Cloud Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+21 more
Job description
The Cloud Security Engineer is responsible for maintaining and monitoring Consensio Health’s AWS cloud infrastructure, cloud security posture, and compliance readiness. This role will oversee SOC 2 compliance activities, manage Secureframe evidence and control monitoring, help prepare for audits, and ensure cloud infrastructure and application environments remain secure, reliable, and aligned with internal policies.
This is a hybrid security, infrastructure, and development role. Security and compliance responsibilities are the primary focus, but the position will also contribute to standard development projects using .NET or Angular.
Responsibilities
- Maintain and monitor AWS cloud infrastructure, including compute, storage, networking, databases, and application hosting environments.
- Improve and monitor Consensio Health’s cloud security posture using AWS-native tools, third-party security platforms, and internal policies.
- Oversee Secureframe control monitoring, evidence collection, and recurring compliance tasks to keep security and compliance tests passing.
- Support SOC 2 audit preparation, auditor requests, evidence gathering, control validation, vendor security questionnaires, and related compliance documentation.
- Review AWS account configuration, IAM permissions, security groups, network access, encryption settings, logging coverage, and other security-sensitive infrastructure.
- Monitor security alerts, cloud logs, vulnerability findings, access activity, and infrastructure events to identify risks, misconfigurations, or suspicious activity.
- Maintain and improve technical security documentation, including cloud architecture notes, security procedures, access reviews, change documentation, incident response support materials, and audit evidence.
- Contribute to development projects using .NET or Angular when security, compliance, and infrastructure priorities allow.
- Assist with CI/CD, deployment, monitoring, environment configuration, and application infrastructure improvements across development and production systems.
- Help strengthen Consensio Health’s overall security program by identifying process gaps, recommending improvements, and supporting implementation of practical controls.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering, or a related field preferred.
- Experience maintaining, monitoring, and securing AWS cloud infrastructure.
- Experience with AWS services such as IAM, EC2, VPC, CloudTrail, CloudWatch, GuardDuty, RDS, S3, Elastic Beanstalk, or related services.
- Experience supporting SOC 2, HIPAA, HITRUST, or similar security and compliance frameworks preferred.
- Experience working with compliance automation platforms such as Secureframe or similar tools preferred.
- Development experience with .NET, C#, Angular, TypeScript, JavaScript, or similar application development technologies.
- Familiarity with CI/CD pipelines, version control, deployment processes, environment configuration, and secure development workflows.
- Understanding of secure software development principles, least privilege access, encryption, audit logging, vulnerability management, and incident response concepts.
- Ability to document technical systems, security controls, remediation steps, audit evidence, and compliance procedures clearly.
- Ability to work independently, manage recurring compliance responsibilities, and balance security priorities with development project work.
Preferred Skills
- Cloud Security Skills: AWS IAM, security groups, VPC security, encryption, logging, monitoring, vulnerability remediation, and cloud configuration.
- AWS Infrastructure Skills: EC2, S3, RDS, VPC, CloudTrail, CloudWatch, Security Hub, GuardDuty, KMS, ECR, ECS, Lambda, and environment management.
- Compliance Skills: SOC 2, HIPAA, Secureframe, audit evidence, control monitoring, access reviews, vendor questionnaires, and remediation tracking.
- Development Skills: C#/.NET and/or Angular, TypeScript, JavaScript..
- DevOps Skills: CI/CD pipelines, Git, Docker.
- Monitoring and Troubleshooting Skills: Log review, alert investigation, root cause analysis, infrastructure event review, and failed control remediation.
- Documentation and Communication Skills: Security documentation, technical procedures, audit responses, architecture notes, remediation plans, and clear communication with internal and external stakeholders., * Do you have a degree in Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering?
- Do you have experience with AWS services such as IAM, EC2, VPC, CloudTrail, CloudWatch, GuardDuty, RDS, S3, Elastic Beanstalk, or related services?
- Do you have experience supporting SOC 2, HIPAA, HITRUST, or similar security and compliance?
Benefits & conditions
Pulled from the full job description
- 401(k)
- Retirement plan
- Paid time off
- Health savings account
- Dental insurance
- Life insurance, * 401(k)
- Dental insurance
- Health savings account
- Life insurance
- Paid time off
- Retirement plan
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Is Software Engineering Over-Saturated?
Understanding and Mitigating Common Web Vulnerabilities
9 Ways to Make Money Hacking