Josys is seeking a passionate Security Operations Engineer to join their security team and enhance defenses across their cloud infrastructure and application ecosystem.
The role involves leading the design and implementation of security controls across cloud infrastructure, CI/CD pipelines, and application layers.
The engineer will act as a subject matter expert in preventive and detective controls, vulnerability management, and compliance enforcement.
Responsibilities include configuring AWS-native security tools for real-time detection, driving cloud gap assessments, ensuring compliance with standards like CIS, ISO 27001, and SOC 2, and managing incident response efforts.
The engineer will also integrate automated security tools in CI/CD processes, conduct penetration testing, manage the vulnerability lifecycle, and drive security awareness training.
Requirements:
Candidates must have 5–8 years of experience in cloud security, application security, or security operations roles.
A deep knowledge of AWS security architecture, IAM, networking, and encryption practices is required.
Hands-on experience with security testing tools such as Burp Suite, OWASP ZAP, Nmap, and cloud-native monitoring tools is essential.
A strong grasp of compliance frameworks including GDPR, SOC 2, ISO 27001, and data residency considerations is necessary.
Solid scripting or automation skills in languages like Python, Bash, or Terraform are required.
Candidates must hold at least one relevant certification, such as AWS Certified Security – Specialty, CISSP, or CCSP.
Benefits:
Employees will work on a global SaaS platform at the forefront of IT automation and cloud security.
The position offers the opportunity to lead initiatives that shape modern enterprise risk management.
Josys promotes a culture of ownership, innovation, and collaboration.
The company provides a remote-friendly work culture with high-impact opportunities.