Enterprise Cloud Security Architect
Durham, NC - USA (Strickland Bldg), United States
Full Time Senior-level / Expert USD 101K - 240K
The Clorox Company
Clorox is the place that’s committed to growth – for our people and our brands. Guided by our purpose and values, and with people at the center of everything we do, we believe every one of us can make a positive impact on consumers, communities, and teammates. Join our team. #CloroxIsThePlace
Your role at Clorox:
Are you passionate about safeguarding cloud environments and ensuring data security? Join our team as a Cloud Security Architect! In this pivotal role, you’ll design, implement, and maintain cutting-edge security systems for our cloud-based infrastructure. From assessing current security measures and creating robust firewalls to enhancing network security and encrypting data, you’ll be at the forefront of our security strategy. Plus, you’ll ensure we stay compliant with all regulations by continuously updating our security protocols. If you’re ready to take on the challenge of protecting our cloud, we want to hear from you!In this role, you will:
Designing cloud security architecture: Designing and implementing a comprehensive security strategy and plans for the cloud environment, considering data protection, network security, identity and access management (IAM), and threat mitigation strategies that meet Clorox’s specific needs.
Reference Architecture Management: Develop and maintain cloud security architecture artifacts (e.g., models, templates, standards, and procedures) that can be used to leverage security capabilities in projects and operations.
IAM implementation and management: Designing and managing user access controls, including multi-factor authentication, role-based access, and least privilege principles to protect sensitive data.
Security assessment and vulnerability management: Regularly evaluating cloud systems for vulnerabilities, coordinating penetration testing, and identifying potential security risks to implement necessary remediation measures.
Data encryption: Designing and managing robust encryption mechanisms for data at rest and in transit to protect sensitive information across the cloud environment.
Network security configuration: Designing and managing cloud network security settings, including firewalls, security groups, and network segmentation to control traffic and prevent unauthorized access.
Compliance management: Ensuring adherence to relevant industry regulations and compliance standards like SOX, GDPR, HIPAA, and PCI DSS by implementing appropriate security controls.
Security incident response: Developing and maintaining incident response plans to effectively detect, contain, and remediate security breaches in the cloud.
Security automation and monitoring: Utilizing cloud-based security tools to automate security tasks like vulnerability scanning, log management, and threat detection, enabling proactive monitoring of the cloud environment.
Define and report on Metrics and Key Performance Indicators: Regularly monitor effectiveness and return on investment on security practices and make recommendations for improvements.
Security awareness training: Educating cloud users on best practices for data protection, password management, and identifying potential security threats.
Collaboration with other teams: Working closely with other IT professionals, including cloud architects, network engineers, developers, and system administrators to integrate security considerations into cloud applications and infrastructure. Engage with the Security Operations team to ensure appropriate policies and standards are kept up to date with security requirements and approach.
Staying up to date on the latest cloud security technologies, trends, and best practices.
What we look for:
- 5 plus years of cloud security experience, focusing on designing and implementing secure cloud computing solutions.
- A strong understanding of cloud computing technologies, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS).
- Knowledge of security frameworks such as ISO 27001, NIST Cybersecurity Frameworks, and CIS Controls.
- Familiarity with cloud security platforms like Microsoft Azure, Amazon Web Services, and Google Cloud Platform.
- Certifications such as Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), Certified Secure Software Lifecycle (CSSLP) or Certified Cloud Architect (CCA) are preferred.
- Strong analytical and problem-solving skills, with an ability to think strategically and tactically about complex cloud security issues.
- Excellent communication skills, including communicating complex technical concepts to non-technical stakeholders.
- The ability to work well in a team environment and collaborate effectively with other IT professionals.
- #LI-HYBRID
Workplace type:
We seek out and celebrate diverse backgrounds and experiences. We’re looking for fresh perspectives, a desire to bring your best, and a non-stop drive to keep growing and learning.
At Clorox, we have a Culture of Inclusion. We believe our values-based culture connects to our purpose and helps our people be the best versions of themselves, professionally and personally. This means building a workplace where every person can feel respected, valued, and fully able to participate in our Clorox community. Learn more about our I&D program & initiatives here.
[U.S.]Additional Information:
At Clorox, we champion people to be well and thrive, starting with our own people. To help make this possible, we offer comprehensive, competitive benefits that prioritize all aspects of wellbeing and provide flexibility for our teammates’ unique needs. This includes robust health plans, a market-leading 401(k) program with a company match, flexible time off benefits (including half-day summer Fridays depending on location), inclusive fertility/adoption benefits, and more.
We are committed to fair and equitable pay and are transparent with current and future teammates about our full salary ranges. We use broad salary ranges that reflect the competitive market for similar jobs, provide sufficient opportunity for growth as you gain experience and expand responsibilities, while also allowing for differentiation based on performance. Based on the breadth of our ranges, most new hires will start at Clorox in the first half of the applicable range. Your starting pay will depend on job-related factors, including relevant skills, knowledge, experience and location. The applicable salary range for every role in the U.S. is based on your work location and is aligned to one of three zones according to the cost of labor in your area.
–Zone A: $121,900 - $240,100–Zone B: $111,700 - $220,100–Zone C: $101,600 - $200,100All ranges are subject to change in the future. Your recruiter can share more about the specific salary range for your location during the hiring process.This job is also eligible for participation in Clorox’s incentive plans, subject to the terms of the applicable plan documents and policies.
Please apply directly to our job postings and do not submit your resume to any person via text message. Clorox does not conduct text-based interviews and encourages you to be cautious of anyone posing as a Clorox recruiter via unsolicited texts during these uncertain times.
To all recruitment agencies: Clorox (and its brand families) does not accept agency resumes. Please do not forward resumes to Clorox employees, including any members of our leadership team. Clorox is not responsible for any fees related to unsolicited resumes.
Tags: Automation Azure C CCSP CISSP Cloud Compliance CSSLP Encryption Firewalls GCP GDPR HIPAA IaaS IAM Incident response ISO 27001 Monitoring Network security NIST PaaS PCI DSS Pentesting SaaS Security assessment Security strategy SOX Strategy Threat detection Vulnerabilities Vulnerability management
Perks/benefits: 401(k) matching Career development Competitive pay Fertility benefits Flex hours Flex vacation Health care Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.