[Remote] Business Security Consultant
Note: The job is a remote job and is open to candidates in USA. EY is a global leader in assurance, consulting, tax, and transaction services, dedicated to building a better working world. They are seeking a Business Security Consultant to enhance cloud security across a portfolio of applications hosted in Azure, focusing on the implementation of the Wiz CNAPP platform and ensuring compliance and risk reduction in cloud environments.
Responsibilities
- SME (subject matter expert) to mature/advance our cloud security posture using the Wiz CNAPP across the Azure cloud platform. Guide and help Integrating Wiz to drive risk-based remediation with product/DevOps teams and automate guardrails that keep our environment compliant and resilient
- Drive the implementation of existing and new features of Wiz and build the capabilities of CNAPP within EY
- Develop, tune, and enforce security policies, requirements, standards, and procedures for cloud environments and containerized workloads, including Kubernetes clusters setup, and orchestration solutions, emphasizing vulnerability reduction and compliance
- Collaborate with cross-functional teams to shift left (IaC scanning in CI/CD, approve/deny policies), integrate security best practices into the software development lifecycle (SDLC) and continuous integration/continuous deployment (CI/CD) pipelines
- Develop and implement security automation solutions to continuously monitor cloud environments for compliance, threats, and performance anomalies
- Automate ingestion of security defects and vulnerability findings to Jira/ServiceNow
- Conduct regular security assessments, vulnerability scans, and threat modeling for cloud environments. Identify, evaluate, and mitigate risks in cloud infrastructure using automated/customized methods
- Work with cross-functional teams, including security architects, engineers, developers and product owners to explore new ideas and develop innovative ways to automate, monitor, and improve security at scale across cloud platforms
- Work with Security Ops and Incident response teams to investigate and remediate security incidents, providing expertise on cloud-specific attack vectors and mitigation strategies
- Generate dashboards and executive metrics (risk reduction, SLA adherence, coverage) for assigned portfolio of business products and services. Report related security risks, incidents, and findings to leadership and relevant stakeholders
- Collaborate with stakeholders to define project scope, deliverables, and expectations, ensuring alignment with business objectives
- Identify gaps in existing security tools and services, and, when necessary, collaborate with development teams to create custom security solutions to protect the organization
Skills
- Bachelor's degree in Computer science, Information Security, or related field
- 8+years of experience working as a Cloud Security Engineer/Architect with Wiz (or similar CNAPP platforms and capabilities)
- Hands-on experience with Wiz (or similar CNAPP) capabilities at Enterprise level including – CSPM, CWPP, Vulnerability scanning, Compliance assessments, DevSecOps integration
- CI/CD familiarity (GitHub/GitLab/Azure DevOps), IaC (Terraform/CloudFormation)
- Scripting/automation (Rego/Python/TypeScript), APIs/webhooks, event pipelines
- Strong understanding of DevSecOps principles and practices
- Must possess excellent communication, presentation, and collaboration skills
- Frameworks: CIS Benchmarks, NIST 800‑53, 800‑190, ISO 27001/27002, SOC 2 and other industry standards
- Relevant security certifications such as CISSP or GIAC certs or Azure Security Engineer is a plus
- Bonus: data classification (GDPR/CCPA), Container/Kubernetes security (EKS/AKS)
Benefits
- Medical and dental coverage
- Pension and 401(k) plans
- A wide range of paid time off options
- Team-led and leader-enabled hybrid model
- Flexible vacation policy
- Time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being
Company Overview
Company H1B Sponsorship