Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
United States
Posted
20 hours ago
Job Description
Job Title : Senior Security Assessment Specialist
Location : Remote
JD :
Senior Security Assessment Specialist
•Familiarity with FedRAMP, BSI IT-Grundschutz, ISO 27001, or similar regulatory/compliance frameworks.
• Hands-on experience with infrastructure automation tools (e.g., Terraform, Ansible) and scripting languages (e.g., Python, Bash).
• Security certifications such as CISSP, CISA, or similar are a plus.
Role Descriptions: Key Responsibilities: Collaborate effectively with cross-functional teams to assess| document| and communicate security risks and mitigation strategies. Perform the scanning procedures required for the comprehensive security assessments in alignment with FedRAMP| BSI IT-Grundschutz| and other international regulatory frameworks Provide clear| actionable recommendations to improve security posture based on assessment findings| industry best practices| and compliance requirements. Support the development and continuous refinement of security assessment methodologies and documentation. Analyze and validate security controls across multiple cloud providers like OpenStack (AWS| Azure and Google Cloud Platform also accepted) hosted clouds. Apply knowledge of Terraform| Ansible| and a broad spectrum of programming and deployment technologies (e.g.| CI/CD pipelines| scripting languages| container orchestration| infrastructure-as-code) to support secure system design and auditing. Communicate findings and risk summaries to both technical and non-technical stakeholders| helping drive a security-first culture across the organization. Qualifications: 8+ years of experience in information security| risk assessments| or related fields. Familiarity with FedRAMP| BSI IT-Grundschutz| ISO 27001| or similar regulatory/compliance frameworks. Hands-on experience with infrastructure automation tools (e.g.| Terraform| Ansible) and scripting languages (e.g.| Python| Bash). Understanding of modern deployment methodologies| cloud architecture| and DevSecOps practices. Strong communication skills with the ability to explain technical issues to a broad audience. Security certifications such as CISSP| CISA| or similar are a plus. Nice to Have: Experience participating in third-party audits or assessments. Knowledge of secure coding practices and application security testing. Familiarity with container security| Kubernetes| and cloud-native technologies.
Essential Skills: Key Responsibilities: Collaborate effectively with cross-functional teams to assess| document| and communicate security risks and mitigation strategies. Perform the scanning procedures required for the comprehensive security assessments in alignment with FedRAMP| BSI IT-Grundschutz| and other international regulatory frameworks Provide clear| actionable recommendations to improve security posture based on assessment findings| industry best practices| and compliance requirements. Support the development and continuous refinement of security assessment methodologies and documentation. Analyze and validate security controls across multiple cloud providers like OpenStack (AWS| Azure and Google Cloud Platform also accepted) hosted clouds. Apply knowledge of Terraform| Ansible| and a broad spectrum of programming and deployment technologies (e.g.| CI/CD pipelines| scripting languages| container orchestration| infrastructure-as-code) to support secure system design and auditing. Communicate findings and risk summaries to both technical and non-technical stakeholders| helping drive a security-first culture across the organization. Qualifications: 8+ years of experience in information security| risk assessments| or related fields. Familiarity with FedRAMP| BSI IT-Grundschutz| ISO 27001| or similar regulatory/compliance frameworks. Hands-on experience with infrastructure automation tools (e.g.| Terraform| Ansible) and scripting languages (e.g.| Python| Bash). Understanding of modern deployment methodologies| cloud architecture| and DevSecOps practices. Strong communication skills with the ability to explain technical issues to a broad audience. Security certifications such as CISSP| CISA| or similar are a plus. Nice to Have: Experience participating in third-party audits or assessments. Knowledge of secure coding practices and application security testing. Familiarity with container security| Kubernetes| and cloud-native technologies.
Desirable Skills:
Keyword:
Skills: ISO 27001:2005~Digital : Ansible~Digital
•Familiarity with FedRAMP, BSI IT-Grundschutz, ISO 27001, or similar regulatory/compliance frameworks.
• Hands-on experience with infrastructure automation tools (e.g., Terraform, Ansible) and scripting languages (e.g., Python, Bash).
• Security certifications such as CISSP, CISA, or similar are a plus.
