Job offer
Senior Lead, Cyber Security Engineer
The Northern Trust is looking for a Senior Lead for Cyber Security Engineering in Minneapolis to be responsible for securing cloud environments (AWS, Azure, IBM) and managing IAM, SSO, and zero-trust architectures.
Tasks
- Senior Lead in Cyber Security Engineering, responsible for strengthening, improving, and managing company-wide data, accounts, and key roles for security key accounts.
- Application and verification of organizational and user roles via IBM, AWS Public Cloud, and Azure-related consoles.
- Ultimate responsibility for the Senior Lead and MDR and Incident Detection Engineers.
- Management of company-wide domains (Logon / Google, Admin - Non-Admin, etc.), Share, OneDrive/SharePoint, Box, and other SaaS and enterprise product services.
- Management and administration of log accounts for Mule and the public cloud, AWS, and OIDC federation with partner enterprise identities.
- Security audit for user accounts and role-based access / Role-Based Access Control (RBAC).
- Integration and creation of security account policies using SAML and SCIM for enterprise integration.
- Management of role assignments, including SSO for cloud accounts (from IBM) across multi-cloud and hybrid cloud environments.
- Access to the Azure app and the portal.
- Federation of AWS cross-tenant accounts for IAM accounts. All non-interactive tasks, performance monitoring.
- Assist the administrator in specifying AWS cloud security settings and defining Amazon Elastic Database (RDS) and infrastructure provisioning for the company.
- Cloud Audit Guidelines: Reports on the roles of enterprise, workstation, and account, as well as asset naming conventions.
- Management of Amazon/Google / AWS SSO using Directory Service memberships for your account platform.
- Granting administrator rights to identity and account administrators for the SSO environment and security.
- Creating and provisioning MDR accounts and ensuring that SSO has the appropriate permissions.
- Overseeing the review and approval of data security policies, as well as the configuration and provisioning of non-interactive task integration (Logon / Google) with SSO.
- Responsible for managing and securing various cloud environments, including IBM Public Cloud and Azure.
- Identifying, mitigating, and resolving security vulnerabilities in compliance with organizational security policies.
- Implementation and management of multi-factor authentication (MFA), single sign-on (SSO), and privileged access management (PAM) solutions.
- Operation of key and credential solutions, including Public Key Infrastructure (PKI) and OAuth.
- Implementation, configuration, and maintenance of zero-trust frameworks and architectures.
- Leadership in Incident Response and Security Operations.
- Support for Continuous Integration/Continuous Development (CI/CD) pipelines to ensure the security of applications and infrastructure.
- Development of scalable and secure authentication and integration solutions.
- Providing guidelines on security best practices for developers and system administrators.
- Monitoring and improving the security of cloud-based applications and systems.
- Security automation (e.g., using Ansible, Terraform, or other infrastructure-as-code tools).
- Monitoring and improving the security of cloud-based applications and systems.
Requirements
- Strong enterprise-level knowledge, including the SQL DMS platform.
- Extensive enterprise-level knowledge of AWS and Mule.
- A proven track record in the research and development of automation and workflows.
- Collaboration with Architects
Job details