Wiz Administrator/Cloud Security Platform Engineer

Job Description

Company: Aavalar Consulting, Inc

Location: Buffalo Grove, US

Consultant’s Title: Wiz Administrator / Cloud Security Platform Engineer

Work Location: Illinois (100% Remote)

What Is the Anticipated Length/Scope of the Contract? Contract-to-hire.

Why Is There a Need for a Consultant/Contractor? To provide hands-on ownership and administration of the Wiz CNAPP platform, improve cloud security posture, tune findings, drive remediation, close coverage gaps, and implement automation and integrations.

– Administration and optimization of Wiz across AWS, Azure, Google Cloud, Kubernetes, and container environments.
– Cloud account, subscription, project, cluster, repository, and connector onboarding.
– Vulnerability and cloud risk remediation.
– Wiz API/GraphQL automation and integrations.
– ITSM, SIEM, Slack/email, CI/CD, IaC, and secrets-scanning integrations.
– Compliance reporting supporting PCI DSS, SOX ITGC, CIS Benchmarks, and internal security standards.

Responsibilities:

– Own the Wiz platform end-to-end, including connectors, RBAC, SSO/SCIM, sensors, admission controllers, registry connectors, platform health, upgrades, and feature enablement.
– Configure and tune Wiz alerts, policies, controls, severity definitions, SLAs, and escalation paths.
– Triage findings, eliminate false positives, assess exploitability and blast radius, and escalate material risks.
– Drive security findings through remediation by partnering with Cloud Engineering, DevOps, Infrastructure, IAM, and Application Development teams.
– Develop automation for ticket creation, notifications, tagging, reporting, bulk operations, and appropriate low-risk remediation.
– Build integrations using Wiz APIs and GraphQL.
– Integrate Wiz Code, IaC scanning, and secrets detection into source control and CI/CD pipelines.
– Produce executive and operational cloud security posture reporting.
– Maintain runbooks, triage procedures, remediation playbooks, compliance mappings, and audit evidence.

Role With the Group: Senior Individual Contributor / hands-on technical owner of the Wiz cloud security platform; no direct reports.

Required Skills

– 5+ years of experience in cloud security, cloud infrastructure engineering, security operations, or vulnerability management.
– 2+ years administering a CNAPP or CSPM platform; Wiz strongly preferred.
– Experience with at least two major cloud providers: AWS, Azure, and/or Google Cloud.
– Strong understanding of IAM, cloud networking, and native cloud security services.
– Ability to triage security findings and prioritize based on actual business and exploitability risk.
– Hands-on Kubernetes and container security experience.
– Scripting and automation using Python, PowerShell, or Bash.
– Experience working with REST and/or GraphQL APIs.
– Familiarity with Terraform and Infrastructure as Code.
– CI/CD pipeline integration experience.
– Strong communication skills and ability to influence cross-functional technical teams.

Desired Skills

– Direct Wiz administration experience, including sensors, automation rules, custom controls, and API usage.
– AWS, Azure, or GCP security certifications.
– CKS, CISSP, or GIAC Cloud Security certifications.
– PCI DSS and SOX ITGC experience.
– Experience integrating security tools with SIEM, SOAR, ITSM, and observability platforms.
– Retail, multi-site, or high-transaction e-commerce experience.
– DSPM and sensitive data discovery experience.

Selling Point of the Job: This is a highly visible, hands-on opportunity for a cloud security professional to become the primary owner of an enterprise Wiz environment. The consultant will have direct impact on reducing cloud risk, improving automation, influencing engineering teams, and maturing the organization’s overall cloud security posture.

Source: LinkedIn