Research and analyze threats related to Cloud, IaaS SaaS service providers like AWS, GCP, Azure, Office 365, Okta, and Snowflake.
Analyze emerging cloud threats and their impact on customers as well as our own cloud infrastructure.
Build contextual attack graphs by combining various cloud data security elements.
Discover new attack techniques and develop detection methods for them.
Help customers understand the threat landscape and provide guidance on risk mitigation.
Work closely with engineers to prioritize and refine your deliverables. - Implement, map and correlate various compliance frameworks with cloud misconfigurations and data security risks
Requirements:
3+ years of information security research, incident response, cloud security, or similar experience.
Strong understanding of security in public cloud providers like AWS, GCP, or Azure. Ideally on at least 2 of the three.
Understanding of SaaS security space for applications like Microsoft365, Google Workspace, Salesforce etc.
Scripting and automation experience. Experience with Graph, Neo4j, cypher query is a plus.
You can demonstrate that you are innovative, a continuous learner, and a problem solver.