Cloud Security Engineer
Role details
Job location
Tech stack
Job description
- The Cloud Security Engineer will support and strengthen the security foundation for Cargill's modern cloud-based applications and platforms. In this role, you will apply hands-on cloud engineering and cybersecurity skills to secure and operate Infrastructure as a Service (IaaS) and Platform as a Service (PaaS) environments across AWS and Azure. You will work closely with application, platform, and DevOps teams to embed security into cloud deployments and contribute to scalable, automated security solutions., * Implement and support security controls and resiliency mechanisms for enterprise cloud services
- Configure, manage, and operate cloud security solutions across AWS and Azure, including CSPM platforms such as Wiz
- Use Wiz Cloud to monitor cloud posture, identify misconfigurations, and prioritize risks based on exposure context
- Partner with application and platform teams to remediate Wiz findings and reduce repeat security issues
- Automate security controls, policies, and workflows using Infrastructure as Code (Terraform) and scripting
- Collaborate with DevOps, Cloud Platform, Software Engineering, and Compliance teams to integrate security into CI/CD pipelines and cloud deployments
- Support cloud security incident response, including investigation, remediation, and post-incident analysis
- Contribute to security design reviews and share knowledge with peers and junior engineers
Requirements
-
Bachelor's degree in a related field or equivalent hands-on experience
-
4-8 years of experience in cloud engineering and/or cloud security roles
-
Hands-on experience with AWS and/or Azure cloud services
-
Experience implementing cloud security capabilities such as IAM, logging, monitoring, encryption, and network security
-
Practical experience using cloud security platforms such as Wiz (CSPM, exposure analysis, remediation workflows)
-
Experience with AWS networking and security constructs (security groups, routing, firewalls)
-
Hands-on experience with containers and container platforms (Kubernetes, EKS, ECS, Docker)
-
Working knowledge of Infrastructure as Code using Terraform or similar tools
-
Scripting experience using Python, Golang, or PowerShell
-
Familiarity with DevOps and CI/CD practices, including integrating security into pipelines
-
Ability to analyze logs, metrics, and security findings to support remediation and continuous improvement Preferred Qualifications
-
Cloud certifications (AWS, Azure, and/or Google Cloud)
-
Security certifications such as CCSP, CEH, GSEC, or similar
-
Experience supporting cloud migrations and securing workloads at scale
-
Exposure to Wiz or runtime security concepts is a plus