See all roles

Senior Cloud Security Engineer - Remote Opportunity at Humana: Securing Multi-Cloud Environments with Expertise in GCP, Azure, and Prisma Cloud

Work from home Full-time role Hiring

Join Humana's Team of Innovators: Putting Health First through Cutting-Edge Cloud Security At Humana, we're on a mission to make it easier for millions of people to achieve their best health. As a leading healthcare company, we're committed to delivering exceptional care and service to our customers. To support this goal, we're seeking a highly skilled Senior Cloud Security Engineer to join our remote team. As a Senior Cloud Security Engineer, you'll play a critical role in ensuring the security and compliance of our multi-cloud environments, leveraging your expertise in GCP, Azure, and Prisma Cloud to drive innovation and excellence.

About the Role

As a Senior Cloud Security Engineer at Humana, you'll be responsible for designing, implementing, and maintaining cloud security policies and controls across our GCP and Azure environments. You'll work closely with cross-functional teams to automate security controls, minimize threats and vulnerabilities, and ensure compliance with regulatory requirements. This is a senior-level role that requires strong technical expertise, leadership skills, and the ability to drive strategic initiatives.

Key Responsibilities

  • Deploy and provide operational support for hierarchical NGFW policies in GCP using security tags, and automate configurations using Terraform and DevOps principles.
  • Manage and troubleshoot Azure Network Security Groups (NSGs) at scale, using Terraform to automate deployment, updates, and scaling of security rules across multiple environments.
  • Ensure all infrastructure changes are deployed through CI/CD pipelines using Terraform modules, following best practices for DevSecOps.
  • Develop and implement security policies, standards, and procedures for cloud-based applications and infrastructure employing Prisma Cloud's comprehensive security solutions.
  • Integrate robust code security measures and scanning capabilities into CI/CD pipelines and other cloud workflows using Infrastructure as Code (IaC).
  • Implement and manage enterprise security policies using Prisma CSPM's advanced capabilities, including preventive guardrails and automated remediations.
  • Leverage IaC and CI/CD to seamlessly deploy, patch, and upgrade Prisma Cloud and cloud-based security systems.
  • Configure vulnerability items, misconfigurations, and other alerts in Prisma Cloud, actively assisting stakeholders with timely remediation efforts.
  • Assist the SOC and Cyber Defense & Response Team during security incidents, involving timely configuration changes to Prisma and frequent participation on major incident bridges.
  • Manage user access in Prisma portal based on least privilege roles, and provide operations training and support, as needed.
  • Participate in a 24/7 on-call rotation to ensure rapid incident response, maintaining operational integrity and minimizing downtime across enterprise systems.

Essential Qualifications

To succeed in this role, you'll need:

  • A Bachelor's Degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 7+ years of experience supporting and implementing multi-cloud security solutions with a focus on GCP and Azure.
  • 3+ years of direct, hands-on experience with GCP network access control and Azure NSGs, leveraging IaC automation (Terraform) for efficient and secure cloud operations.
  • Proficiency in deploying and managing NGFW policies using security tags and hierarchical firewall rules within GCP.
  • Strong ability to manage and troubleshoot Azure NSGs, leveraging Terraform for automation and scaling.
  • Experience implementing security policies via IaC using Terraform and managing deployments through Azure DevOps (ADO) and GitHub Actions.
  • Expertise in DevSecOps and shift-left principles, actively ensuring security risks and misconfigurations are addressed early in the development process.
  • Ability to work in a 24x7 on-call rotation, triage incidents, and participate in incident bridges with senior leadership teams (SLT).
  • Proven experience in incident response and security operations, including assisting the SOC during critical events.
  • Capable of providing training and guidance to team members on cloud security best practices.

Preferred Qualifications

To take your application to the next level, consider the following preferred qualifications:

  • Certification in Prisma Certified Cloud Security Engineer (PCCSE) and/or Palo Alto Networks Systems Engineer – Prisma Cloud Associate.
  • Additional certifications such as CISSP, CCSP, Security+, or relevant tracks for Azure and GCP.
  • Advanced experience with Terraform and managing large-scale IaC automation through CI/CD pipelines.
  • E

Apply tot his job Apply To this Job

You might like