Senior Cloud Security Analyst (Remote)

Johnson Controls

Richmond Virginia

United States

Information Technology
(No Timezone Provided)

What you will do

The Senior Cloud Security Analyst is part of the Customer Cloud Monitoring department within the CISO organization. The role will ensure security of the cloud-based infrastructure supporting Johnson Controls products. The role will recommend methods and techniques to improve security and will help establishing a culture of security across the various business units. Creates processes to support high quality security-operations, security monitoring and compliance in cloud-based environments. Supports the achievement of compliance and regulatory goals. The successful candidate will need to be highly knowledgeable of the concepts of security, vulnerability management and compliance specific to cloud environments, as well as have the technical and communication abilities to converse with engineers about security issues and to drive remediation.

How you will do it

  • Implement security solutions to protect the cloud infrastructure
  • Monitor the identified security issues and follow-up with the product teams for remediation
  • Coordinate and/or perform vulnerability assessments
  • Respond / coordinate the response to security incidents
  • Design and implement processes and procedures to ensure security of the cloud infrastructure (incident management; vulnerability management; compliance etc.)
  • Provide assistance and guidance in securing the cloud resources (virtual machines, containers, security groups, firewalls etc.) Partners with the JCI Product Cybersecurity Team, the Enterprise Security Operations Team, and technical leads in the business to ensure end-to-end detection and response for security incidents affecting information assets under your control.

What we look for
Required

  • 4-5 years working in Information Security and Security Operations
  • Knowledge / experience with the industry best practices in Security Incident Management and/or Vulnerability Management and Compliance
  • Experience with various cloud providers (Azure, Google, Amazon)
  • Experience with a broad array of security technologies, such as EDR, container security, vulnerability assessment, secure configuration, and firewall
  • Familiarity with Kubernetes security and CI/CD pipelines (Jenkins)
  • Effective communication skills to interface with both internal and external technical and non-technical teams on complex issues
  • Self-starter mentality that defaults to action and thinks creatively on how to overcome challenges
  • Where legally permissible, as a condition of employment, you will be required on your first day of employment, to show written proof that you have been fully vaccinated against Covid-19 or that you have a valid medical or religious reason for not receiving the vaccine.

Senior Cloud Security Analyst (Remote)

Johnson Controls

Richmond Virginia

United States

Information Technology

(No Timezone Provided)

What you will do

The Senior Cloud Security Analyst is part of the Customer Cloud Monitoring department within the CISO organization. The role will ensure security of the cloud-based infrastructure supporting Johnson Controls products. The role will recommend methods and techniques to improve security and will help establishing a culture of security across the various business units. Creates processes to support high quality security-operations, security monitoring and compliance in cloud-based environments. Supports the achievement of compliance and regulatory goals. The successful candidate will need to be highly knowledgeable of the concepts of security, vulnerability management and compliance specific to cloud environments, as well as have the technical and communication abilities to converse with engineers about security issues and to drive remediation.

How you will do it

  • Implement security solutions to protect the cloud infrastructure
  • Monitor the identified security issues and follow-up with the product teams for remediation
  • Coordinate and/or perform vulnerability assessments
  • Respond / coordinate the response to security incidents
  • Design and implement processes and procedures to ensure security of the cloud infrastructure (incident management; vulnerability management; compliance etc.)
  • Provide assistance and guidance in securing the cloud resources (virtual machines, containers, security groups, firewalls etc.) Partners with the JCI Product Cybersecurity Team, the Enterprise Security Operations Team, and technical leads in the business to ensure end-to-end detection and response for security incidents affecting information assets under your control.

What we look for
Required

  • 4-5 years working in Information Security and Security Operations
  • Knowledge / experience with the industry best practices in Security Incident Management and/or Vulnerability Management and Compliance
  • Experience with various cloud providers (Azure, Google, Amazon)
  • Experience with a broad array of security technologies, such as EDR, container security, vulnerability assessment, secure configuration, and firewall
  • Familiarity with Kubernetes security and CI/CD pipelines (Jenkins)
  • Effective communication skills to interface with both internal and external technical and non-technical teams on complex issues
  • Self-starter mentality that defaults to action and thinks creatively on how to overcome challenges
  • Where legally permissible, as a condition of employment, you will be required on your first day of employment, to show written proof that you have been fully vaccinated against Covid-19 or that you have a valid medical or religious reason for not receiving the vaccine.