Information Security Analyst

3 weeks ago


Arizona City, United States Saxon Global Full time

PUBLIC FACING JOB DESCRIPTION:
Job Description: Information Security Analyst - Kubernetes Security
American Express is on an exciting Cloud transformation journey led by a high-energy, delivery-focused team delivering security as code and integration to enable on-premise equivalent security models for cloud workloads. The Cloud Security Engineering group builds and delivers technology which enables shift left security integration through partnership and collaboration across Technology Risk and Information Security, as well as multiple Technology teams. Information Security Analysts working in the Kubernetes Security domain will design and develop Cloud infrastructure security requirements across Cloud platform, container, network, and storage tiers to deliver security capabilities for the enterprise Hybrid Multi Cloud Journey. The Specialist will be accountable for securely enabling the cloud journey through a delivery-based program based on automation and guardrails-based approach.

To be successful, you and your team will work very closely with other Technology Risk and Information Security functions, as well as Cloud Security Governance, Cloud Security Operations, and many other Technology and non-Technology teams to identify, solution, and deliver security code elements. You will drive automation, zero touch, and idempotency through "everything-as-code" across cloud platform and infrastructure components. This position demands a well-organized; action-oriented team player with the ability to prioritize daily work; work on multiple initiatives simultaneously; establish and maintain an outward looking view on new and evolving network edge technologies; and an ability to mature and operate business critical, end-to-end processes and solutions - while ensuring a great colleague user experience.
Responsibilities

  • Deliver Cloud Security Engineering functions intended to establish security code elements across private and public multi-cloud
  • Provide security and engineering expertise and guidance to the Cloud Programs, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Policy as Code (PaC).
  • Collaborate with enterprise architects and SMEs to deliver complete security architecture solutions.
  • Design and deliver Container security requirements and guardrails across VMs, Containers, CNI, CSI, and Mesh
  • Identify exciting opportunities for adopting new technologies to solve existing needs and predicting future challenges.
  • Present key security ideas to various audiences (technical and non-technical), in an effective manner.
Required Skills/Experience
  • 3 years of experience in Information Security roles.
  • 2 years of experience with OpenShift or Kubernetes cluster administration or Kubernetes security solution implementation.
  • Experience with Docker, Open Container Initiative (OCI), or similar containerization platforms.
  • Experience in defining Rego policies for enforcement through Open Policy Agent (OPA) Gatekeeper.
  • Proven ability to read and critique source code, including Terraform and either Python or Go.
  • Experience building and consuming REST or GraphQL APIs using Python or Go is preferred.
  • Experience in applying Security Principles to Kubernetes or OpenShift clusters and container workloads.
  • 2+ years of experience utilizing Git, GitOps and various Git workflows.
  • Experience with pull-based GitOps via ArgoCD to manage cluster deployments and workloads as code.
  • Experience working with GitHub Actions or Jenkins Pipelines.
  • Understanding of Cloud Fundamentals, including securing public cloud with data protection controls.
  • Experience performing validation and verification of configurations in a cloud environment.
  • Knowledge of security configuration management, container security, endpoint security and secrets management as they are applied to cloud applications.
  • Knowledge of network architecture, proxy infrastructure, and programs to support network access and enablement.
  • Understanding of multiple Information Security domains, such as Identity & Access Management, Infrastructure Vulnerability Management, Network Security, Data Loss Prevention, End User Security, etc.
  • Experience in defining resources configurations using Terraform or Helm.
  • Understanding of DevOps and DevSecOps principles
Educational Requirements:
  • Bachelor's Degree in Computer Science , Software Engineering, Electric Computer Engineering ( ECE) or equivalent information security degree.
  • Certified Kubernetes Administrator (CKA) or equivalent work experience.
  • Certified Kubernetes Security Specialist (CKS) preferred.
  • Other Information Security or Cloud Certifications preferred, such as CISSP, CISM, CCSP.


  • Arizona City, United States Verra Mobility Full time

    Who we are Verra Mobility is a global leader in smart mobility. We develop technology-enabled solutions that help the world move safely and easily. We are fostering the development of safe cities, working with police departments and municipalities to install over 4,000 red-light, speed, and school bus stop arm safety cameras across North America. We are also...


  • Arizona City, United States Verra Mobility Full time

    Who we are Verra Mobility is a global leader in smart mobility. We develop technology-enabled solutions that help the world move safely and easily. We are fostering the development of safe cities, working with police departments and municipalities to install over 4,000 red-light, speed, and school bus stop arm safety cameras across North America. We are also...


  • California City, United States absolute Full time

    Responsibilities of Information Security Analyst Responsible for managing/advising protection on Local Area Networks (LAN) the Wide Area Networks (WAN) firewalls routers Internet gain access to wireless methods Directory Services Network Intrusion Detection Systems (NIDS) Intrusion Protection Systems (IPS) outside communication products as well as...


  • Oklahoma City, United States Quadrant Full time

    Security Information Assurance Analyst Oklahoma City, OK MUST: Experienced Senior Security/Information Assurance Analyst 8+ years of Cyber security/Information assurance Project/Program teams and communicating results to matrixed Strong understanding, and knowledge of, NIST SP 800-53 rev 4 requirements and how-to tailor requirements based on agency...


