Cloud Security & DevSecOps Consultant (AWS)

<p><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b><span style="font-size:16pt;"><span style="line-height:115%;">Cloud Security & DevSecOps Consultant (AWS)</span></span></b></span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance is looking for an Cloud Security & DevSecOps Consultant (AWS) to join our team as a full-time employee in our work remotely. This person is responsible for the end-to-end planning, building, and deploying of software systems. He/she will be able to drive the programming of well-constructed, testable code. </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">As an Cloud Security & DevSecOps Consultant (AWS) you will implement technical solutions as part of a team for customer engagements. This role requires strong teamwork, communication, patience and organization skills needed to drive customer success.    </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">At Vertical Relevance we deliver with excellence through teamwork, automating everything, constantly learning and taking ownership for the outcomes our customers experience. Are you ready to join the team? </span></span></span><br><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Key Responsibilities</b></span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Cloud Strategy & Advisory</b></span></span></span></p><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Partner with customers to shape their cloud adoption journey, providing both technical and strategic guidance</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design, plan, and implement secure cloud architectures aligned with business and compliance requirements</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Serve as a trusted advisor and deep technical resource to customers</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security Architecture & Automation</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and implement automated security and compliance solutions in AWS</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop and maintain Infrastructure-as-Code (IaC) solutions using Terraform</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build and operate CI/CD pipelines (GitHub Actions, Jenkins, CircleCI) for security automation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop Python-based automation for provisioning, compliance enforcement, and remediation</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Governance, Risk & Compliance</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement AWS Control Tower guardrails and Service Control Policies (SCPs)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Configure AWS Config rules with automated remediation workflows</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop and enforce policy-as-code frameworks (preventative, detective, responsive controls)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Align implementations with industry standards such as CIS AWS Foundations</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security Monitoring & Analytics</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and deploy centralized security monitoring and analytics frameworks</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement AWS-native security services, including:</span></span></span></span><ul style="list-style-type:circle;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Security Hub (centralized findings aggregation)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">GuardDuty (threat detection)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Macie (sensitive data discovery)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Inspector (vulnerability management)</span></span></span></span></li></ul></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Enable observability and auditing via CloudTrail, VPC Flow Logs, and CloudWatch</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Platform Engineering & Framework Development</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build self-service account provisioning frameworks using CI/CD pipelines</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop scalable landing zone and account baseline architectures</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create reusable Terraform modules and automation frameworks</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design reference architectures and implementation playbooks</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Customer Enablement & Thought Leadership</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create high-quality technical content (playbooks, runbooks, white papers, reference architecture)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Translate customer needs into actionable solutions and measurable outcomes</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Contribute to blogs, case studies, and internal knowledge sharing</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Provide feedback to influence product roadmaps and service enhancements</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Sample Engagement Activities</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Develop self-service AWS account provisioning frameworks with automated pipelines</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement security baselines and SCPs aligned to compliance requirements</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Build policy-as-code frameworks for automated governance enforcement</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Design and deploy centralized security analytics dashboards</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Create playbooks and runbooks with supporting code examples</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Implement enterprise-scale security controls and monitoring solutions</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Required Qualifications</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Proven experience architecting and operating AWS-based security and compliance solutions</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Hands-on experience with Terraform for infrastructure and security control implementation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Strong knowledge of AWS Control Tower, Organizations, and Service Control Policies (SCPs)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience configuring AWS Config rules and automated remediation</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience building CI/CD pipelines (GitHub Actions, Jenkins, or CircleCI)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Proficiency in Python for automation and scripting</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience working in customer-facing technical roles</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Must be authorized to work in the United States without sponsorship</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Preferred Qualifications</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">AWS Security Specialty certification</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience with AWS Outposts environments</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Experience supporting large-scale enterprise cloud migrations</span></span></span></span></li></ul><div align="center" style="text-align:center;margin-bottom:11px;"><hr align="center" size="2" width="100%"></div><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Technical Environment</b></span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Core Technologies</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">AWS (Control Tower, Config, Organizations, Security Hub, GuardDuty, Macie, Inspector)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Terraform (Infrastructure as Code)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">CI/CD (GitHub Actions, Jenkins, CircleCI)</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Python (automation and scripting)</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>AWS Services</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Compute:</b> EC2, Lambda, EKS, ECS</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Storage:</b> S3</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Networking:</b> VPC, Route53, API Gateway, Direct Connect</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Security:</b> IAM, KMS, Secrets Manager, WAF, Shield, Firewall Manager</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Governance:</b> CloudTrail, CloudWatch, Systems Manager, Service Catalog</span></span></span></span></li></ul><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;"><b>Tools & Platforms</b></span></span></span><ul style="margin-bottom:11px;"><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Git, GitLab, Jenkins</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vault, Splunk</span></span></span></span></li><li style="margin-bottom:11px;"><span style="font-size:12pt;"><span><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Security tools: OWASP, Palo Alto, Trend Micro, Aqua, Twistlock, Fortify</span></span></span></span></li></ul><p><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance was founded to help business leaders drive value through the design and delivery of effective transformation programs across people, processes, and systems. Our mission is to help firms at any stage of their journey develop custom solutions for success and growth. We provide a full range of services from strategy and design through to implementation and training. Our collective industry expertise is our greatest asset - our professionals have an average of 20+ years’ experience within Financial Services, across Wealth Management, Asset Management, Insurance, and Banking. Within our Customer Experience practice, we add complementary industry expertise (technology and media) synergizing the most relevant and successful customer trends. We focus wholly on your success by first rigorously assessing your business and technology challenges, and then right-sizing solutions that provide a meaningful ROI. With our industry experts hitting the ground running and focusing on nimble, quality delivery, we can see rapid, tangible improvements with our clients in productivity and effectiveness. When it makes sense for your company, we leverage our product partnerships in the areas of CRM, Sales Acceleration, Predictive Analytics, Digital Knowledge Management, and Cloud Transformation. </span></span></span><br><span style="font-size:12pt;"><span style="line-height:115%;"><span style="font-family:Aptos, sans-serif;">Vertical Relevance is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. </span></span></span><br> </p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...