Cloud Security Engineer

Consensiohealth LLC
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) .NET Framework Access Network Amazon Web Services Amazon Elastic Compute Cloud Amazon S3 Audit Trail C Sharp (Programming Language) Software as a Service Cloud Computing Cloud Computing Security Cloud Engineering
+21 more
Cyber Security Information Systems Databases Continuous Integration DevOps Identity and Access Management Automation of Marketing Secure Coding Software Engineering TypeScript Software Vulnerability Management Data Logging Amazon Virtual Private Cloud (VPC) Git Amazon Relational Database Service AngularJS Information Technology Cloudwatch Elastic Beanstalk Software Version Control Docker

Job description

The Cloud Security Engineer is responsible for maintaining and monitoring Consensio Health’s AWS cloud infrastructure, cloud security posture, and compliance readiness. This role will oversee SOC 2 compliance activities, manage Secureframe evidence and control monitoring, help prepare for audits, and ensure cloud infrastructure and application environments remain secure, reliable, and aligned with internal policies.

This is a hybrid security, infrastructure, and development role. Security and compliance responsibilities are the primary focus, but the position will also contribute to standard development projects using .NET or Angular.

Responsibilities

  • Maintain and monitor AWS cloud infrastructure, including compute, storage, networking, databases, and application hosting environments.
  • Improve and monitor Consensio Health’s cloud security posture using AWS-native tools, third-party security platforms, and internal policies.
  • Oversee Secureframe control monitoring, evidence collection, and recurring compliance tasks to keep security and compliance tests passing.
  • Support SOC 2 audit preparation, auditor requests, evidence gathering, control validation, vendor security questionnaires, and related compliance documentation.
  • Review AWS account configuration, IAM permissions, security groups, network access, encryption settings, logging coverage, and other security-sensitive infrastructure.
  • Monitor security alerts, cloud logs, vulnerability findings, access activity, and infrastructure events to identify risks, misconfigurations, or suspicious activity.
  • Maintain and improve technical security documentation, including cloud architecture notes, security procedures, access reviews, change documentation, incident response support materials, and audit evidence.
  • Contribute to development projects using .NET or Angular when security, compliance, and infrastructure priorities allow.
  • Assist with CI/CD, deployment, monitoring, environment configuration, and application infrastructure improvements across development and production systems.
  • Help strengthen Consensio Health’s overall security program by identifying process gaps, recommending improvements, and supporting implementation of practical controls.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering, or a related field preferred.
  • Experience maintaining, monitoring, and securing AWS cloud infrastructure.
  • Experience with AWS services such as IAM, EC2, VPC, CloudTrail, CloudWatch, GuardDuty, RDS, S3, Elastic Beanstalk, or related services.
  • Experience supporting SOC 2, HIPAA, HITRUST, or similar security and compliance frameworks preferred.
  • Experience working with compliance automation platforms such as Secureframe or similar tools preferred.
  • Development experience with .NET, C#, Angular, TypeScript, JavaScript, or similar application development technologies.
  • Familiarity with CI/CD pipelines, version control, deployment processes, environment configuration, and secure development workflows.
  • Understanding of secure software development principles, least privilege access, encryption, audit logging, vulnerability management, and incident response concepts.
  • Ability to document technical systems, security controls, remediation steps, audit evidence, and compliance procedures clearly.
  • Ability to work independently, manage recurring compliance responsibilities, and balance security priorities with development project work.

Preferred Skills

  • Cloud Security Skills: AWS IAM, security groups, VPC security, encryption, logging, monitoring, vulnerability remediation, and cloud configuration.
  • AWS Infrastructure Skills: EC2, S3, RDS, VPC, CloudTrail, CloudWatch, Security Hub, GuardDuty, KMS, ECR, ECS, Lambda, and environment management.
  • Compliance Skills: SOC 2, HIPAA, Secureframe, audit evidence, control monitoring, access reviews, vendor questionnaires, and remediation tracking.
  • Development Skills: C#/.NET and/or Angular, TypeScript, JavaScript..
  • DevOps Skills: CI/CD pipelines, Git, Docker.
  • Monitoring and Troubleshooting Skills: Log review, alert investigation, root cause analysis, infrastructure event review, and failed control remediation.
  • Documentation and Communication Skills: Security documentation, technical procedures, audit responses, architecture notes, remediation plans, and clear communication with internal and external stakeholders., * Do you have a degree in Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering?
  • Do you have experience with AWS services such as IAM, EC2, VPC, CloudTrail, CloudWatch, GuardDuty, RDS, S3, Elastic Beanstalk, or related services?
  • Do you have experience supporting SOC 2, HIPAA, HITRUST, or similar security and compliance?

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Retirement plan
  • Paid time off
  • Health savings account
  • Dental insurance
  • Life insurance, * 401(k)
  • Dental insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Retirement plan

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:51 min

Audience questions on cloud security and operational capacity

Steffen Heilmann · WWC 2021

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all