Role Descriptions: Key Responsibilities: Collaborate effectively with cross-functional teams to assess| document| and communicate security risks and mitigation strategies. Perform the scanning procedures required for the comprehensive security assessments in alignment with FedRAMP| BSI IT-Grundschutz| and other international regulatory frameworks Provide clear| actionable recommendations to improve security posture based on assessment findings| industry best practices| and compliance requirements. Support the development and continuous refinement of security assessment methodologies and documentation. Analyze and validate security controls across multiple cloud providers like OpenStack (AWS| Azure and Google Cloud Platform also accepted) hosted clouds. Apply knowledge of Terraform| Ansible| and a broad spectrum of programming and deployment technologies (e.g.| CI/CD pipelines| scripting languages| container orchestration| infrastructure-as-code) to support secure system design and auditing. Communicate findings and risk summaries to both technical and non-technical stakeholders| helping drive a security-first culture across the organization. Qualifications: 8+ years of experience in information security| risk assessments| or related fields. Familiarity with FedRAMP| BSI IT-Grundschutz| ISO 27001| or similar regulatory/compliance frameworks. Hands-on experience with infrastructure automation tools (e.g.| Terraform| Ansible) and scripting languages (e.g.| Python| Bash). Understanding of modern deployment methodologies| cloud architecture| and DevSecOps practices. Strong communication skills with the ability to explain technical issues to a broad audience. Security certifications such as CISSP| CISA| or similar are a plus. Nice to Have: Experience participating in third-party audits or assessments. Knowledge of secure coding practices and application security testing. Familiarity with container security| Kubernetes| and cloud-native technologies.
Essential Skills: Key Responsibilities: Collaborate effectively with cross-functional teams to assess| document| and communicate security risks and mitigation strategies. Perform the scanning procedures required for the comprehensive security assessments in alignment with FedRAMP| BSI IT-Grundschutz| and other international regulatory frameworks Provide clear| actionable recommendations to improve security posture based on assessment findings| industry best practices| and compliance requirements. Support the development and continuous refinement of security assessment methodologies and documentation. Analyze and validate security controls across multiple cloud providers like OpenStack (AWS| Azure and Google Cloud Platform also accepted) hosted clouds. Apply knowledge of Terraform| Ansible| and a broad spectrum of programming and deployment technologies (e.g.| CI/CD pipelines| scripting languages| container orchestration| infrastructure-as-code) to support secure system design and auditing. Communicate findings and risk summaries to both technical and non-technical stakeholders| helping drive a security-first culture across the organization. Qualifications: 8+ years of experience in information security| risk assessments| or related fields. Familiarity with FedRAMP| BSI IT-Grundschutz| ISO 27001| or similar regulatory/compliance frameworks. Hands-on experience with infrastructure automation tools (e.g.| Terraform| Ansible) and scripting languages (e.g.| Python| Bash). Understanding of modern deployment methodologies| cloud architecture| and DevSecOps practices. Strong communication skills with the ability to explain technical issues to a broad audience. Security certifications such as CISSP| CISA| or similar are a plus. Nice to Have: Experience participating in third-party audits or assessments. Knowledge of secure coding practices and application security testing. Familiarity with container security| Kubernetes| and cloud-native technologies.
Desirable Skills:
Keyword:
Skills: ISO 27001:2005~Digital : Ansible~Digital
Similar jobs
- NI
RMF Cyber Security Analyst with Security Clearance
NewNationwide IT Services
Quantico, VA🇺🇸$100k - $110k/yrOn-site20 hours agoMicrosoft OfficeTechnology - DO
INFORMATION TECHNOLOGY SPECIALIST (INFOSEC) with Security Clearance
NewDepartment of the Navy
Honolulu, HI🇺🇸Hybrid20 hours agoTechnology - AM
Senior Security Engineer, Forward Deployed Engineering, AWS Forw with Security Clearance
NewAmazon
Boston, MA🇺🇸On-site20 hours agoMicroservicesScalaAWS+7Technology - DS
Sr Security Analyst
NewDia Software Solutions
Lansing, MI🇺🇸Hybrid20 hours agoTechnology - CD
Cyber Security Analyst
NewCOMPUtek Dental Systems
Fort Collins, CO🇺🇸$23 - $24/hrHybrid20 hours agoSASSEncryptionTCP/IP+3Technology - CS
Security Engineer – Engineering Security
NewClover Solutions LLC
Seattle, WA🇺🇸On-site20 hours agoMicroservicesAWSOWASP+6Technology