Tech Stack
AWSCloudCyber SecurityFirewallsPythonTerraform
About the role
- The Senior Security Engineer, Cloud Platforms is a hands on role focused on securing AWS environments and SaaS platforms, while also contributing to cloud security strategy and maturity
- The role is remote within the United States, with very occasional travel to company offices
- Hands On Engineering (Core): Implement and/or manage native AWS security services to monitor and protect multi account environments; Develop and maintain Infrastructure as Code (IaC) security practices using Terraform; Configure and optimize Web Application Firewalls (WAF) and API security controls; Automate incident detection, response workflows, and compliance processes using native AWS services and integrated tooling; Drive vulnerability management activities
- Program Maturity + Strategy: Shape the strategic roadmap for platform and cloud security, providing thought leadership and proactive recommendations to senior management; Map and track cloud security maturity; Perform regular security assessments using AWS frameworks, CIS Benchmarks, etc.; Lead data protection initiatives such as DLP, data flow mapping, encryption policies, etc.
- Collaboration + Influence: Partner with platform engineering and product teams to embed security into design and delivery activities; Coordinate security efforts with security operations, enterprise security, Governance, Risk, and Compliance (GRC), and privacy/compliance teams; Advise AI/ML teams on securing models, data pipelines, and emerging AI security risks; Lead security awareness efforts tailored for engineering teams, including building a security champions program to drive adoption of secure practices across product and cloud development
- Other duties as assigned
Requirements
- 5+ years of hands-on cloud security engineering experience, specifically with AWS preferred
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related discipline, or equivalent professional experience preferred
- Relevant certifications such as AWS Certified Security Specialty, CISSP, or similar preferred
- Able to translate complex cloud security risks or design choices into clear guidance for engineering or product teams
- Able to identify potential cloud security weaknesses proactively and design scalable mitigations
- Able to define, shape, and influence strategic security decisions and roadmaps
- Comfortable driving initiatives independently while influencing senior engineers and leaders