Apply

Cloud Security Engineer

Posted about 1 month agoViewed

View full description

💎 Seniority level: Middle

🏢 Company: GWI👥 501-1000💰 $179,882,387 Series B over 3 years agoAdvertisingMarket ResearchAnalyticsMarketingInformation Technology

🗣️ Languages: English

Requirements:
  • Comprehensive experience in software development and security engineering
  • Proficiency in infrastructure-as-code, particularly with Terraform
  • Expertise in container deployments, CI/CD pipelines, and Kubernetes
  • In-depth experience with Google Cloud Platform services and security controls
  • Ability to build and operate secure systems at scale
  • Experience configuring and working with security tools like SIEM and Cloud Security
  • Familiarity with Endpoint Protection Platforms (EPP) and platforms like JumpCloud and Cisco Umbrella
  • Advanced Linux knowledge is a big plus
Responsibilities:
  • Automate security tasks related to Web Application Firewalls, Vulnerability Management, and Cloud Security Architecture
  • Collaborate with the Infrastructure Team to discuss and enhance security measures across our platforms
Apply

Related Jobs

Apply
🔥 Senior Cloud Security Engineer
Posted about 24 hours ago

📍 Canada

🔍 Software Development

  • 5–7 years of experience in technical roles, with at least 3 years focused on securing AWS cloud infrastructure at scale.
  • Hands-on experience with AWS services and security controls, including compute (EC2, ECS, EKS), storage (S3, RDS, ElastiCache), networking (VPCs, Security Groups), IAM, KMS, CloudTrail, and CloudWatch.
  • Proven experience automating security controls across AWS environments, using tools like AWS Organizations SCPs, IAM permission boundaries, AWS Config, and Lambda auto-remediation.
  • Strong practical experience with Kubernetes security, particularly Amazon EKS, including implementing RBAC, network policies, pod security standards, secrets management, and secure container deployment pipelines.
  • Familiarity with security frameworks (e.g., NIST, SOC 2, CIS AWS Benchmarks) and experience helping organizations meet cloud compliance and audit requirements.
  • Experience with policy-as-code frameworks such as Open Policy Agent (OPA), Gatekeeper for Kubernetes admission control, or Sentinel policies for Terraform compliance.
  • Partner with the Cloud Enablement team to lead proactive hardening of Jane’s AWS environment by implementing best-practice security configurations and preventative controls that significantly reduce vulnerabilities and attack vectors.
  • Build automated security guardrails embedded into our infrastructure-as-code and CI/CD pipelines, using AWS native tools and policy-as-code frameworks to enforce encryption, identity, and configuration standards at scale.
  • Shape the security of our new API-first, microservices platform running on Amazon EKS by establishing Kubernetes and container security best practices across pod security, network policies, and secure build pipelines.
  • Help align Jane’s cloud security posture to industry frameworks (such as SOC 2, PCI-DSS, and CIS AWS Benchmarks) by implementing the controls, monitoring, and reporting needed for continuous compliance and audit readiness.
  • Collaborate across security, delivery, and cloud engineering teams to define and prioritize cloud security risks, coordinating remediation efforts and contributing to a cloud security maturity roadmap that guides our future state.

AWSDockerPythonAWS EKSBashCloud ComputingCybersecurityKubernetesCI/CDRESTful APIsLinuxTerraformComplianceJSONAnsible

Posted about 24 hours ago
Apply
Apply

🧭 Full-Time

💸 150000.0 - 200000.0 USD per year

🔍 Software Development

🏢 Company: BetterHelp👥 101-250InternetMental HealthTherapeuticsWellnessHealth CareHealth Diagnostics

