SonicJobs Logo
Left arrow iconBack to search

Cloud Security Engineer- Bilingual Korean

Megazone Cloud US
Posted 6 days ago, valid for 17 days
Location

Irvine, CA 92614, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • We are looking for a Cloud Security Engineer with a minimum of 3 years of experience in a dedicated cloud security role.
  • The position involves designing and managing security controls in our AWS cloud environment, focusing on tools like CWPP, CSPM, and various firewalls.
  • The salary for this role is competitive and commensurate with experience, reflecting the importance of cloud security expertise.
  • Candidates must be proficient in the Korean language and possess strong knowledge of AWS security services and scripting languages.
  • Our company culture emphasizes growth, collaboration, and innovation, making it an exciting place to work.

Job Summary

We are seeking a proactive and skilled Cloud Security Engineer to join our team. The ideal candidate will be responsible for designing, implementing, and managing security controls and best practices within our cloud environment, with a focus on AWS. This role will be critical in protecting our cloud infrastructure, applications, and data by utilizing a range of security tools and platforms, including CWPP, CSPM, Firewall, DAC solution.

Key Responsibilities

  • Cloud Security Posture Management (CSPM): Configure, monitor, and manage AWS security services such as AWS Config, AWS Security Hub, and AWS GuardDuty to ensure continuous compliance and identify potential security threats and misconfigurations.

  • Cloud Workload Protection (CWPP): Implement and manage a Cloud Workload Protection Platform to secure workloads (containers, virtual machines, serverless functions) running in the cloud.

  • Network and Web Application Firewalls: Design, deploy, and maintain security policies and rules on AWS Firewall and AWS WAF to protect our network and web applications from common exploits and threats.

  • Incident Response: Investigate security incidents, perform root cause analysis, and lead remediation efforts within the cloud environment.

  • Automation: Develop and maintain security automation scripts and tools using languages like Python, Bash, or PowerShell to streamline security operations and response.

  • Vulnerability Management: Conduct regular vulnerability scanning and penetration testing, and work with development teams to prioritize and patch identified vulnerabilities.

  • Policy and Compliance: Help define and enforce security policies, standards, and best practices to meet regulatory and compliance requirements (e.g., SOC 2, ISO 27001).

  • Access Management: Manage and audit Identity and Access Management (IAM) policies, roles, and user accounts to enforce the principle of least privilege, with specific focus on Database Access Control (DAC) using tools like ChakraMax.

  • Threat Modeling: Participate in architectural reviews and threat modeling to ensure security is built into our cloud solutions from the initial design phase.

Qualifications

  • Required Skills & Experience:

    • Korean language proficiency required

    • 3+ years of experience in a dedicated cloud security role.

    • Strong knowledge of AWS security services, including IAM, Security Hub, GuardDuty, AWS Config, AWS Firewall, AWS WAF, and AWS Inspector.

    • Hands-on experience with CWPP and CSPM solutions.

    • Hands-on experience with Database Access Control (DAC) tools such as ChakraMax.

    • Experience with scripting and automation (e.g., Python, CloudFormation, Terraform).

    • Solid understanding of networking concepts and security protocols.

    • Familiarity with common web exploits and vulnerabilities (e.g., OWASP Top 10).

    • Excellent problem-solving, communication, and collaboration skills.

  • Preferred Skills & Experience:

    • AWS Certified Security – Specialty or other relevant certifications (e.g., CISSP, CCSP).

    • Experience with container security technologies (e.g., Docker, Kubernetes).

    • Familiarity with CI/CD security practices and DevSecOps principles.

    • Experience in a large-scale, enterprise-level cloud environment.

Why You'll Love It Here

  • Our Product is Our People: We live by this. We invest in people who invest in themselves. Your growth is our growth.

  • True Servant Leadership: Our CTO leads with a "force multiplier" philosophy. Management is here to empower you and clear roadblocks, not to micromanage. We won't ask you to do anything we're not willing to do ourselves.

  • Flat Organization, Real Impact: Your voice and designs will directly shape our technical roadmap and our clients' success. You'll work on the latest tech to solve real problems.

  • A "Learn-from-it" Culture: We're moving fast and building new things. We believe mistakes are learning opportunities, not failures.

We seek diverse talent who are ready to make an immediate impact. We believe that innovation thrives when teams are built with a variety of backgrounds, experiences, and perspectives. If you are excited by this mission, we encourage you to apply, even if your experience doesn't perfectly match every qualification listed.

Megazone Cloud is an Equal Opportunity Employer and participates in E-Verify to confirm the employment eligibility of all new hires.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.