Under limited general direction, supports the ongoing evolution of Recology’s technology landscape, with an emphasis on expanding and maturing security capabilities across cloud-based platforms while maintaining strong protections across existing systems.
This position will be hybrid, coming into the office three days per week, and working from home two days per week.
-
Designs, implements, and manages security controls across Recology’s cloud environments (Azure, AWS, GCP), ensuring secure configurations, access controls, and compliance with company standards.
-
Supports the organization’s transition from on-prem infrastructure to cloud platforms by embedding security into architecture, migration, and deployment processes.
-
Establishes and maintains cloud security baselines, guardrails, and configuration standards (CSPM, identity, networking, and data protection).
-
Configures and manages native cloud security services (Microsoft Defender for Cloud, Azure Security Center, AWS Security Hub, etc.).
-
Acts as a cloud security SME supporting IT and engineering teams through design reviews, threat modeling, and security validation.
-
Partners with infrastructure, application, and data teams to integrate security into system design and project delivery.
-
Identifies and remediates security gaps in cloud and hybrid architectures.
-
Implements and manages secure identity and access controls using Azure AD and related technologies (RBAC, Conditional Access, least privilege principles).
-
Supports the design and implementation of identity strategies across cloud and on-prem environments.
-
Develops and enhances threat detection capabilities across cloud and enterprise environments using SIEM and cloud-native telemetry.
-
Participates in incident response activities, including investigation, containment, and post-incident reviews.
-
Builds and maintains automation workflows for security monitoring, alerting, and response.
-
Improves security processes through scripting and integration with existing tools and platforms.
-
Develops and track KPIs and metrics to measure cloud security posture and program effectiveness.
-
Supports security audits and ensure compliance with regulatory frameworks including NIST CSF, PCI DSS, ISO 27001, and CCPA.
-
Develops and maintain cloud-specific security standards, procedures, and documentation
-
Contributes to vulnerability management and risk remediation efforts across cloud and enterprise systems.
-
Works closely with IT, Security, and business stakeholders to align security initiatives with organizational goals.
-
Provides guidance on emerging cloud threats, risks, and best practices.
-
Supports disaster recovery and business continuity planning for cloud systems.
-
Other duties as assigned.
-
10+ years of progressive experience in information security or cybersecurity, with hands-on experience securing Azure cloud environments and enterprise infrastructure.
-
5+ years of experience with GCP, AWS, Azure.
-
Experience operating and deploying tools within regulatory frameworks such as NIST CSF, PCI DSS, ISO 27001, and CCPA.
-
Strong technical experience with cloud security controls, identity and access management, endpoint security, and device compliance
-
Proven ability to collaborate across IT operations, engineering, and business teams to embed security into system design, implementation, and ongoing operations
-
Experience with vulnerability management, incident response, and threat detection
-
Strong analytical and problem-solving skills with the ability to translate risk into actionable recommendations
-
Experience supporting cloud migrations or transformation initiatives
-
Familiarity with security tooling such as SIEM, EDR, CSPM, and IAM platforms
-
Experience with scripting or automation (PowerShell, Python, etc.)
-
Customer-focused mindset with a commitment to delivering high-quality service and solutions.
-
Bachelor’s degree in Information Security, Computer Science, Information Technology, or a related field, or equivalent practical experience in cybersecurity and cloud security roles preferred.
-
High School Diploma or GED required.
-
An ecologically innovative company that finds and mentors people committed to protecting the environment and sustaining our communities.
-
The largest employee-owned resource recovery company in the industry with terrific benefits to help you prosper.
-
A creative and caring culture that values community, diversity, altruism, accountability, collaboration, and learning by doing.
-
An inspired company mission driven to use and return resources to their best and highest use through the practice of the 4R’s: Reduce, Re-use, Recycle, and Recologize.
-
Distinct professional challenges to connect with, care for, and grow community that sees a world without waste.
-
Paid time off and paid holidays.
-
Health and wellness benefits including medical, dental, and vision.
-
Retirement plans (Employee Stock Ownership Plan, 401(k) with match).
-
Annual wellness incentives.
-
Employee Assistance Program (EAP).
-
Educational assistance.
-
Commuting benefits.
-
Employee referral program.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this job; and pursuant to applicable law, we will consider for employment qualified applicants with criminal records. It is important that you provide accurate information on the job application, inaccurate information may cause delays in the processing of your application and/or may disqualify you as a candidate.
Recology is an equal opportunity employer committed to supporting an inclusive work environment where employees are valued, heard, and provided development opportunities. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, citizenship, disability, protected veteran status, or any other basis that is prohibited by law.
This description is not intended and should not be construed to be an exhaustive list of all responsibilities, skills, effort, work conditions, and benefits associated with the job.