  • Expert knowledge of AWS services such as EKS, EC2, VPC, S3, CloudFront, etc.
  • You’ve used Terraform to manage all your AWS resources and don’t even know how to log into the web console.
  • Proficient with configuration languages such as YAML or HCL.
  • Experience configuring and using CSPM software
  • Experience monitoring, reviewing, and responding to AWS security alerts to identify, mitigate, and resolve potential security issues.
  • Networking knowledge, with the ability to design, configure, and maintain VPN and inter VPC systems.
  • Fluent in Python, Bash, or another scripting language.
  • Expert knowledge of Linux systems.
  • Advanced knowledge of container runtimes such as Docker or Containerd.
  • Experience running Kubernetes at scale.
  • Experience with contemporary CI/CD methodologies, such as GitOps.
  • Work with DevOps and Security Engineering to harden our entire cloud infrastructure, ensuring security across all AWS resources.
  • Design, implement, and maintain secure, reliable infrastructure and automation.
  • Design and implement observability patterns that ensure team awareness of issues.
  • Participate in our culture of experimentation, proposing load-testing experiments to improve platform uptime and resiliency.
  • Implement security best practices in GitHub Actions, ArgoCD, and other CI/CD tools to ensure secure deployment pipelines.
  • Manage and secure edge infrastructure by configuring and optimizing AWS WAF, AWS Shield, and network routing strategies to prevent malicious traffic and ensure secure access to services.
  • Participate in an on-call rotation.
  • Mentor other team members.
  • Develop and deploy automation to make your job easier.
  • Have access to whatever training resources can help you succeed.
Posted 1 day ago
Apply
Apply

📍 Canada

💸 123600.0 - 193000.0 USD per year

🔍 Software Development

  • 5–7 years of experience in technical roles, with at least 3 years focused on securing AWS cloud infrastructure at scale.
  • Hands-on experience with AWS services and security controls, including compute (EC2, ECS, EKS), storage (S3, RDS, ElastiCache), networking (VPCs, Security Groups), IAM, KMS, CloudTrail, and CloudWatch.
  • Proven experience automating security controls across AWS environments, using tools like AWS Organizations SCPs, IAM permission boundaries, AWS Config, and Lambda auto-remediation.
  • Strong practical experience with Kubernetes security, particularly Amazon EKS, including implementing RBAC, network policies, pod security standards, secrets management, and secure container deployment pipelines.
  • Familiarity with security frameworks (e.g., NIST, SOC 2, CIS AWS Benchmarks) and experience helping organizations meet cloud compliance and audit requirements.
  • Experience with policy-as-code frameworks such as Open Policy Agent (OPA), Gatekeeper for Kubernetes admission control, or Sentinel policies for Terraform compliance.
  • Lead proactive hardening of Jane’s AWS environment by implementing best-practice security configurations and preventative controls that significantly reduce vulnerabilities and attack vectors.
  • Build automated security guardrails embedded into our infrastructure-as-code and CI/CD pipelines, using AWS native tools and policy-as-code frameworks to enforce encryption, identity, and configuration standards at scale.
  • Shape the security of our new API-first, microservices platform running on Amazon EKS by establishing Kubernetes and container security best practices across pod security, network policies, and secure build pipelines.
  • Help align Jane’s cloud security posture to industry frameworks (such as SOC 2, PCI-DSS, and CIS AWS Benchmarks) by implementing the controls, monitoring, and reporting needed for continuous compliance and audit readiness.
  • Collaborate across security, delivery, and cloud engineering teams to define and prioritize cloud security risks, coordinating remediation efforts and contributing to a cloud security maturity roadmap that guides our future state.

AWSAWS EKSCloud ComputingCybersecurityKubernetesAmazon Web ServicesREST APICI/CDDevOpsTerraformMicroservicesComplianceJSON

Posted 1 day ago
Apply
Apply

📍 United States

🧭 Contract

🔍 EdTech

🏢 Company: Magpie Literacy

  • Strong experience with AWS
  • Experience with cloud infrastructure
  • Understanding of modern cloud security practices and threat modeling
  • Familiarity with CI/CD security
  • Ability to translate compliance requirements into actionable engineering work
  • Respond to vulnerabilities across our platform and support CI security efforts
  • Collaborate with engineers to ensure remediation efforts are properly tracked and executed
  • Drive improvements in our detection and alerting capabilities
  • Help implement Compliance as Code strategies to automate and prove security best practices
  • Support ongoing audit efforts by helping us track and document routes, access, and activities across the platform
  • Coordinate with engineers to perform scans and remediations
  • Implement comprehensive logging and audit trails (access logs, system logs, application logs, etc.)

