Senior Advanced Cloud Security Architect
Honeywell
Honeywell Connected Enterprise (HCE) is a global leader for products and technologies that are installed in more than 10 million buildings, aircraft, and facilities worldwide. We are a pioneer in the Internet of Things, developing the next generation of connected offerings.
Are you someone who wants to drive real improvements into real products in an environment which has a strong organizational support for product security?
In the role of Senior Advanced Cyber Security Architect for Honeywell Connected Enterprise, you will join a growing Product Security team overseeing the posture of HCE Cloud offerings and driving security by design across cloud-based products. The Senior Advanced Cyber Security Architect will report to the HCE Cloud Security Manager and will drive secure cloud posture and risk reduction across software products through standardized and defined processes by partnering with Honeywell Global Security and collaboration with team members.
Due to compliance with U.S. export control laws and regulations, candidate must be a U.S. Person, which is defined as, a U.S. citizen, a U.S. permanent resident, or have protected status in the U.S. under asylum or refugee status.
Responsibilities:
+ Innovate by solutioning new ways of doing things and identifying industry leading practices and solutions in secure cloud
+ Collaborate with team members driving state of the art cloud security practices
+ Support and collaborate with CTO and SRE to drive best-in-class cloud posture in multi-cloud environment.
+ Partner with Honeywell Global Security to understand and influence cloud security baselines with practical solutions, applying engineering considerations without adding risk
+ Develop and enforce security policies, procedures, and guidelines for Kubernetes environments.
+ Conduct security assessments and vulnerability analyses of Kubernetes clusters and containerized applications.
+ Stay up to date with the latest security trends, vulnerabilities, and technologies related to Cloud, Kubernetes and container security.
+ Provide guidance and training to internal teams on Kubernetes security best practices.
+ Identify metrics which will drive behavior changes in the cloud such as cloud resources not tagged, cloud not built with code, cloud risk. etc.
+ Implement dashboards to provide insight into cloud risk and drive risk reduction activities.
+ Support security incident and response activities, performing analysis, collaborate with stakeholders, and drive resolution of incidents.
+ Promote and apply Zero Trust architecture and principles throughout cloud & edge.
You must have:
+ Bachelor's Degree in Cybersecurity, Computer Science, or a related field.
+ 5+ years of experience with a public cloud such as AWS, Azure, GCP
We value:
+ Ability to identity and define project scope and level of effort
+ Experience with programming and automation
+ Ability to identify and remediate issues early, analyze, and propose alternative solutions
+ Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts among stakeholders
+ Passion for achieving results and continual self-improvement
+ Experience and knowledge of Public Cloud Provider (e.g., Azure, AWS, GCP) security controls and capabilities (e.g., DDoS, Firewalls, WAF, Network Segregation)
+ Understanding of secure networking design and principles
+ Proven experience as a Cyber Security Architect or similar role, with a focus on Kubernetes security.
+ In-depth knowledge of Kubernetes architecture, components, and security features.
+ Experience with containerization technologies such as Docker.
+ Experience of multi-layer cloud security controls ensuring confidentiality, integrity, and availability
+ Experience with Identity and Access Management security solutions and protocols (e.g., SAML, OpenID, and OAuth)
+ Understanding of security by design principles, architecture level security, API security, and Zero Trust security concepts
+ Up to date knowledge of current and emerging security threats and techniques for exploiting security weaknesses
+ Understanding of National and International regulatory and compliance standards
+ Certifications in security demonstrating deep practical knowledge such as CCSP, or CISSP
+ Master’s Degree in Cybersecurity, Computer Science, or a related field.
Honeywell is an equal opportunity employer. Qualified applicants will be considered without regard to age, race, creed, color, national origin, ancestry, marital status, affectional or sexual orientation, gender identity or expression, disability, nationality, sex, religion, or veteran status.
Confirm your E-mail: Send Email
All Jobs from Honeywell