About the company
Nexthink is the leader in digital employee experience management software. The company provides IT leaders with unprecedented insight allowing them to see, diagnose and fix issues at scale impacting employees anywhere, with any application or network, before employees notice the issue. As the first solution to allow IT to progress from reactive problem solving to proactive optimization, Nexthink enables its more than 1,200 customers to provide better digital experiences to more than 15 million employees. Dual headquartered in Lausanne, Switzerland and Boston, Massachusetts, Nexthink has 9 offices worldwide.
Responsibilities
- Serve as a core member of the Cloud Security team with significant influence on the direction, priorities, and execution of the cloud security program.
- Own, operate, maintain, and improve our FedRAMP cloud environment, ensuring it meets high standards for security, availability, compliance, and operational excellence.
- Design, implement, and maintain a secure, scalable, and resilient AWS cloud infrastructure, covering both the cloud platform and the applications running on it.
- Build and improve security controls across cloud resources, including networking, compute, storage, logging, monitoring, and IAM.
- Lead the hardening of AWS environments and Kubernetes-based platforms, applying security best practices and secure-by-default patterns.
- Drive the automation of security controls, operational processes, and compliance requirements to reduce manual effort and human error.
- Partner closely with SRE, platform, and engineering teams to ensure services are deployed and operated securely in highly regulated environments.
- Develop, maintain, and continuously improve incident response capabilities for cloud environments, including detection, containment, investigation, recovery, and post-incident analysis.
- Respond to security incidents, perform deep technical investigations, and drive remediation and long-term corrective actions.
- Proactively identify and mitigate security risks through threat-informed assessments, vulnerability management, and continuous cloud security reviews, including the use of tools such as CNAPP.
- Manage and improve security tooling and services such as SIEM, EDR, cloud-native security tooling, and monitoring platforms, while developing meaningful security and risk metrics.
- Contribute to the development and execution of our cloud security strategy, balancing business needs, engineering velocity, and regulatory obligations.
- Collaborate with engineering teams to understand system designs, guide secure architecture decisions, and help solve complex technical security problems.
- Contribute to cloud security education and training for engineering teams, helping raise the overall security maturity of the organization.
- Stay current on emerging cloud threats, AWS security capabilities, attacker techniques.