What does a successful Cloud Security Engineer-IAM do at Fiserv?
You will possess a strong technical background in identity and access management, systems administration, cloud computing, and infrastructure as code, with a particular focus on Hashi Corp Vault for secure secret management and Teleport for privileged access management. You will collaborate with cross-functional teams to enhance our security posture and streamline processes through automation.
What you will do:
- Design, implement, and manage HashiCorp Vault for secure secret storage and access across services; teleport for managing privileged access to cloud resources
- Develop automation scripts using programming languages like Python/Bash to enhance operational efficiency and apply Infrastructure as Code (IaC) principles using tools like Terraform, Ansible, or Chef
- Design and Build infrastructure in AWS, Azure, or GCP, leveraging services like EC2, S3, and Kubernetes and work with container technologies (Docker) and orchestration platforms (Kubernetes, OpenShift) to deploy scalable applications
- Monitor system performance, implement observability practices using tools like Prometheus and Grafana, and troubleshoot issues as they arise and collaborate with software engineers, product managers, and DevOps teams to identify and resolve incidents, performing root cause analysis and post-mortem reviews
- Create comprehensive documentation to ensure knowledge sharing and maintain monitor Service-Level Objectives (SLOs) and Service-Level Agreements (SLAs) for system reliability
- Design systems with redundancy and fault tolerance to meet scalability requirements and minimize downtime and implement security best practices, including access control, data encryption, and compliance with standards such as GDPR, HIPAA, or PCI-DSS
What you will need to have:
- 8+ years general security and IT experience
- 5+ years’ experience building infrastructure in at least one of the following cloud platforms: AWS, Azure, or GCP
- 3+ years’ experience in programming and scripting languages like Python, Bash and Linus/Unix operating systems and system configurations along with Infrastructure as Code (Terraform, Ansible, Chef) and building infrastructure in at least one of the following cloud platforms: AWS, Azure, or GCP
- 3+ years’ experience Kubernetes and in containerization (Docker) and orchestration (Kubernetes).
- 2+ years’ experience in networking concepts, including DNS, firewalls, and load balancing and with monitoring tools (Prometheus, Grafana, Datadog) to maintain system health
- Understanding of CI/CD tools (Jenkins, GitLab CI, GitHub Actions) to support deployment practices
- Bachelor’s degree in data science, Computer Science, Engineering, Mathematics or an equivalent combination of education, work, and/or military experience
What would be great to have:
- 2+ years’ experience in HashiCorp Vault and Terraform/Teleport
- 2 years’ experience in performance tuning/scalability best practices
#LI-RM1
R-10340720