Engineering, Cloud Security Engineer I
Role details
Job location
Tech stack
Job description
The Cloud Security Engineer I is responsible for supporting and maintaining the organization's Cloud Security Standard across all cloud service providers, ensuring consistent implementation, operational effectiveness, and lifecycle management. This role sits within the Security Architecture and Engineering organization and focuses on strengthening cloud security posture through standards governance, logging and monitoring integration, and hands-on management of Cloud Security Posture Management (CSPM) capabilities.
The role requires practical experience working across AWS, Azure, and Google Cloud Platform environments, with a strong emphasis on ensuring cloud-native and third-party logging is consistently integrated into centralized log management and SIEM platforms to support security monitoring, detection, and incident response. The key responsibilities of this role are as described below:
Cloud Security Standards & Governance
- Supporting the Cloud Security Architect, maintain and support the Cloud Security Standard across all iterations and lifecycle phases, ensuring it remains current, actionable, and aligned with:
- Cloud provider capabilities (AWS, Azure, Google Cloud Platform)
- Organizational security requirements
- Industry best practices and threat landscape changes
- Partner with other teams to ensure standards are:
- Technically feasible
- Consistently implemented
- Clearly documented and communicated
- Support reviews and updates to the standard as cloud services, architectures, and risks evolve.
Cloud Logging, Monitoring & SIEM Integration
- Ensure cloud logging is consistently enabled, configured, and maintained across AWS, Azure, and Google Cloud Platform environments.
- Work with Security Operations and Platform teams to ensure logs are:
- Reliably ingested into centralized log management and SIEM platforms
- Structured and normalized to support detection, investigation, and audit needs
- Validate coverage for critical log sources, including:
- Identity and access activity
- Network and perimeter events
- Resource configuration and management activity
- Support troubleshooting of log gaps, ingestion failures, and data quality issues.
Cloud Security Posture Management (CSPM)
- Operate and maintain CSPM capabilities across AWS, Azure, and Google Cloud Platform environments.
- Monitor CSPM findings to identify:
- Misconfigurations
- Policy violations
- Security control gaps
- Partner with engineering teams to drive remediation of CSPM findings, ensuring:
- Clear ownership
- Risk-based prioritization
- Sustainable fixes
- Support tuning of CSPM policies and rules to reduce noise and improve signal quality.
- Collaborate with the Risk Operations team to ensure CSPM findings that are not automatically remediated are tracked as Risk Issues.
Security Operations & Risk Enablement
- Collaborate with Cyber Defense, Incident Response, and the Integrated Risk Management team to ensure cloud security controls support operational and risk objectives.
- Provide input into cloud-related risk assessments, audits, and security reviews.
Assist with security investigations and incident response activities involving cloud environments., The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed.
Requirements
- Experience: 5+ years of experience in Cloud Security, Cloud Engineering, or Security Engineering. Practical experience working with AWS, Azure, and Google Cloud Platform in production environments. Demonstrated experience ensuring cloud logging feeds into centralized log management and SIEM platforms. Hands-on experience managing Cloud Security Posture Management (CSPM) tools across multi-cloud environments.
- Education: Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field.
- Technical Expertise: Working knowledge of Cloud identity and access management, Cloud-native logging and monitoring services, and Common cloud security misconfigurations and threats. Strong troubleshooting and collaboration skills.
- Language Skills: Excellent stakeholder management and communication skills. Proficient in English for effective communication and coordination.
Preferred Qualifications:
-
Experience: Hands on experience with CSPM tools such as Prisma Cloud, Wiz, Lacework or similar. A working understanding of cloud security frameworks and benchmarks (e.g. CIS). Experience supporting audits or compliance activities related to cloud security.
-
Education and Certifications: Masters degree in Cybersecurity, Information Technology, Computer Science or a related discipline is preferred. Industry-recognized credentials such as CISSP, CISM, or cloud specific certifications for AWS, Azure or Google Cloud Platform security are highly desirable.
-
Language Skills: Bi-lingual in English and Korean language proficiency is preferred to support global coordination and communication.