Cloud Security Engineer - RBAC, IAM, SIEM

Astra North Infoteck Inc.

Montreal (Hybride)
Compétences recherchées — Connectez-vous et téléversez votre CV pour comparer avec votre profil
Conformité réglementaire Cybersécurité Azure +10 autres

Détails du poste

  • Lieu de travail : Montreal (Hybride)
  • Type de poste : Permanent à temps plein

Description du poste

Cloud Security Engineer - RBAC, IAM, SIEM
Security Architecture

Lieu

Location: Montreal, QC (Hybrid - 3 days/week onsite)

Processus d’entretien

Interview Process: Face-to-Face Interview Required

Expérience requise

Experience Required: 4-6 Years

Présentation du rôle

We are seeking a Security Architecture professional with strong expertise in cloud security, application security, and enterprise security engineering. The ideal candidate will be responsible for designing, implementing, and maintaining security controls across cloud, network, server, endpoint, and application environments while ensuring compliance with security standards and best practices.

Compétences et responsabilités essentielles

Compétences en sécurité cloud

  • Proven experience managing security across Azure, AWS, and GCP environments.
  • Experience implementing Zero Trust architectures.
  • Strong knowledge of Microsoft Defender and advanced security analytics.
  • Experience with RBAC (Role-Based Access Control) and IAM (Identity and Access Management) for secure access management.
  • Knowledge of comprehensive logging practices and secure data transmission using TLS and Syslog.

Contrôles de sécurité applicative

  • Strong understanding of application security controls and industry-standard security best practices.
  • Experience securing applications throughout the software development lifecycle.

Responsabilités en ingénierie de la sécurité

  • Design, implement, and maintain security controls across network, cloud, server, endpoint, and application environments.
  • Monitor security events and investigate incidents using SIEM, EDR, and security monitoring tools.
  • Perform vulnerability assessments, risk analysis, and remediation tracking.
  • Support incident response activities, including threat detection, containment, eradication, and recovery.

Configurer et gérer des technologies de sécurité telles que :

  • Firewalls
  • IDS/IPS
  • WAF
  • DLP
  • IAM Solutions
  • Endpoint Protection Solutions

Évaluations et collaboration

  • Conduct security assessments and recommend improvements to strengthen the organization's security posture.
  • Collaborate with infrastructure, cloud, application, and DevOps teams to integrate security best practices.
  • Support security audits, compliance assessments, and regulatory requirements including:
  • ISO 27001
  • NIST
  • SOC 2
  • PCI-DSS
  • Develop and maintain security policies, procedures, and technical documentation.
  • Stay current with emerging cyber threats, vulnerabilities, and industry security trends.

Compétences requises

  • Cyber Security
  • Cyber Security - GRC - Data Security