Rate range: $83.35 to $100/hr (during contract period)Conversion Salary range: $140K to $150k...


  • Wichita, United States BloKchain Talent Full time

    Job DescriptionJob Description Title: Senior Cloud Security EngineerCompany: Refining and Manufacturing CompanyJob Type: Contract-to-HireDuration: 3 months (Contract period)Location: Wichita, KS (Hybrid: 3 days on-site, 2 days remote - MUST BE LOCAL)Compensation:Pay Rate range: $83.35 to $100/hr (during contract period)Conversion Salary range: $130k to $140K...


  • Wichita, United States Tekgence Inc Full time

    About Tekgence: TEKgence, a group of $100 + Million revenue consulting firm, we pride ourselves on a global presence and great work culture that ensures long-term success for both our clients and consultants. We have offices in Dallas, TX; St. Louis, MO; Hyderabad, Noida, and Pune in India; London, UK; and Ontario, Canada. Ranked as one of the SIA Top 30...


  • wichita, United States Tekgence Inc Full time

    About Tekgence: TEKgence, a group of $100 + Million revenue consulting firm, we pride ourselves on a global presence and great work culture that ensures long-term success for both our clients and consultants. We have offices in Dallas, TX; St. Louis, MO; Hyderabad, Noida, and Pune in India; London, UK; and Ontario, Canada. Ranked as one of the SIA Top 30...


  • wichita, United States World Wide Technology Full time

    Role: Senior Cloud Security EngineerLocation: Hybrid – 3 days in office, 2 days remoteContract Length: 3-month CFHResponsibilitiesHigh level brief skill requirements.Cloud Security SkillsCloud Security Risk AnalysisDetection and Response ProcessesCloud Security Posture Management Tools and Processes (CSPM) (Renamed)Strong AWS IAM ManagementCloud Identity...

  • Dentist - Wichita, KS

    4 months ago


    Wichita, United States The Doc Hunters Full time

    Job Description Dentist Needed in Wichita, KS Hero Practice Services is a well-established dental group with clinics across the Midwest. They are growing and looking for a skilled dentist to join their teams. The ideal candidate should have a passion for providing high-quality dental care to our patients and be committed to delivering exceptional customer...


  • Wichita, Kansas, United States Children's Mercy Hospital (MO) Full time

    Division of Endocrinology and Diabetes OpportunityThe Division of Endocrinology and Diabetes at Children's Mercy Kansas City is recruiting a fellowship-trained, board-certified/board-eligible pediatric endocrinologist to join our team in Wichita, Kansas. This clinical position allows for opportunities in clinical research, and educational opportunities are...


  • Wichita, United States World Wide Technology Full time

    Role: Senior Cloud Security EngineerLocation: Hybrid – 3 days in office, 2 days remoteContract Length: 3-month CFHResponsibilitiesHigh level brief skill requirements.Cloud Security SkillsCloud Security Risk AnalysisDetection and Response ProcessesCloud Security Posture Management Tools and Processes (CSPM) (Renamed)Strong AWS IAM ManagementCloud Identity...


  • Wichita, United States Steris Corporation Full time

    Steris Corporation - Wichita, KS, US, 67202 [Repair Technician] As a Technician at Steris Corporation, you'll: Perform repairs on surgical devices and medical instruments; Inspect devices to determine what type of repair and/or adjustment is required; Disassemble malfunctioning medical devices and instruments or equipment; Replace or repair defective parts;...

  • Structural Engineer

    4 weeks ago


    Wichita Falls, Texas, United States Offshore Staffing Full time

    We are seeking a skilled Structural Engineer to join our team in Wichita, KS. As an MRB Design Engineer, you will be responsible for carrying out design analysis and creating design dispositions for assembly manufacturing non-conformances.Key responsibilities include assessing different repair scenarios for fit, form and function, processing detail and...


  • Wichita Falls, Texas, United States Interim HealthCare of Wichita Full time

    Certified Nursing Assistant (CNA) RoleInterim HealthCare Staffing is seeking a compassionate and skilled Certified Nursing Assistant (CNA) to join our team in Wichita, KS. As a CNA, you will play a vital role in providing high-quality patient care in facilities such as nursing homes, assisted living facilities, rehabilitation centers, and...

  • Driver - Wichita, KS

    1 month ago


    Wichita, Kansas, United States KVC Health Systems Full time

    Job OpportunityAt KVC Health Systems, we are seeking a dedicated and responsible Driver to join our team in Wichita, KS.Job Summary:We are looking for a reliable and safety-conscious individual to provide transportation services for children within our service system. As a Driver, you will be responsible for ensuring the timely reception of children entering...


  • Wichita, United States Triage Staffing LLC Full time

    Travel Radiology: Imaging Wichita, KS Location:         Wichita, KSStart Date:       7/8/2024Shift Details:   8H Days (7:00 AM-3:30 PM)                         40 hours per weekLength:            13 WEEKS 13 weeksApply for specific facility details.Cath Lab Tech


  • wichita, United States Triage Staffing LLC Full time

    Travel Radiology: Imaging Wichita, KSLocation:         Wichita, KSStart Date:       7/8/2024Shift Details:   8H Days (7:00 AM-3:30 PM)                         40 hours per weekLength:            13 WEEKS 13 weeksApply for specific facility details.Cath Lab Tech


  • Wichita, United States Archway Physician Recruitment Full time

    **Dermatology opening in Wichita, KS*** Full-time, permanent opening* Joining an established, multi-specialty group* Specialties include Dermatology, Gastroenterology, Plastic Surgery, and Pathology* Group has multiple clinics throughout Northeast Kansas* Joining the Wichita Clinic, which focuses on Dermatology* Clinic offers the latest in medical and...


  • Wichita, Kansas, United States Marvel Medical Staffing Full time

    Job Title: CT Tech Travel PositionLocation: Wichita, KSJob Type: Travel AssignmentDuration: 13 weeksShift Type: NightsJob Description: Marvel Medical Staffing is seeking a CT Tech for a 13-week travel assignment in Wichita, KS. The ideal candidate will have experience working in a fast-paced environment and be able to work independently. Responsibilities...


  • Wichita, Kansas, United States ReserveNation Full time

    Permanent Dentist Position in Wichita, KSThis is a rewarding opportunity with an established health program focused on serving the community.Their multi-disciplinary team of dedicated Providers and staff offer a variety of medical, dental, behavioral, pharmacy and other community programs.No call, no weekends, no holidays are required.This position can...


  • Wichita, United States Bogue Animal Hospital Full time

    Who we are:: Bogue Animal Hospital is an AAHA accredited companion animal hospital serving the Wichita, KS area since 1930. We are a full-service practice dedicated to providing exceptional veterinary care for all pets. We are seeking a Full-Time Veterinarian to join our well established, modern practice. This is an outstanding opportunity for veterinarians...