Senior Cloud Security Engineer
Own and advance the security of Anyscale’s production and multi-cloud infrastructure, including hardening, segmentation, Kubernetes runtime protection, and access controls. Requires 8+ years of security engineering experience and hands-on expertise with AWS, Azure, Kubernetes, and cloud security tooling.
About the job
Responsibilities
- Own the security posture of production and cloud infrastructure across AWS and Azure, including hardening, network segmentation, and tenant isolation.
- Own runtime security coverage across Kubernetes environments, from deployment through detection of anomalous activity.
- Partner with engineering on secure infrastructure architecture and production environment design.
- Own cloud security posture management end to end, including triage, prioritization, and remediation.
- Define and drive cloud infrastructure security standards covering baseline configurations, infrastructure-as-code security, and key and secrets management.
- Drive fine-grained, role-based access to production in partnership with engineering and IT.
- Feed infrastructure findings into vulnerability management and risk reporting.
Requirements
- 8+ years of security engineering experience, with a deep focus on cloud and infrastructure security.
- Hands-on experience securing multi-cloud environments, especially AWS and Azure, and container platforms such as Kubernetes.
- Strong grounding in infrastructure-as-code, cloud networking, and cloud identity and access management.
- Experience with CSPM and runtime security tooling.
- Ability to independently own cloud infrastructure security, set its direction, and make sound cross-functional tradeoffs.
- Experience working directly with engineers on architecture and remediation.
Nice to Have
- Experience securing multi-tenant production systems or environments running customer workloads.
- Familiarity with Upwind or similar CSPM and runtime security platforms.
- Experience contributing infrastructure-side evidence for SOC 2 or ISO 27001.
- Background in AI or ML platforms or distributed systems.
Skills
AWS, Microsoft Azure, Kubernetes, Infrastructure As Code, Cloud Networking, Identity And Access Management, Cspm, Runtime Security, Network Segmentation, Tenant Isolation, Secrets Management, Role-Based Access Control, SOC 2, ISO 27001
Similar jobs
Security Engineering jobsBuild secure, large-scale platforms, controls, monitoring, and AI-augmented pipelines that improve Snowflake’s cloud security posture across hundreds of millions of assets and multiple cloud providers. Requires 5+ years of software engineering experience and expertise in secure distributed systems.
Leads enterprise network architecture, cloud connectivity, security, operations, and incident response across corporate and manufacturing environments. Requires 10+ years of network engineering experience, people leadership, AWS networking expertise, and strong network security knowledge.
Own detection engineering and lead incident response across corporate and production environments, building cloud, endpoint, runtime, and Kubernetes coverage. The role requires 6+ years in security, hands-on detection development, and end-to-end incident leadership.
Senior platform security engineer responsible for building identity and access management systems, Zero Trust architecture, cloud security baselines, and secure developer platforms. Requires 5+ years operating production systems and strong software development and security experience.
Develops and operates detection engineering systems across endpoint, cloud, container, and SaaS environments. The role requires at least six years in detection, incident response, or offensive security, strong attacker TTP knowledge, macOS expertise, and detection-as-code experience.