Threat Modeler
Job Description
Must Have Technical/Functional Skills
Associate level cloud certification
Qualifications: BACHELOR OF COMPUTER SCIENCE
Must Have Technical/Functional Skills
- IT experience minimum of 6 years with minimum of 4 years Cyber-Security/Information Security – must
- Threat Modeling (STRIDE, PASTA, Attack trees, tooling, Att&ck) – must.
- Identifying vulnerabilities using CWE or OWASP.
- Experience working in a cyber-security role - must.
- Security practices pertaining to authentication, authorization, logging/monitoring, encryption, infrastructure security,
- Operating systems and their hardening.
- Development concepts (such as: CICD, Pipelines, SDLC).
- Scripting languages, Infrastructure as Code (Terraform, CloudFormation) – must.
- Cloud Development Kit (CDK), GitOps.
- Operating in a DevOps / agile team structure.
- Jira or other ticketing systems – must.
- Understanding of docker/K8S/serverless/helm.
- Support or perform pen testing.
- Snowflake/MongoDB/Terraform Cloud/GitHub/Databricks.
- Design and review technical architectures – must.
- Threat Modeling using a documented process.
- Development of automation tools as required.
- Maintain a high standard of work in identifying threats and specifying mitigating controls.
- Attending to the lifecycle of identified threats and controls.
- Delivery of threat models and supporting tasks within existing timeframes.
- Provide feedback, support, and improvements to the existing threat modeling process.
- Present work to seniors, the team, and other technical teams.
- Work with little supervision to complete work
Associate level cloud certification
- AWS Certified Developer, AWS Certified Solutions Architect, AWS Certified SysOps Administrator
- CompTIA Cloud+
- Google Associate Cloud Engineer or other professional GCP certification
- Oracle Cloud Infrastructure Certified Architect Associate, Oracle Cloud Infrastructure Certified Cloud Operations Associate
- Microsoft Certified: Azure Developer Associate
- ISACA Certified Information Systems Auditor (CISA)
- GIAC Security Essentials (GSEC)
- ISC2 Systems Security Certified Practitioner (SSCP)
- CompTIA CySA+
- Microsoft Certified: Security Operations Analyst Associate; Information Protection Administrator A ssociate
Qualifications: BACHELOR OF COMPUTER SCIENCE
Recommended Jobs
SOC Analyst
Posted 21 minutes ago
Cybersecurity Engineer
Posted 21 minutes ago
OT Security Analyst
Posted 21 minutes ago
Cyber Security Engineer (Contingent Upon Award)
Posted 45 minutes ago
IT Systems Security Engineer
Posted 45 minutes ago

