Job/Role Description:
- Evaluate cloud app workload, platform and/or service implementations for adherence to the Cloud Control Framework (CCF).
- Gather evidence of control adherence for the platform, application workloads for cloud services.
- Work with development teams, platform architects and process engineers to validate their workloads before and/or after production deployment.
- Drive the development of cloud control validation and adherence evidence gathering Playbooks.
- Collaborate with Teammates and partners to gather and/or confirm details/specifics for inclusion with Playbooks.
- Evaluate in place processes and procedures, recommend consistency, quality and security/risk mitigating adjustments to re-engineer processes and reflect results in Playbooks.
- Ensure Playbooks can be leveraged by engineering and development teams as requirements for the automation of cloud control validation and evidence gathering processes.
Required Skills/Experience:
- 5+ years of Information/Cybersecurity experience
- 2+ years of intermediate to advanced experience with public cloud computing/hosting (preferably Microsoft Azure and/or Google)
- Proven experience with technical writing and requirements gathering/documentation.
- Strong experience evaluating processes/procedures and recommending efficiency, quality and security/risk mitigating adjustments/improvements.
- Advanced capabilities with technical writing, process development, process mapping, process flow diagramming and process re-engineering.
- Demonstrated deep understanding of cloud technology and cloud security concepts, spanning cloud platforms/landing zone, cloud services, Identity & Access Management, boundary protection / network security, cloud storage and data protection.
- Strong understanding of and ability to apply knowledge of industry/government standards and frameworks to real world business and technical requirements (e.g. NIST, CIS, CSA, FFIEC, ISO)
- Experience with Agile Scrum or Kanban methodologies.
- Strong analytical skills, proven critical thinking capabilities and ability to solve complex problems with minimal direct oversight.
- Ability to handle multiple, high priority deliverables concurrently.
- Ability to communicate confidentially, professionally, and effectively, in both written and verbal formats, with stakeholders and partners.
- Must have intermediate to advanced experience working with Microsoft Office products (e.g. Word, Excel, PowerPoint, Visio, Outlook, Teams, SharePoint)
Desired Skills Skills That Would Be a Plus.
- Specific experience conduction Cloud implementation/migration control and or security capability validations
- Cloud auditing experience
- Cloud, Risk and/or Cybersecurity certifications (e.g., CISA, CISM, CISSP, CRISC, CCSK)
- Cloud certifications specific to Azure, Google, or AWS
- Understanding of information security threats, trends and industry best practices and security tools
- Finance sector security experience or other regulated industry (e.g., utilities, health care, government)
How to Apply: send resume and contact information to Nick Gleason, Sourcing Specialist, at .
The S3 Difference :
The global mission of S3 is to build trusting relationships and deliver solutions that positively impact our customers, our consultants, and our communities. The four pillars of our company are to:
- Set the bar high for what a company should do
- Create jobs
- Offer people an opportunity to succeed and change their station in life
- Improve the communities where we live and work through volunteering and charitable giving
As an S3 employee, you re eligible for a full benefits package that may include:
- Medical Insurance
- Dental Insurance
- Vision Insurance
- 401(k) Plan
- Vacation Package
- Life & Disability Insurance Plans
- Flexible Spending Accounts
- Tuition Reimbursement