FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Principal Cloud & Network Security Engineer
The LeafletPrincipal Cloud & Network Security Engineer for Hard Rock Digital to own security across cloud footprint. High-impact role ensuring infrastructure security, working with a dedicated security team.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive expertise in cloud security posture management, runtime protection, and network security, with a strong focus on AWS and Cloudflare technologies. Proficient in infrastructure-as-code practices and policy-as-code implementation, ensuring secure configurations and compliance across cloud environments.
Highest-signal resume keywords
Cloud Security Posture ManagementAWS Security ExpertiseInfrastructure-as-Code (Terraform)Cloudflare WAF and Zero TrustNetwork Security Fundamentals
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Cloud Security Posture ManagementRuntime Protection ToolingInfrastructure-as-Code (Terraform)Scripting (Python, Bash, Go)Network SegmentationZero Trust Network Access (ZTNA)Cloudflare WAFContainer SecurityAI Application in SecurityDNSSEC Deployment
Soft Skills
Leadership Through InfluenceTechnical Direction SettingCross-Team Collaboration
Tools & Technologies
WizCloudflareCI/CD PipelinesKubernetesService Mesh
Certifications & Qualifications
AWS Security SpecialtyCCSPGIAC Cloud Security
Industry Keywords
Regulated Industry ExperiencePCI DSSGLI-19GLI-33
Tech Stack
Tools & technologiesAWSAzureCloudDNSFirewallsGoGoogle Cloud PlatformKubernetesPythonTerraform
About the role
Key responsibilities & impact- Own cloud security posture and runtime protection across AWS, Azure, and GCP using Wiz and modern runtime protection tooling — from finding misconfigurations to driving them to closure and catching threats at runtime.
- Define and maintain secure configuration baselines and guardrails so new cloud resources are safe by default
- Partner with SecOps to feed high-quality cloud signals into our detection and response pipeline
- Design and implement network segmentation and east-west controls that limit blast radius across our environments
- Advance Zero Trust network access using Cloudflare Access, private connectivity, and service-to-service authentication (including mTLS where it fits)
- Align our network posture to NIST SP 800-207 and the CISA Zero Trust Maturity Model (Networks pillar)
- Own the security configuration of our Cloudflare edge — WAF, Bot Management, and DDoS protections — plus our broader Cloudflare Zero Trust deployment
- Build policy-as-code and Terraform guardrails, and embed infrastructure-as-code security scanning (Wiz Code) into CI/CD pipelines — you own the infrastructure-scanning side of the pipeline
- Act as the design authority for cloud, network, and edge security — setting standards, mentoring security and platform engineers, and driving alignment across teams you don't manage.
Requirements
What you’ll need- 10+ years in cloud, network, or infrastructure security engineering — or equivalent practical experience
- Deep, hands-on expertise in at least one major cloud (AWS strongly preferred), with working knowledge of a second
- Experience with cloud security posture and runtime protection tooling (Wiz or equivalent CNAPP/runtime tooling) at scale
- Strong network security fundamentals: segmentation, firewalls, ZTNA, and secure connectivity patterns
- Hands-on experience with edge/WAF/CDN protection (Cloudflare a strong plus)
- Infrastructure-as-Code proficiency (Terraform), a policy-as-code mindset, and scripting/automation skills (Python, Bash, or Go) — comfortable working in CI/CD pipelines
- A track record of leading through influence — you set technical direction across teams you don't manage, and you can explain a network path to an engineer and a risk to an executive
- Fluency with AI — you lead with it, reaching for AI tools daily to work faster and sharper; hands-on experience applying AI to security or engineering work is a must.
- Experience in a regulated industry (gaming, financial services, healthcare) — especially PCI DSS network segmentation and scoping, or GLI-19/GLI-33 requirements
- Deep Cloudflare experience across WAF, Bot Management, Access, and the Zero Trust suite
- Experience securing containers and orchestration — Kubernetes network policy, service mesh, or workload identity
- Relevant certifications (e.g., AWS Security Specialty, CCSP, GIAC cloud/network security)
- Experience deploying DNSSEC (or DNS-layer security controls) across a production, multi-zone estate.
Benefits
Comp & perks- Competitive pay and benefits
- Flexible vacation allowance
- A hybrid / remote working environment
- Startup culture backed by a secure, global brand