Development Alternatives Incorporated (DAI) is an international development company. For more than 45 years, we have worked on the frontlines of international development, tackling fundamental social and economic development problems caused by inefficient markets, ineffective governance, and instability. Currently, DAI is delivering results that matter in some 80 countries.
Our development solutions turn ideas into impact by bringing together fresh combinations of expertise and innovation across multiple disciplines. Our clients include international development agencies, international lending institutions, private corporations and philanthropies, and national governments.
We are recruiting to fill the position below:
Job Title: Cloud Security Engineer & GRC
Location: Nigeria
Employment Type: Full-time
Job Description
We are seeking a Security Engineer to join our fast-paced team building the latest innovative and disruptive technology solution.
We are looking for an experienced Cloud Security Engineer to join our team.
In this role, you will be responsible for securing our AWS cloud infrastructure and ensuring compliance with security standards and regulations.
The role requires hands-on technical experience and a can-do approach toward environment automation/management and continuous improvement.
We want people who can solve challenging problems, make a real impact, and build something big.
If you have the right skills and are passionate about technology, you should join us.
As a Cloud Security Engineer and GRC, you will work independently to build next-generation applications that are efficient & reusable.
Key Responsibilities / Duties
Design and implement security controls, policies, and procedures for the AWS environment
Perform risk assessments of AWS workloads and identify potential vulnerabilities
Monitor AWS infrastructure for security threats, anomalies, and incidents
Investigate and remediate security issues identified in the AWS environment
Conduct security audits and ensure continuous compliance with regulations such as PCI DSS, NDPR, ISO 27001, etc.
Develop and maintain GRC policies, procedures, technical controls, and documentation
Provide guidance and thought leadership on cloud security best practices
Collaborate with development teams to ensure security is built into AWS applications
Stay up-to-date on AWS security features, vulnerabilities, and threat intelligence
Requirements
B.Sc Degree in Computer Science, Information Security or related field
5+ years of experience in cloud security, with expertise in AWS security
In-depth knowledge of AWS security services like IAM, VPC, CloudTrail, GuardDuty, Site2Site VPN etc.
Hands-on experience with vulnerability assessment, penetration testing, and security monitoring
Experience with compliance regulations such as PCI DSS, NDPR, ISO 27001, etc.
Scripting skills for automation of AWS security tasks
Promote DevSecOps culture through security automation, threat modeling, and training
Develop and implement security testing pipelines for CI/CD
Strong understanding of web application and API security principles
Ability to communicate complex security topics to both technical and non-technical audiences
Comfortable working remotely.
Qualifications and Additional Desired Skills:
Bachelor’s or Master’s Degree in Computer Science or other similar fields from a premier institute
Familiarity with at least one versioning tools: Synk, Gitlab, SVN
Being able to work autonomously and aptitude to learn new technologies independently
Ability to work in a fast-paced environment
Excellent communication skills to collaborate with stakeholders in engineering, data science, and product team
AWS Security certifications such as AWS Certified Security - Specialty
Certifications like CISSP, CISA, CEH, OSCP, GWAPT would be a bonus.