Cloud Security Engineer
Designs, builds, and operates core cloud security infrastructure and controls for Stripe's engineering teams. Collaborates on secure cloud expansions, threat modeling, and integrations with AWS, Azure, or GCP; requires production software engineering experience and security mindset.
About the job
Responsibilities
- Design, build, and operate core security infrastructure used by all Stripe engineering teams.
- Uphold high engineering standards and bring consistency to codebases and processes.
- Contribute to team learning by improving engineering standards, tooling, and processes.
- Design and build durable solutions advancing Stripe's security.
- Help expand Stripe's cloud footprint with secure guardrails.
- Optimize security controls for delightful user experiences.
- Partner with infrastructure and engineering teams on cloud integrations.
- Make impactful decisions about systems, security edge cases, failure modes, and lifecycles.
- Use data to determine security baselines.
- Define infrastructure feeding signals to threat teams.
- Evaluate and prototype new security tools and practices.
You may work on:
- Designing/implementing controls supporting security invariants with great UX.
- Providing migration paths for acquired companies onto Stripe Secure Platform.
- CI tooling for IAM roles, SCPs, and components.
- Guardrails for cloud technologies.
- Expanding cloud identity for AI/agentic access.
- Automation for reducing permissions.
Minimum Requirements
- Empathy, strong communication, respect for collaboration.
- Learning mindset.
- Drive clear next steps in ambiguous spaces.
- High standards for code quality.
- Software engineering experience in high-stakes production.
- Knack for system failure analysis.
- Creative/holistic risk reduction.
- Experience with security on AWS, Azure, or GCP.
Preferred Qualifications
- Threat modeling in cloud native environments.
- Linux, Kubernetes, container platforms.
- Security monitoring tools (CSPM, CNAAP).
- Multi-cloud or complex cloud environments.
Skills
AWS, Azure, GCP, Kubernetes, Linux, Cspm, Cnaap, IAM, Scps, Threat Modeling
Similar jobs
Security Engineering jobsThe Security Engineer will track advanced adversaries targeting frontier AI infrastructure, build intelligence pipelines, conduct threat hunts, and create production detections. The role requires hands-on malware and infrastructure analysis, production programming, and close collaboration with detection and incident response teams.
Security Scientist analyzing attacker and user behavior, building data-driven detections, and leading security investigations and design reviews. Requires strong security and anti-abuse knowledge, SQL fluency, scripting proficiency, and experience with distributed data systems and statistical methods.
Own and build the company’s security program as its first full-time security hire, covering product, cloud, infrastructure, incident response, compliance, and customer trust. The role requires hands-on security engineering and incident leadership, with experience operating SOC 2 or comparable frameworks.
Conduct proactive threat hunting and adversary simulation to uncover financial fraud tactics, enrich threat intelligence, and improve platform controls. The role requires at least five years of relevant cybersecurity, abuse, or trust experience plus strong Python, SQL, investigative, and data-analysis skills.
Conduct offensive security operations, red-team engagements, penetration testing, and adversarial simulations across cloud, endpoint, and bare-metal environments. The role requires at least five years of experience, strong engineering skills, and expertise across multiple security domains.