AWSCloud ComputingCybersecurityCI/CDTerraformCompliance

Posted 6 days ago
Apply
Apply

🏢 Company: Thaloz👥 101-250Staffing AgencySoftware EngineeringInformation TechnologySoftware

  • Proven experience in cloud security engineering with Azure and AWS; GCP experience is a differentiator.
  • Strong knowledge of WIZ for security policy management.
  • Proficiency in writing code in the Rego query language.
  • Experience with CI/CD tools and practices, particularly Azure DevOps.
  • Experience with scripting languages such as Python or Bash.
  • Provision and manage security policies using WIZ (security monitoring tool).
  • Write and evaluate code in the Rego query language for policy enforcement against JSON representations of resources.
  • Collaborate with development teams to integrate security practices into CI/CD pipelines using GCP, Azure DevOps, and AWS.
  • Conduct security assessments and audits to identify vulnerabilities and recommend remediation strategies.
  • Stay updated on the latest security trends, threats, and technologies to enhance our security posture.
Posted 9 days ago
Apply
Apply

📍 Belgium, Czech Republic, France, Germany, Greece, Hungary, Ireland, Netherlands, Spain, Poland, Portugal, Romania & United Kingdom

🧭 Full-Time

🔍 Payment Technology

🏢 Company: Form3 (via Otta)

NOT STATED
NOT STATED

AWSDockerCloud ComputingCybersecurityKubernetesCI/CDLinuxDevOpsTerraformComplianceScripting

Posted 13 days ago
Apply
Apply

📍 Germany, Netherlands, Spain, Portugal, UK

🔍 Payments

🏢 Company: Form3 - External

  • Kubernetes security expertise
  • Experience with essential security features
  • Experience with long-term security hardening practices
  • Build and run defensive security controls
  • Advise engineering teams on beneficial security features
  • Prioritise management of defensive controls

AWSCloud ComputingCybersecurityGCPKubernetesAzureCI/CDLinuxDevOpsTerraform

Posted 13 days ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 110000.0 - 135000.0 USD per year

🏢 Company: Symmetrio

  • 5+ years of cloud security experience, ideally with exposure to both AWS and Azure.
  • Strong understanding of cloud architecture, security best practices, and modern deployment pipelines.
  • Hands-on experience with tools like Terraform, Ansible, Jenkins, or equivalents is a plus.
  • Comfortable navigating enterprise security challenges including identity/access management, encryption, logging, and container security.
  • Design, implement, and manage cloud security architecture across AWS and Azure platforms.
  • Assess cloud environments for misconfigurations and vulnerabilities using tools like AWS Config, Azure Security Center, or Prisma Cloud.
  • Work with DevOps and Infrastructure teams to embed security into CI/CD pipelines (DevSecOps).
  • Define and enforce cloud security policies, controls, and standards aligned with compliance frameworks such as NIST, ISO 27001, or CIS.
  • Evaluate and configure IAM policies, role-based access controls (RBAC), and network security rules for multi-cloud systems.
  • Monitor and respond to security incidents in cloud environments using SIEM/SOAR tools (e.g., Splunk, Sentinel).
  • Conduct threat modeling and security risk assessments for cloud-native applications.
Posted 27 days ago
Apply
Apply

💸 110000.0 - 145000.0 USD per year

🔍 Sports Analytics

🏢 Company: Swish Analytics👥 1-10💰 $6,909,110 Series B almost 6 years agoBig DataFantasy SportsPredictive AnalyticsMachine LearningAnalyticsSports

