13 авг

information security engineer in cloud security

ориентир по рынку
вакансия зп не указана
в среднем 351 041 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовьтесь к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме

описание

Amgen is a biotechnology and pharmaceutical manufacturing company that develops treatments and applies technology and digital innovation to improve patient outcomes. Its Lisbon Capability Center supports global healthcare operations through cloud security and digital capabilities.

задачи

  • Design, implement, and continuously improve secure cloud architectures across public, private, and hybrid cloud environments;
  • Design and implement cloud network security architectures, including Zero Trust networking, micro-segmentation, WAF, API security, secure hybrid connectivity, and network segmentation;
  • Design, engineer, implement, and maintain cloud security controls for IAM, PAM, network segmentation, encryption, key management, secrets management, and certificate lifecycle management;
  • Implement and optimize CSPM, CWPP, vulnerability management, and automated compliance solutions;
  • Design, develop, and maintain secure IaC solutions using Terraform, CloudFormation, and policy-as-code frameworks;
  • Develop and maintain cloud governance frameworks, security baselines, guardrails, and landing zones across AWS, Azure, and Google Cloud Platform;
  • Design and implement cloud-native logging, monitoring, and detection capabilities integrated with SIEM and SOC platforms;
  • Collaborate with Application Security, DevOps, Platform Engineering, and Application Development teams to embed security throughout the SDLC and CI/CD pipelines;
  • Design and implement security controls for containerized, Kubernetes, serverless, and cloud-native application environments;
  • Partner with SOC and IR teams to investigate, analyze, and respond to cloud security incidents, perform forensic analysis, root cause investigations, and threat hunting;
  • Lead cloud security architecture reviews for cloud-native platforms, Kubernetes environments, managed cloud services, APIs, AI services, and enterprise applications;
  • Conduct threat modeling and cloud security risk assessments;
  • Evaluate emerging cloud, AI, and cybersecurity technologies;
  • Design and implement security controls for cloud-native AI and machine learning services, including Generative AI, LLM integrations, AI orchestration platforms, and AI development pipelines;
  • Partner with Data Engineering, AI, and Platform Engineering teams to secure enterprise AI platforms, AI workflows, and AI automation solutions;
  • Develop and automate cloud security capabilities using scripting, APIs, IaC, and security orchestration;
  • Develop and improve cloud security standards, reference architectures, technical documentation, operational procedures, and security runbooks;
  • Provide technical leadership, mentoring, and subject matter expertise to engineering, operations, architecture, and product teams;
  • Support internal and external security audits, compliance assessments, and regulatory initiatives;
  • Participate in after-hours support activities as required and travel occasionally.

требования

  • Strong understanding of core information security principles;
  • Solid knowledge of least privilege, defense in depth, and secure-by-design practices;
  • Good understanding of cryptography, encryption, certificate management, and key lifecycle management;
  • Strong experience securing AWS environments across IAM, data security, network security, workload security, security operations, and secure DevOps;
  • Working knowledge of enterprise IaaS, PaaS, and SaaS platforms, including AWS, Azure, GCP, Salesforce, Microsoft 365, Rafay, or similar technologies;
  • Knowledge of AI security principles for Generative AI, LLM applications, AI/ML workloads, and AI orchestration platforms;
  • Experience implementing security controls for cloud-native AI services and platforms;
  • Experience securing AI development pipelines, including MLOps/LLMOps, Databricks ML workflows, supply chain security, model artifact protection, IaC, and CI/CD security;
  • Experience securing AI orchestration and automation platforms such as n8n;
  • Experience securing managed AI services such as Amazon Bedrock, Amazon SageMaker, Azure OpenAI Service, Google Vertex AI, and Databricks;
  • Knowledge of public, private, and hybrid cloud architectures, networking, scalability, and cloud security best practices;
  • Knowledge of Identity Governance, identity lifecycle management, authentication, authorization, PAM, and access governance;
  • Knowledge of Cloud SIEM and SOC capabilities;
  • Hands-on experience with AWS core services for compute, networking, storage, content delivery, automation, deployment, security, and operations;
  • Experience developing cloud-native applications with microservices, Docker, and serverless platforms such as AWS Lambda;
  • Strong engineering expertise with AWS-based solutions, including EC2, Lambda, DynamoDB, API Gateway, RDS, CloudFormation, CloudWatch, CloudFront, and Route 53;
  • Experience designing and developing cloud-native applications and REST APIs within AWS;
  • Experience architecting highly available, scalable, and resilient cloud solutions;
  • Proficiency in at least one programming or scripting language such as Java, Python, Node.js, or JSON policy languages;
  • Experience using AI technologies, including developing AI Agents and building with LLMs;
  • Excellent written and verbal communication skills;
  • Strong collaboration skills across cross-functional teams;
  • Team-oriented approach with focus on team goals;
  • Self-motivated, proactive, and able to manage competing priorities;
  • High degree of initiative;
  • Nice to have: CCSP, CCSK, or equivalent cloud security certification, AWS Certified Solutions Architect – Professional, AWS Certified Security – Specialty, CISSP, or equivalent information security certification.

условия

  • Vast opportunities to learn, develop, and move up and across the global organization;
  • Diverse and inclusive community of belonging;
  • Generous AMGEN Total Rewards Plan comprising healthcare, finance, wealth, and career benefits;
  • Flexible work arrangements.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.

Про зарплаты

Анонимные данные по зарплатам и грейдам.
Можно сверить вилку с рынком.

Посмотреть зарплаты

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.