Staff Cloud Security Engineer
The Staff Cloud Security Engineer leads cloud and enterprise security architecture, threat detection, risk assessment, incident investigation, and security remediation. The role requires 8+ years of information security experience and expertise across major cloud platforms, security tooling, IaC, vulnerabilities, and compliance frameworks.
About the job
Responsibilities
- Serve as a security subject matter expert, providing guidance on industry best practices and defense-in-depth strategies for security architecture.
- Recommend, test, design, deploy, and optimize threat detection and prevention solutions.
- Develop novel defense techniques to identify and stop advanced adversary tactics and techniques.
- Partner with functional teams and stakeholders to resolve security-related configuration issues.
- Perform technical risk assessments of new technology and verify that solutions meet secure architecture designs.
- Assess the impact of security deficiencies and communicate risks to stakeholders.
- Proactively identify issues and recommend configuration settings or supporting solutions to mitigate security deficiencies.
- Investigate security events and incidents using security tools.
Requirements
- 8+ years of experience in information security.
- Strong knowledge of cloud security across AWS, Azure, and GCP.
- Strong knowledge of security technologies, including antivirus and antimalware, SIEM, SOAR, vulnerability scanning, DLP, firewalls, and IDS/IPS.
- Strong experience with scripting and infrastructure as code (IaC).
- Strong understanding of vulnerabilities and common attack vectors.
- Experience with industry frameworks such as SOC 1, SOC 2, HITRUST, and ISO.
- Solid understanding of audit methodologies and processes.
- Experience working with virtual teams in a global environment.
- Strong communication and presentation skills.
- Adaptability and agility.
- Strong interpersonal, partnership, and leadership skills without direct authority over others.
Nice to Have
- Experience developing and operationalizing a vulnerability management program.
- Experience working with container-based architectures.
- Security or cloud certifications.
Skills
AWS, Azure, GCP, SIEM, Soar, Vulnerability Scanning, Dlp, Firewalls, Ids/Ips, Infrastructure As Code, Scripting, Vulnerability Management, Containerization, SOC 2, Hitrust
Similar jobs
Security Engineering jobsSenior product security engineer responsible for embedding security across the SDLC, building security automation, conducting reviews and penetration testing, and leading vulnerability response. Requires 5+ years of security experience, strong web and mobile security expertise, and hands-on AWS, CI/CD, and security tooling knowledge.
Leads application and AI security assessments across web, API, cloud-native, and LLM-based systems. Requires 8+ years of cybersecurity experience, hands-on penetration testing and secure SDLC expertise, and experience adversarially testing AI applications.
The Senior Security Engineer will build and operate detection and incident-response capabilities across cloud production and corporate environments. The role requires 7+ years of security engineering experience, AWS expertise, threat hunting, investigations, automation, and SIEM/SOAR proficiency.
Own and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.
Own detection engineering and lead incident response across corporate and production environments, building cloud, endpoint, runtime, and Kubernetes coverage. The role requires 6+ years in security, hands-on detection development, and end-to-end incident leadership.