  • Oklahoma City, United States Quadrant Full time

    Security Information Assurance Analyst Oklahoma City, OK MUST: Experienced Senior Security/Information Assurance Analyst 8+ years of Cyber security/Information assurance Project/Program teams and communicating results to matrixed Strong understanding, and knowledge of, NIST SP 800-53 rev 4 requirements and how-to tailor requirements based on agency...


  • Jersey City, United States Saxon Global Full time

    Need 10+ years of experience Job Description: What will I be doing? We seek a candidate who has the technical expertise and communication skills to work closely with other teams at Hilton, such as infrastructure, cloud, external contractors, field-level IT resources, and risk management teams, as well as unaffiliated security researchers who participate...


  • Salt Lake City, United States Packsize Full time

    About Packsize Packsize is redefining the way businesses and their customers use and experience packaging around the world. We build the technology, design the right solutions, and automate the processes that propel the industry forward. To us, packaging is much more than a box-it's delivering what's right for our customers, their customers, our people, and...


  • Salt Lake City, United States Packsize Full time

    About Packsize Packsize is redefining the way businesses and their customers use and experience packaging around the world. We build the technology, design the right solutions, and automate the processes that propel the industry forward. To us, packaging is much more than a box-it's delivering what's right for our customers, their customers, our people, and...


  • Salt Lake City, United States Packsize, LLC Full time

    Job DescriptionJob DescriptionAbout PacksizePacksize is redefining the way businesses and their customers use and experiencepackaging around the world. We build the technology, design the right solutions, and automate the processes that propel the industry forward. To us, packaging is much more than a box—it’s delivering what’s right for our customers,...


  • Salt Lake City, United States Packsize, LLC Full time

    Job DescriptionJob DescriptionAbout PacksizePacksize is redefining the way businesses and their customers use and experiencepackaging around the world. We build the technology, design the right solutions, and automate the processes that propel the industry forward. To us, packaging is much more than a box—it’s delivering what’s right for our customers,...

  • Security Analyst

    1 week ago


    Arizona City, United States RSC2 Inc. Full time

    Job Type Full-time Description Founded in 2009, RSC2, Inc. is a Small Business Administration (SBA) Certified HUBZone Professional Services company headquartered in Baltimore, Maryland. RSC2 provides breakthrough expertise, support services, and technologies to make operations, programs and systems of record perform better. Our professional staff is trained...


  • Atlantic City, United States Semcon Group LLC Full time

    Job Type Full-time Description SEMCON supports the Federal Aviation Administration (FAA)'s mission, vision, and goals; and provides highly qualified, professional, technical, and managerial resources to satisfy our customer requirements. SEMCON is proud to offer a company culture that aligns enriching career experiences, growth opportunities, and...


  • Atlantic City, United States Semcon Group LLC Full time

    Job DescriptionJob DescriptionDescription:SEMCON supports the Federal Aviation Administration (FAA)’s mission, vision, and goals; and provides highly qualified, professional, technical, and managerial resources to satisfy our customer requirements.SEMCON is proud to offer a company culture that aligns enriching career experiences, growth opportunities, and...


  • Atlantic City, United States Semcon Group LLC Full time

    Description: SEMCON supports the Federal Aviation Administration (FAA)'s mission, vision, and goals; and provides highly qualified, professional, technical, and managerial resources to satisfy our customer requirements. SEMCON is proud to offer a company culture that aligns enriching career experiences, growth opportunities, and collaborative engagement for...


  • Atlantic City, United States Semcon Group LLC Full time

    Job DescriptionJob DescriptionDescription:SEMCON supports the Federal Aviation Administration (FAA)’s mission, vision, and goals; and provides highly qualified, professional, technical, and managerial resources to satisfy our customer requirements.SEMCON is proud to offer a company culture that aligns enriching career experiences, growth opportunities, and...


  • Atlantic City, United States Semcon Group LLC Full time

    Description: SEMCON supports the Federal Aviation Administration (FAA)'s mission, vision, and goals; and provides highly qualified, professional, technical, and managerial resources to satisfy our customer requirements. SEMCON is proud to offer a company culture that aligns enriching career experiences, growth opportunities, and collaborative engagement for...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    Job DescriptionJob DescriptionDMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is now in its 54th year of supporting the Church of Jesus Christ of Latter-day Saints and its mission.Position Summary:DMBA is looking...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    DMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is now in its 54th year of supporting the Church of Jesus Christ of Latter-day Saints and its mission. Position Summary: DMBA is looking for a SOC Analyst to join our...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    DMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is now in its 54th year of supporting the Church of Jesus Christ of Latter-day Saints and its mission. Position Summary: DMBA is looking for a SOC Analyst to join our...


  • Salt Lake City, United States Deseret Mutual Benefit Administrators Full time

    Job DescriptionJob DescriptionDMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is now in its 54th year of supporting the Church of Jesus Christ of Latter-day Saints and its mission.Position Summary:DMBA is looking...