Skip to content
AddeparAddepar

Staff Cloud Security Engineer

Secures and hardens Addepar’s multi-account AWS environments, enforcing data locality, identity, networking, and infrastructure-as-code controls. The role requires deep AWS security, Terraform, Python, networking, Kubernetes, CI/CD, and policy-as-code expertise.

About the job

Responsibilities

  • Maintain and iterate on Addepar’s Swiss AWS environment to enforce data locality restrictions and ensure core infrastructure is secure and operational.
  • Integrate security best practices, policies, and solutions.
  • Partner with the Swiss Infrastructure Operations team to maintain high security standards across the estate.
  • Design and harden a multi-account AWS environment using Organizations, Control Tower, SCPs, custom tools, and guardrails.
  • Design and build secure networking and private resource access patterns for human and programmatic use.
  • Author and maintain Terraform code for security infrastructure and contribute to a secure Terraform module registry.
  • Write and support CI checks using policy-as-code and infrastructure-as-code scanning.
  • Automate vulnerability detection and remediation with native AWS technologies, event-driven architecture, and serverless workflows.
  • Strengthen identity and secrets management through federation, role design, ABAC, IAM policy reviews, KMS strategy, Secrets Manager, and Parameter Store.
  • Use discovery tools and cloud-native logging for investigations, resource discovery, and troubleshooting.
  • Participate in infrastructure design reviews and cloud security assessments, producing clear and actionable reports.
  • Partner with engineering teams to deliver secure business outcomes and measure impact through coverage, prevention, and response metrics.
  • Act as an escalation point for the Security Operations Center.

Requirements

  • Extensive security experience, including several years of hands-on experience building and securing AWS production environments and multi-account architectures.
  • Bachelor’s degree in computer science or engineering, or equivalent practical experience.
  • Clear written and verbal communication skills, with the ability to influence across teams and mentor others.
  • Expertise in AWS security best practices and deep knowledge of native AWS services.
  • Advanced Terraform experience, including module creation, remote execution environments, and integrating security checks into CI.
  • Extensive experience with Python and boto3.
  • Deep networking knowledge.
  • Strong Linux, containers, Kubernetes, secrets management, and CI/CD fundamentals.
  • Experience with policy-as-code, GitOps, and Zero Trust solutions.

Skills

AWS, Aws Organizations, Aws Control Tower, Terraform, Python, Boto3, Opa, Rego, GitHub Actions, Argo Cd, Kubernetes, Linux, IAM, Aws Kms, Aws Secrets Manager

Monarch

Monarch

Remote

Senior Security GRC Analyst
$180k+/yrRemote5+ YOESecurity Engineering

Own and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.

Vanta

Vanta

Remote

Lead Product GRC Subject Matter Expert
$230k+/yrRemote10+ YOESecurity Engineering

Leads interpretation and productization of federal compliance controls for Vanta’s public-sector platform, translating FedRAMP and related frameworks into technically testable guidance, automated detectors, mappings, and machine-readable authorization workflows. Requires 8–10+ years of hands-on federal compliance experience, especially FedRAMP program and SSP work.

Supabase

Supabase

Remote

Platform Security Engineer
No salary listedRemote5+ YOESecurity Engineering

Secures Supabase’s cloud platform, Kubernetes environments, containers, and infrastructure by conducting risk assessments, strengthening controls, and building scalable security guardrails. Requires senior-level platform or cloud security experience with deep AWS, Kubernetes, container, and Linux expertise.

Retell AI

Retell AI

United States
Compliance Engineer
$72k+/yrRemoteSecurity Engineering

Build and automate technical security controls, compliance workflows, and audit evidence for enterprise readiness. The role requires strong scripting or programming skills, security fundamentals, and the ability to collaborate across engineering, security, legal, and customer-facing teams.

Vanta

Vanta

Remote

Manager, Security Operations
$178k+/yrRemote5+ YOESecurity Engineering

Leads a global Security Operations team, setting detection, response, and security strategy while driving incident response and risk remediation. The role requires strong SaaS and cloud security experience, leadership ability, familiarity with major security standards, and responsible use of AI.