JOB SUMMARY
The Cloud Security Engineer will be responsible for embedding security controls into cloud infrastructure and DevOps pipelines to ensure secure, compliant, and resilient deployments across multi-cloud environments. This role focuses on implementing cloud security best practices, automating security processes, and integrating security into CI/CD pipelines. The engineer will collaborate with cybersecurity leadership, cloud engineering, platform engineering, and development teams to design and maintain secure DevSecOps practices within regulated financial environments.
Location
Irvine, CA / San Antonio, TX / New York, NY (Hybrid)
Experience
5+ Years
Key Responsibilities
• Develop Cloud Security runbooks and blueprints for sanctioned cloud services such as S3, Lambda, and RDS.
• Design and implement cloud security guardrails using Cloud Security Posture Management (CSPM) tools.
• Implement security controls within CI/CD pipelines using tools such as Harness and GitHub.
• Develop and maintain Infrastructure as Code (IaC) using Terraform and AWS CloudFormation.
• Integrate automated security testing and controls within the Software Development Life Cycle (SDLC).
• Collaborate with cloud engineering teams to ensure secure deployment and configuration across AWS and Azure environments.
• Develop automation scripts using Python for security monitoring, compliance validation, and remediation activities.
• Perform security reviews, vulnerability assessments, and compliance checks on cloud services and cloud-native applications.
• Monitor cloud security alerts and respond to incidents affecting cloud infrastructure and DevOps pipelines.
• Stay updated on emerging cybersecurity threats, vulnerabilities, and regulatory compliance standards relevant to financial services.
Required Skills & Experience
• 5+ years of experience in Cloud Security Engineering, DevSecOps, or related cybersecurity roles.
• Strong hands-on experience with AWS and/or Azure security services.
• Proficiency in Python scripting for automation and security tooling.
• Experience implementing security within CI/CD pipelines using tools such as Harness or similar platforms.
• Experience with Infrastructure as Code tools such as Terraform and AWS CloudFormation.
• Solid understanding of container security including Docker and Kubernetes.
• Knowledge of cloud security best practices and compliance frameworks.
• Experience performing vulnerability assessments and security reviews of cloud environments.
Competencies
• Cloud Security Engineering
• DevSecOps Practices
• Infrastructure as Code (Terraform, CloudFormation)
• CI/CD Security Integration
• Cloud Security Posture Management (CSPM)
• Python Automation
• Container Security (Docker, Kubernetes)