Job offer
Senior Lead, Cloud Security Engineering
Northern Trust is looking for a Senior Lead for Cloud Security Engineering in Chicago to design security measures for Azure and AWS and implement Infrastructure-as-Code using Terraform. The position requires at least 8–12 years of IT experience, as well as expertise in cloud security principles and DevOps tools.
Responsibilities
- Design, implement, and support security measures for cloud platforms (third-party, open-source, multi-tenant), with a specific focus on Azure and AWS
- Develop PaC and IaC using Terraform, while ensuring that security policies and procedures align with industry-standard frameworks such as CIS and NIST 800-53
- Use and implement CISM tools such as Wiz and Microsoft Defender for Cloud to continuously assess, monitor, and enforce security controls
- Work closely with security champions in various business units, providing guidance and assessing their specific security needs
- Contribute to the cloud security roadmap to further enhance cloud security practices
- Conduct regular security assessments, audits, and reviews of cloud configurations
- Investigate and respond to security incidents, conduct root cause analysis, and implement corrective actions
- Mentor junior team members
Skills
- At least 3 years of experience working in the public cloud in an engineering or development role
- At least 3 years of experience working as an engineer, developer, or architect in information technology, preferably in cybersecurity, and at least 8–12 years of total experience in IT.
- Strong expertise in Infrastructure-as-Code (IaC) using Terraform
- Proficiency in Python or familiarity with Python-based DevOps tools and automation frameworks
- Experience with Git-based version control, CI/CD processes, and technologies (e.g., GitHub Actions, GitHub Package Repository)
- A deep understanding of cloud security principles and the integration of security into development workflows
- Practical knowledge of cloud infrastructure (AWS, Azure, or GCP) and cloud-native architecture
- Experience with privileged access management and identity systems (e.g., Azure Entra ID, AWS IAM, Okta, Ping) is a plus
- Hands-on proficiency with integrated testing tools
- Effective written and verbal communication skills to collaborate with cross-functional teams, including executives, consultants, FPOO, and FPOC
- Desired certifications, such as the Azure Security Engineer Associate certification and the AWS Certified Security – Specialty certification
Salary Range
- $114,500 – 194,700 USD
Job details