Cloud Security Engineer
Overview
The Cloud Security Operations Specialist plays a critical role in strengthening the organization’s cloud security posture across various cloud platforms which include IaaS, PaaS, and SaaS frameworks. This role will focus on monitoring the current environment, understanding workflows, identifying risks and mitigations while also identifying strengths and opportunities. As part of their day-day activities, the Cloud Security Specialist will provide recommendations, implement improvements, and support continuous monitoring and risk reduction across the cloud ecosystem.
Responsibilities
Initial Objective
- Observe current workflows, tooling, posture checks, monitoring, and team processes.
- Identify gaps, strengths, and opportunities for improved cloud security and operational efficiency.
- Present recommendations for optimization and measurable improvements.
- Recommend approaches to mitigate risks across the cloud environment and help increase automation while reducing the complexity of cloud monitoring.
Core Responsibilities
- Cloud Security Support & Partnership
- Serve as the Security Point of Contact (POC) for cloud migrations and related architecture reviews.
- Build strong working relationships with the other IT teams to understand their objectives, projects, and constraints.
- Participate in the regular team enablement engagements to align on tools, processes, and security initiatives.
- Provide general security support across cloud services and collaborate with cross-functional teams on issues, enhancements, and incidents.
- Remains cognizant of and adheres to NWFCU policies and procedures as well as regulations pertaining to the Bank Secrecy Act (BSA)
Monitoring & Operations
- Conduct continuous monitoring of cloud environments and applications.
- Oversee the digital certificate auto-renewal system, ensuring timely certificate renewals.
- Perform and document posture checks across key platforms
- Conduct integrated application security reviews and validate policy adherence and change control compliance.
Risk Assessments
- Perform security risk assessments for critical cloud-hosted applications.
- Evaluate vendor security posture and ensure mitigations are aligned to organizational expectations.
- Lead the annual update of cloud risk assessments.
- Participate in vendor risk assessments for new vendors and annual renewals, focusing on cloud-hosted and data-storing third parties.
Enhancements & Strategic Improvements
- Support and contribute to cloud security enhancement initiatives, including: Data classification deployment and optimization
- Passwordless authentication
- Improved usage and integration of native cloud security tools
- Identify opportunities to automate security checks, posture validation, and reporting.
- Recommend best practices for identity security, logging, monitoring, and data protection across cloud ecosystems.
Qualifications
Required
- High School Diploma or equivalent
- Minimum of 2 years’ experience with IdAM, collaboration, CRM/database functions, cloud-based IaaS, and SaaS security
- Ability to obtain and maintain a Secret level security clearance
- Knowledge of IdAM concepts, including RBAC and SSO/MFA
- Familiarity with posture management tools
- Experience performing vendor risk assessments and cloud application security reviews
- Understanding logging, monitoring, and SIEM tools
- Strong communication and relationship-building skills across technical and non-technical teams
- Ability to manage multiple security reviews, findings, and assessments simultaneously
- Strong project management skills including planning, documentation, and communication
- Strong service and support mentality
- Provide guidance and support for new employees or new concepts
- Continuous learning and improvement
- Ability to work effectively on-site in our Herndon, VA headquarters and equally effectively remotely
Preferred
- Associate’s degree or equivalent experience
Additional Compensation
Northwest Federal offers a comprehensive and inclusive benefits program, which includes medical, dental and vision plans for you and your family, 4 weeks paid vacation, 12 paid holidays, 24 hours of paid volunteer time, parental leave, company paid disability and life insurance, and a generous 401(k) plan with up to 7% employer match.
EEO Notice
Northwest Federal Credit Union is an Equal Opportunity Employer and will consider all qualified applicants without regard to race, color, age, religion, sex, sexual orientation, gender identity, genetic information, national origin, disability, protected veteran status or any other classification protected by law.
NWFCU complies with federal and state disability laws and makes reasonable accommodations for applicants and employees with disabilities. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact the Human Resources Department at 703-709-8900 or HRDepartment@nwfcu.org.