AWS Lambda, Amazon Web Services (AWS), Applications Security, Artificial Intelligence (AI), Automation, Cloud Applications, Cloud Computing, Computer Security, Customer/Client Research, Establish Priorities, Identify Issues, Information/Data Security (InfoSec), Penetration Testing, Problem Solving Skills, Protective Services, Secure/SSH File Transfer Protocol (SFTP), Security Analysis, Snowflake Schema, Vulnerability Scanners
#W2 Role
Job Title- Data Platform and Security Engineer
Location: Malvern, PA
Job Description
We are looking for a Data Platform and Security Engineer to support the hardening of client data platforms and code environments against external threats and AI-driven attacks. This role will focus on shift-left security, cloud security automation, vulnerability management, and accelerating remediation using automation and AI-assisted tools.
Key Objectives
1. Prevent vulnerabilities in code
- Embed security controls earlier in data platform development.
- Identify and address issues before they reach production.
- Support shift-left security practices across applications and cloud infrastructure.
2. Accelerate remediation
- Help manage the growing volume and speed of vulnerabilities driven by AI tools.
- Improve the speed and quality of vulnerability remediation.
- Automate security processes where possible.
Key Responsibilities
- Harden build and run environments for data platforms with external threat exposure.
- Identify, prioritize, and remediate vulnerabilities across applications and cloud infrastructure.
- Support automation efforts to improve security remediation speed.
- Work with cloud data platforms and security teams to strengthen platform controls.
- Support vulnerability scanning, analysis, and remediation activities.
- Implement and maintain cloud security and governance controls.
- Support secure data sharing and enterprise file transfer solutions.
Required Skills
- Strong AWS security and automation experience.
- Strong understanding of AWS security and governance services, including:
- IAM
- Secrets Manager
- KMS
- Service Control Policies
- Experience with infrastructure automation and serverless frameworks, including:
- CloudFormation
- Lambda
- Step Functions
- Experience with security scanning and analysis tools such as:
- SAST
- Snyk
- EchoAI
- AI-assisted penetration testing tools
- Proven experience identifying, prioritizing, and remediating security vulnerabilities.
- Experience with data sharing platforms and file transfer solutions.
Specific Experience
- Snowflake data sharing
- Enterprise file transfer solutions
- SFTP
- Amazon Transfer Family, nice to have
- DataSync
Storage Gateway