JOB SUMMARY
The Cloud Security Engineer will be responsible for embedding security controls into cloud infrastructure and DevOps pipelines to ensure secure, compliant, and resilient deployments across multi-cloud environments. This role focuses on implementing cloud security best practices, automating security processes, and integrating security into CI/CD pipelines. The engineer will collaborate with cybersecurity leadership, cloud engineering, platform engineering, and development teams to design and maintain secure DevSecOps practices within regulated financial environments.
Location
Irvine, CA / San Antonio, TX / New York, NY (Hybrid)
Experience
5+ Years
Key Responsibilities
โข Develop Cloud Security runbooks and blueprints for sanctioned cloud services such as S3, Lambda, and RDS.
โข Design and implement cloud security guardrails using Cloud Security Posture Management (CSPM) tools.
โข Implement security controls within CI/CD pipelines using tools such as Harness and GitHub.
โข Develop and maintain Infrastructure as Code (IaC) using Terraform and AWS CloudFormation.
โข Integrate automated security testing and controls within the Software Development Life Cycle (SDLC).
โข Collaborate with cloud engineering teams to ensure secure deployment and configuration across AWS and Azure environments.
โข Develop automation scripts using Python for security monitoring, compliance validation, and remediation activities.
โข Perform security reviews, vulnerability assessments, and compliance checks on cloud services and cloud-native applications.
โข Monitor cloud security alerts and respond to incidents affecting cloud infrastructure and DevOps pipelines.
โข Stay updated on emerging cybersecurity threats, vulnerabilities, and regulatory compliance standards relevant to financial services.
Required Skills & Experience
โข 5+ years of experience in Cloud Security Engineering, DevSecOps, or related cybersecurity roles.
โข Strong hands-on experience with AWS and/or Azure security services.
โข Proficiency in Python scripting for automation and security tooling.
โข Experience implementing security within CI/CD pipelines using tools such as Harness or similar platforms.
โข Experience with Infrastructure as Code tools such as Terraform and AWS CloudFormation.
โข Solid understanding of container security including Docker and Kubernetes.
โข Knowledge of cloud security best practices and compliance frameworks.
โข Experience performing vulnerability assessments and security reviews of cloud environments.
Competencies
โข Cloud Security Engineering
โข DevSecOps Practices
โข Infrastructure as Code (Terraform, CloudFormation)
โข CI/CD Security Integration
โข Cloud Security Posture Management (CSPM)
โข Python Automation
โข Container Security (Docker, Kubernetes)