3 авг

security engineer

ориентир по рынку
вакансия зп не указана
в среднем 351 041 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовьтесь к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме

описание

Amgen is a biotechnology and pharmaceutical company that develops treatments and supports healthcare through technology and digital innovation.

задачи

  • Design, implement, and continuously improve secure cloud architectures across public, private, and hybrid cloud environments;
  • Design and implement cloud network security architectures, including Zero Trust networking, micro-segmentation, WAF, API security, secure hybrid connectivity, and network segmentation;
  • Design, engineer, implement, and maintain cloud security controls for IAM, PAM, network segmentation, encryption, key management, secrets management, and certificate lifecycle management;
  • Implement and optimize CSPM, CWPP, vulnerability management, and automated compliance solutions;
  • Design, develop, and maintain secure IaC solutions using Terraform, CloudFormation, and policy-as-code frameworks;
  • Develop and maintain cloud governance frameworks, security baselines, guardrails, and landing zones across AWS, Azure, and Google Cloud Platform;
  • Design and implement cloud-native logging, monitoring, and detection capabilities integrated with centralized SIEM and SOC platforms;
  • Collaborate with Application Security, DevOps, Platform Engineering, and Application Development teams to embed security throughout the SDLC;
  • Design and implement security controls for containerized, Kubernetes, serverless, and cloud-native application environments;
  • Partner with SOC and IR teams to investigate and respond to cloud security incidents, perform forensic analysis, root cause investigations, and threat hunting;
  • Lead cloud security architecture reviews for cloud-native platforms, Kubernetes environments, managed cloud services, APIs, AI services, and enterprise applications;
  • Conduct threat modeling and cloud security risk assessments;
  • Evaluate emerging cloud, AI, and cybersecurity technologies;
  • Design and implement security controls for cloud-native AI and machine learning services, including Generative AI and LLM integrations;
  • Partner with Data Engineering, AI, and Platform Engineering teams to secure enterprise AI platforms, workflows, and automation solutions;
  • Develop and automate cloud security capabilities using scripting, APIs, IaC, and security orchestration;
  • Develop and maintain cloud security standards, reference architectures, technical documentation, operational procedures, and security runbooks;
  • Provide technical leadership, mentoring, and subject matter expertise to engineering, operations, architecture, and product teams;
  • Support internal and external security audits, compliance assessments, and regulatory initiatives;
  • Participate in after-hours support activities as required and travel occasionally.

требования

  • Strong understanding of core information security principles, including authentication, authorization, confidentiality, integrity, and availability;
  • Solid knowledge of least privilege, defense in depth, and secure-by-design practices;
  • Good understanding of cryptography, encryption, certificate management, and key lifecycle management;
  • Strong experience securing AWS environments across IAM, data security, network security, workload security, security operations, and secure DevOps;
  • Working knowledge of enterprise cloud platforms across IaaS, PaaS, and SaaS, including AWS, Azure, GCP, Salesforce, Microsoft 365, and Rafay or similar technologies;
  • Knowledge of AI security principles for Generative AI, LLM applications, AI/ML workloads, and AI orchestration platforms;
  • Experience securing cloud-native AI services and platforms through IAM, data protection, encryption, secrets management, API security, and network security;
  • Experience securing AI development pipelines, including MLOps/LLMOps, Databricks ML workflows, supply chain security, model artifact protection, IaC, and CI/CD security;
  • Experience securing AI orchestration and automation platforms such as n8n;
  • Experience securing managed AI services such as Amazon Bedrock, Amazon SageMaker, Azure OpenAI Service, Google Vertex AI, and Databricks;
  • Knowledge of public, private, and hybrid cloud architectures, cloud service models, infrastructure design, networking, scalability, and cloud security best practices;
  • Knowledge of Identity Governance, identity lifecycle management, authentication, authorization, PAM, and access governance;
  • Knowledge of Cloud SIEM and SOC capabilities, including centralized logging, security monitoring, threat detection, incident response, and security analytics;
  • Hands-on experience with AWS core services for compute, networking, storage, content delivery, automation, deployment, security, and operations;
  • Experience developing cloud-native applications with microservices, Docker, and serverless platforms such as AWS Lambda;
  • Strong engineering expertise with AWS-based solutions, including EC2, Lambda, DynamoDB, API Gateway, RDS, CloudFormation, CloudWatch, CloudFront, and Route 53;
  • Experience designing and developing cloud-native applications and REST APIs in AWS;
  • Experience architecting highly available, scalable, and resilient cloud solutions;
  • Proficiency in at least one programming or scripting language such as Java, Python, Node.js, or JSON policy languages;
  • Experience using AI technologies, including developing AI Agents and building with LLM;
  • Excellent written and verbal communication skills;
  • Strong collaboration skills across cross-functional teams;
  • Team-oriented approach with focus on team goals;
  • Self-motivated, proactive, and able to manage competing priorities;
  • High degree of initiative;
  • Nice to have: CCSP, CCSK, or equivalent cloud security certification; AWS Certified Solutions Architect – Professional and/or AWS Certified Security – Specialty; CISSP or equivalent information security certification.

условия

  • Opportunities to learn, develop, and move up and across the global organization;
  • Diverse and inclusive community of belonging;
  • Generous AMGEN Total Rewards Plan covering healthcare, finance, wealth, and career benefits.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.

Про зарплаты

Анонимные данные по зарплатам и грейдам.
Можно сверить вилку с рынком.

Посмотреть зарплаты

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.