Summary
What you’ll impact
The Cloud Security Engineer at our organization will lead the design, implementation, and maintenance of security controls across AWS/GCP, Kubernetes, and serverless environments. They will drive DevSecOps practices, automate security guardrails, and serve as the primary technical owner for cloud security, ensuring the platform and customer data are protected.
Responsibilities
What you'll do
- Design, build, and maintain robust cloud security controls across AWS/GCP infrastructure, Kubernetes, and serverless environments
- Architect and implement fine-grained IAM policies, least privilege access models, and automated secrets management to minimize the attack surface
- Develop and integrate automated security scanning and guardrails into CI/CD pipelines (SAST, DAST, and container vulnerability scanning)
- Lead network security hardening, including VPC architecture, security groups, and cloud-native monitoring/alerting strategies
- Operationalize vulnerability management and threat modeling for cloud-native applications and AI-driven workflows
- Partner with engineering teams on secure development practices and provide technical guidance for securing complex AI agent architectures
Requirements
What you’ll bring
- Experience: 5+ years in cloud security engineering, infrastructure security, or DevSecOps within a modern SaaS environment
- Cloud Platforms: Deep technical proficiency in AWS and/or GCP, including networking, IAM, and managed services
- DevSecOps & Automation: Proven experience with Infrastructure as Code (Terraform/CloudFormation) and automating security within CI/CD pipelines
- Container Security: Strong understanding of securing containerized workloads and orchestration platforms like Kubernetes (EKS/GKE)
- Risk Mindset: Strong judgment in identifying material risks, prioritizing remediation, and balancing speed with practical security outcomes
- Communication: Can write clear policies, standards, procedures, risk summaries, and customer-facing responses; able to work effectively across technical and non-technical teams
- Execution: You are organized, hands-on, and able to independently drive programs from requirement to implementation to review
- Startup Fit: Comfortable operating in a fast-moving environment where you may define structure while also doing the work directly
- Programming Proficiency: Strong coding skills in Python, Go, or a similar language to automate security tasks and interact with cloud APIs.