What You Will Do
You will work with the core hosting group and help design the next generation hosting platform on cloud. The responsibilities include designing and developing a roadmap to host millions of websites on the platform via shared hosting, vps and dedicated hosting products. Which will require knowledge of the following tools and technologies.
- Contribute to the design & architecture for the next generation platform for hosting.
- Define best practices for OS security patches and automate it for the servers which host customer websites.
- Define best practices for Software versions and manage their upgraded life cycles.
- Write automation scripts to manage workloads in cloud environments for managing resources based on the customer's need and use.
- Lead the security efforts in the design of a scalable, cost-effective, secure public cloud environment for OCI, AWS, GCP, and Azure
- Define cloud security policy and standards for application development, infrastructure, and
- process management in conjunction with on premise policy and standards
- Design and build a secure deployment process for development and infrastructure teams, including code management, and a DevSecOps full lifecycle SDLC
- Help design key, secrets, and certificate management for a large enterprise for full life-cycle
- management such as TTL and rotations of all forms of secrets
- Assist in evaluating, planning, configuration, and implementation of new/existing security applications/tools
- Systematically address application security issues and develop secure coding practices for multiple development teams
- Integration of application authentication, encryption, authorization, and access control
- Understanding of controls (e.g. access control, auditing, authentication, encryption, integrity, physical security, and application security)
Who You Are
- Must be well versed in operating systems such as Linux as well as Windows environments,
- active Directory, encryption schemas and algorithms, various authorization and authentication mechanisms/software, network monitoring and sniffing, DNS, TCP/IP networks, Threat and vulnerability management
- Experience with vulnerability scanners, vulnerability management systems, patch management and host-based security systems
- Knowledge of networking and the common network protocols
- Demonstrated ability to create scripts to automate processes
- Experience with common infrastructure systems that can be used as enforcement points
- Have knowledge to develop infrastructure as code ( Terraform etc )
- Building Effective Relationships: Develop and use collaborative relationships to facilitate the accomplishment of work goals