1

Cloud Security Auditor Jobs (NOW HIRING)

Senior Full Stack Application Development Security Auditor Senior Full Stack Application ... The ideal candidate will feel comfortable working with both front-end, back-end and cloud-based ...

Senior Full Stack Application Development Security Auditor Senior Full Stack Application ... The ideal candidate will feel comfortable working with both front-end, back-end and cloud-based ...

Short Senior Full Stack Application Development Security Auditor who is passionate about designing ... The ideal candidate will feel comfortable working with both front-end, back-end and cloud-based ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

Knowledge of cloud security auditing * Experience with incident response and forensic investigations * Strong interpersonal and report-writing skills * Ability to lead and train teams in audit ...

... cloud, application, SaaS, and network environments. This is not a Security Auditor or GRC-focused role. The ideal candidate must have recent experience driving security architecture decisions ...

next page

Showing results 1-20

Cloud Security Auditor information

See salary details

$11K

$90K

$140.5K

How much do cloud security auditor jobs pay per year?

As of Jul 27, 2026, the average yearly pay for cloud security auditor in the United States is $89,997.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,000.00 and $130,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by Cloud Security Auditors in their daily work?

Cloud Security Auditors often navigate the complexities of rapidly evolving cloud technologies and multi-cloud environments, which can present challenges in keeping up with new risks, configuration settings, and regulatory requirements. They must thoroughly assess cloud architectures for vulnerabilities while balancing organizational needs for speed and flexibility. Additionally, auditors collaborate closely with IT, DevOps, and compliance teams to gather evidence and communicate potential improvements, sometimes facing resistance to change or difficulties in obtaining complete information. Overcoming these challenges requires ongoing learning, strong interpersonal skills, and the ability to adapt audit approaches to diverse technical environments.

What are the key skills and qualifications needed to thrive in the Cloud Security Auditor position, and why are they important?

To thrive as a Cloud Security Auditor, you need a strong understanding of cloud computing architectures, information security principles, risk assessment, and compliance frameworks, typically backed by relevant degrees or experience. Familiarity with cloud platforms like AWS, Azure, or Google Cloud, as well as certifications such as CCSK, CCSP, or AWS Certified Security, and tools for vulnerability assessment and audit reporting are commonly required. Strong analytical thinking, attention to detail, and effective communication skills help you interpret findings and convey recommendations to both technical and non-technical stakeholders. These competencies are vital for ensuring organizations meet rigorous security standards and maintain trust in cloud environments.

What is a Cloud Security Auditor job?

A Cloud Security Auditor is responsible for assessing and ensuring the security of cloud-based systems, applications, and services. They evaluate cloud environments for compliance with security standards, identify vulnerabilities, and recommend improvements to mitigate risks. Their role includes conducting audits, reviewing security policies, and working with teams to ensure data protection and regulatory compliance.

More about Cloud Security Auditor jobs
What cities are hiring for Cloud Security Auditor jobs? Cities with the most Cloud Security Auditor job openings:
What are the most commonly searched types of Cloud Security Auditor jobs? The most popular types of Cloud Security Auditor jobs are:
What states have the most Cloud Security Auditor jobs? States with the most job openings for Cloud Security Auditor jobs include:
What job categories do people searching Cloud Security Auditor jobs look for? The top searched job categories for Cloud Security Auditor jobs are:
Infographic showing various Cloud Security Auditor job openings in the United States as of July 2026, with employment types broken down into 89% Full Time, 8% Part Time, 2% Contract, and 1% Nights. Highlights an 87% Physical, 6% Hybrid, and 7% Remote job distribution, with an average salary of $89,997 per year, or $43.3 per hour.

Security Auditor

Kaav Inc.

Lansing, MI • On-site

Other

This job post has expired today. Applications are no longer accepted.


Job description

Senior Full Stack Application Development Security Auditor

Senior Full Stack Application Development Security Auditor who is passionate about designing and building secure platforms and applications through Dynamic, Static and Software Composition Analysis assessments.

This position is not a member of the Security Operations Center, rather it is dedicated to working with software development teams on secure coding practices.

The ideal candidate will feel comfortable working with both front-end, back-end and cloud-based application developers.

Partnering with distributed teams to help transform the way systems are built, secured, authorized and securely operated for continuous compliance and risk mitigation.

Specifically, this candidate will help lead efforts to implement security patterns and practices with orchestration and automation tools that automate the secure configuration, verification, compliance, and authorization of systems and their development.

They will be a key member of a team tasked with maturing the organization's secure software development practices.

Functional Knowledge:
  • Chrome/Firefox/Edge Development tools to see the request/response headers
  • Experience with Application Security scanning tools (SAST, DAST, SCA, ASOC, Container/Cloud) a must.
  • Experience with Coverity, BlackDuck, STRM, Fortify a plus
  • HTTP Request/Response headers for web and Restful API calls
  • Ability to explain in detail any of the OWASP top 10 vulnerabilities
  • Cross Site Scripting, Injection attacks, SSRF, CSRF, XML entity, etc.
  • API Security
  • JWT
  • OAUTH/OIDC/PKCE
  • Web, API replay attacks
  • High-level understanding of containers
  • Cloud development experience (Azure, AWS, GCP)

Minimum of 5+ years of total IT related experience.

  • 3+ years implementing/utilizing Federal, Industry and Open-Source Security Guidance and Secure Coding Practices (OWASP Top 10, SANS, CERT, CWE Top 25, Critical Security Controls, Cloud Security Alliance, SafeCode etc.)
  • 3+ years with both compiled and interpreted languages such as Angular, React, Node.js, Java, Spring Boot, IBM WebSphere App server, Oracle JBoss, .NET stacks
  • 3+ years with networking, infrastructure, secure application development and security automation (DevSecOps).
  • 3+ years of hands-on knowledge building and deploying secure complex distributed web and mobile applications.