Public Cloud Security Engineer
Listed on 2026-02-07
-
IT/Tech
Cybersecurity, Security Manager
Eligibility:
Ability to meet FBI CJIS background check and clearance requirements. U.S. Citizen work authorization required.
Texas (Remote / Hybrid, subject to contract requirements)
Time Frame Looking to OnboardMay 2026
Role OverviewThe Public Cloud Security Engineer will support the client’s Public Cloud Manager by designing, implementing, and operating security controls across state public cloud environments. This role focuses on cloud-native and third-party security platforms, with deep hands‑on responsibility for Palo Alto Networks Panorama / Strata Cloud Manager and Crowd Strike Falcon Complete to ensure compliance, threat prevention, and continuous monitoring across multi‑agency workloads.
The role requires experience operating within government‑regulated environments, supporting secure cloud adoption while aligning with client standards, security policies, and compliance frameworks.
Key Responsibilities Cloud Security Operations- Support security operations for the client’s public cloud environments (AWS, Azure, GCP as applicable).
- Implement and manage network and endpoint security controls aligned with the client’s security standards.
- Collaborate with client stakeholders, cloud platform teams, and agency security teams.
- Administer Palo Alto Panorama for centralized firewall policy management.
- Manage and optimize Strata Cloud Manager for cloud‑delivered security and visibility.
- Design, deploy, and maintain firewall rules, security policies, NAT, and threat prevention profiles.
- Perform policy audits, tuning, and optimization to meet compliance and performance requirements.
- Troubleshoot connectivity, security events, and policy enforcement issues.
- Administer and support Crowd Strike Falcon Complete across cloud and hybrid workloads.
- Monitor endpoint alerts, incidents, and detections in coordination with SOC teams.
- Support incident response activities including containment, remediation, and root‑cause analysis.
- Ensure endpoint coverage, sensor health, and compliance reporting.
- Assist with threat hunting and security posture improvements.
- Support compliance with the client’s security controls, policies, and reporting requirements.
- Assist with audits, assessments, and security documentation.
- Maintain security baselines and standard operating procedures (SOPs).
- Ensure alignment with frameworks such as NIST, CIS, and state‑specific security mandates.
- Act as a security liaison between cloud platform teams, SOC, and client stakeholders.
- Provide operational metrics, dashboards, and executive‑level security reports.
- Participate in change management, incident reviews, and security planning sessions.
- Palo Alto Networks Panorama administration (required)
- Palo Alto Strata Cloud Manager experience (required)
- Crowd Strike Falcon Complete administration and incident response (required)
- Public cloud security experience (AWS and/or Azure preferred)
- Network security concepts: firewalls, VPNs, routing, segmentation
- Endpoint security and EDR/XDR operations
- Security logging, alerting, and incident response workflows
- 5+ years of experience in security engineering and/or cloud security roles
- Hands‑on experience securing cloud‑native and hybrid workloads
- Experience working with SOC teams and managed security services
- Experience supporting government, public sector, or regulated environments
- Familiarity with client’s security policies and compliance requirements
- Cloud security certifications (AWS Security Specialty, Azure Security Engineer, etc.)
- Palo Alto certifications (PCNSA, PCNSE)
- Crowd Strike certifications
- Experience with compliance frameworks (NIST 800‑53, CIS, ISO 27001)
- Strong communication skills for technical and non‑technical audiences
- Ability to work in structured, compliance‑driven environments
- Detail‑oriented with strong documentation skills
- Ability to collaborate across agencies, vendors, and internal teams
- Competitive salary and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).