  • 5-8 years of hands-on experience in AWS Security
  • Strong knowledge of IAM (roles, policies, least privilege)
  • Experience with AWS security services (e.g., GuardDuty, Security Hub, Inspector, Macie, KMS, CloudTrail, WAF, Shield)
  • Familiarity with VPC security, subnet segmentation, NACLs, and security groups
  • Familiarity with security and logging tools such as BurpSuite, OWASP ZAP, CrowdStrike, Datadog, etc.
  • Deep understanding of AWS Well-Architected Framework, especially the Security Pillar
  • Experience implementing and maintaining cloud security posture management (CSPM) tools and frameworks
  • Proficient in Infrastructure-as-Code (IaC) using tools such as Terraform, CloudFormation, or AWS CDK
  • Experience managing infrastructure and security policies through Git repositories
  • Integrating security tools into CI/CD pipelines (e.g., Snyk, Checkov, Trivy, SonarQube)
  • Automating compliance and security checks
  • Experience with Github
  • Container security best practices (ECR, ECS, EKS, etc.)
  • Experience securing Kubernetes clusters (EKS or self-managed)
  • Knowledge of network policies, RBAC, Pod Security Standards, and runtime security
  • Proficiency with scripting languages like Python, Bash, or PowerShell for automation and security tooling
  • Experience with security incident response in AWS environments, including detection, analysis, and mitigation
NOT STATED
Posted 28 days ago
Apply
Apply
🔥 Senior Cloud Security Engineer
Posted about 1 month ago

🧭 Full-Time

💸 136600.0 - 180380.0 USD per year

🔍 Cybersecurity

🏢 Company: ExtraHop

  • 7+ years of experience in security engineering, software development and/or DevOps, with a focus on securing complex systems and modern cloud infrastructure
  • Strong experience securing AWS cloud platform and services, including the implementation of guardrails using service control policies (SCPs), IaC policies, CSPM, or similar strategies
  • Experience working with container-based environments (Kubernetes, Docker, LXC, etc.)
  • Experience securing cloud-based web applications, APIs, data and infrastructure
  • Implement and operate Splunk Cloud Platform and Enterprise Security, including setting up log ingestion from required source systems and ensuring correct parsing and categorization of log events for effective SIEM operations
  • Implement and operate endpoint detection and response (EDR) and network detection & response (NDR) solutions
  • Develop system configuration and hardening standards and coordinate with other teams to ensure compliance with those standards
  • Define standards for secure configuration of application and infrastructure components
  • Perform threat modeling, security design reviews, code reviews, and consultations with other staff
  • Build and improve vulnerability management processes and tooling to support system owners to successfully remediate issues
  • Perform, automate and streamline patching and vulnerability remediation activities
  • Develop and deliver training on cloud security issues, best practices and internal policies
  • Select, implement and manage cloud security tools including cloud security posture management (CSPM), network/host/container/IaC vulnerability scanners and configuration auditing
  • Participate in manual pen testing of new + existing systems
  • Perform and/or lead security investigation and incident response activities
  • Participate in an on-call rotation with occasional after-hours paging to review carefully prioritized security detections
Posted about 1 month ago
Apply

Related Articles

Posted about 1 month ago

How to Overcome Burnout While Working Remotely: Practical Strategies for Recovery

Burnout is a silent epidemic among remote workers. The blurred lines between work and home life, coupled with the pressure to always be “on,” can leave even the most dedicated professionals feeling drained. But burnout doesn’t have to define your remote work experience. With the right strategies, you can recover, recharge, and prevent future episodes. Here’s how.



Posted 4 days ago

Top 10 Skills to Become a Successful Remote Worker by 2025

Remote work is here to stay, and by 2025, the competition for remote jobs will be tougher than ever. To stand out, you need more than just basic skills. Employers want people who can adapt, communicate well, and stay productive without constant supervision. Here’s a simple guide to the top 10 skills that will make you a top candidate for remote jobs in the near future.

Posted 9 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 9 months ago

Read about the recent updates in remote work policies by major companies, the latest tools enhancing remote work productivity, and predictive statistics for remote work in 2024.

Posted 10 months ago

In-depth analysis of the tech layoffs in 2024, covering the reasons behind the layoffs, comparisons to previous years, immediate impacts, statistics, and the influence on the remote job market. Discover how startups and large tech companies are adapting, and learn strategies for navigating the new dynamics of the remote job market.