Responsibilities / Needs:
· Collaboration:
o Collaborate with DevOps, Cloud Operations, and Application Teams to ensure security measures are integrated seamlessly into the cloud infrastructure.
· CIS Benchmark Compliance:
o Establish and maintain processes for applying CIS Benchmarks to cloud environments.
o Regularly audit and validate the application of benchmarks, flagging instances where benchmarks are not applied or are missing.
o Work closely with the Cloud Security Team to address and remediate any identified security gaps promptly.
· Collaboration and Communication:
o Collaborate with cross-functional teams including Cloud Security, Security Operations, DevOps, Cloud Operations, and Application Teams to understand security requirements and ensure alignment with organizational objectives.
o Communicate effectively with team members, stakeholders, and management, providing updates on security implementation progress, challenges, and solutions.
· Testing and Validation:
o Conduct security testing to identify vulnerabilities and weaknesses in cloud environments.
o Collaborate with DevOps and Application Teams to validate security controls and configurations, ensuring they meet industry standards and best practices.
· Reporting and Documentation:
o Create comprehensive reports on the progress of benchmark compliance, and testing results.
o Maintain up-to-date documentation of security configurations, processes, and benchmarks in a centralized knowledge base for easy reference.
Workstreams Sub-Workstream Deliverables Supported:
Vulnerability + Configuration Management: Focus on Remediation of Vulnerabilities
Vulnerability + Configuration Management: Focus on Remediation of Configuration Related Issues
Cloud Security Management: Remediate High + Critical Wiz Vulnerabilities + Enhance Baselines.