FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Cloud Security Engineer – FedRamp
ZimperiumSenior Cloud Security Engineer at Zimperium responsible for multi-cloud security architecture and automation. Designing robust security controls while ensuring compliance and supporting audits.
Tech Stack
Tools & technologiesAWSAzureCloudFirewallsGoogle Cloud PlatformKubernetesLinuxTerraformVault
About the role
Key responsibilities & impact- Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments.
- Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale.
- Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters.
- Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
- Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications.
- Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable "shift-left" security practices.
- Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services.
- Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase.
- Participate in a rotating on-call schedule to address security incidents and operational issues promptly.
- Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership.
- Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.
Requirements
What you’ll need- 8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment.
- Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation.
- Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI.
- Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs.
- Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes.
- Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
- Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services.
- Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines.
- Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager).
- Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations.
- Proven ability to operate independently and take ownership of critical responsibilities.
Benefits
Comp & perks- Health insurance
- Remote work options
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Cloud Security EngineeringInfrastructure as CodeTerraformCloudFormationLinux administrationKubernetessystem hardeningDevSecOpsSecret Managementsecurity automation
Soft Skills
excellent written communicationexcellent verbal communicationindependenceownershipinitiativetechnical presentationsreport writing