Security Validation-AWS Infrastructure
Apply NowCompany: Delphi
Location: Chicago, IL 60629
Description:
Job Title: AWS Infrastructure Security Validation (Contract) - Job#4759
Worksite: 100% Remote (Chicago/Dallas hybrid preferred)
Testing work to validate custom built cloud application meet security requirements (NFR -Non-Functional Requirements)
SKILL AND EXPERIENCE REQUIRED:
Worksite: 100% Remote (Chicago/Dallas hybrid preferred)
Testing work to validate custom built cloud application meet security requirements (NFR -Non-Functional Requirements)
- Conduct independent review and testing of Jira tickets submitted by development teams. These tickets will comprise of security requirements such as IAM integrations, PAM, Secrets Management, MFA, API Protections, etc.
- Conduct independent testing of AWS infrastructure / environment. The testing should provide assurance to Security management that the environment meet baseline requirements and industry standards for hardening.
- All test work must be accompanied with the appropriate documentation, which may include completion of Jira tickets and / or test reports.
SKILL AND EXPERIENCE REQUIRED:
- Architectural understanding and expertise of cloud and hybrid cloud infrastructure
- Deep understanding of AWS and its components
- Experience with AWS Services including automation services (Lambda, JSON, etc...)
- Prior experience testing custom developed applications
- Strong understanding of modern deployment technologies including CICD, Terraform, Ansible, and Docker Proficiency.
- Experience with DevOps Pipelines and GitHub Repos
- Five years' experience with Security testing.
- Experience with Windows, Unix, Cisco, platforms, and controls.
- Certification in at least one or more of the following would be a plus (but not required):
- AWS Certified Solutions Architect
- AWS Certified Security Specialty
- Certification Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- GIAC Cloud Security Essentials (GCLD)
- GIAC Cloud Security Automation (GCSA)
- GIAC Security Essentials (GSEC)
- GIAC Defensible Security Architecture (GDSA)
