remote
Platform Consultant - Technology Risk & Compliance - Allstate Insurance
Software Engineer
Lead technology risk and compliance initiatives for a large insurance platform, driving cloud security, governance, and DevSecOps practices across AWS, Azure, and GCP environments.
About the role
Key Responsibilities
- Assess and mitigate technology risks across the organization’s cloud and on‑prem environments.
- Develop and enforce security policies, standards, and controls aligned with regulatory requirements.
- Collaborate with platform engineering teams to embed security into CI/CD pipelines and infrastructure as code.
- Conduct security architecture reviews, penetration testing, and vulnerability assessments.
- Provide guidance on cloud security best practices for AWS, Azure, and GCP deployments.
Requirements
- 5+ years of experience in technology risk, compliance, or security engineering.
- Deep knowledge of cloud security frameworks (NIST, ISO 27001, SOC 2) and regulatory standards (GDPR, CCPA, PCI‑DSS).
- Hands‑on experience with AWS, Azure, and GCP security services and IaC tools (Terraform, CloudFormation).
- Strong understanding of DevSecOps practices and CI/CD security integration.
- Excellent communication skills and ability to influence cross‑functional teams.