> Markdown version of [/jobs/ext/1310512-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/1310512-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** ApTask - **Location:** United States (Remote available) - **Salary:** $166,400.0 - $176,800.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Computing Security, Configuration Management Databases, Cyber Security, Data Center Infrastructure Management (CIM), Identity and Access Management, Information Technology Operations, Key Management, Security Information and Event Management, Workflow Management Systems, Software Licensing, Data Logging, Google Cloud, Okta, Multi-Cloud, Enterprise Integration, Terraform, Oracle Cloud Infrastructure, GPT, Service Stack, Servicenow - **Published:** July 17, 2026 - **Apply:** https://www2.jobdiva.com/portal/?a=4ujdnwqsdebu7m13em5f0pt5dw80o500d7dv9cbq5ebzngb7yk0n43mjtefnbx0d&compid=0/jobs/28894280#/jobs/28894280 ## About the Role * Hands-on multi-cloud security experience (AWS, Azure, and GCP at minimum; OCI a plus). * Cloud security posture management (CSPM) concepts and tooling; assessment of IAM, network exposure, logging/telemetry, and encryption/key management. * ServiceNow build experience - workflows and CMDB integration. Non-negotiable; this is the engagement's core (capital) deliverable. * SIEM / log-pipeline integration (NG-SIEM, cloud log forwarding). * Proficiency with AI frontier models (e.g., ChatGPT Enterprise, Claude) applied to security-engineering work, with an understanding of secure, governed AI use in an enterprise setting. * Strong documentation skills and the operational discipline to run steady-state operations., * Direct experience with CrowdStrike (Falcon Cloud Security / NG-SIEM), Obsidian SSPM, Zscaler, Varonis DSPM, Cribl, and Okta. * Insurance, financial-services, or other regulated-industry experience (GLBA, NY Client 500). * Infrastructure-as-code familiarity (e.g., Terraform). Expectations: * Self-directed; able to operate from discovery through steady-state with light oversight; comfortable in a fast-moving, acquisition-heavy environment., * ServiceNow build proficiency (workflows + CMDB) and AI frontier model proficiency (ChatGPT Enterprise / Claude) are required. * Relevant cloud/security certifications are preferred but not required where hands-on experience is strong - for example, AWS / Azure / GCP security specialties, CCSP, CISSP, or GIAC cloud certifications. ## Description The client is a prominent global technology solutions provider, renowned for its comprehensive range of services and products tailored to meet the diverse needs of businesses. The company's core focus revolves around assisting organizations in managing and optimizing their IT operations, thereby driving productivity, efficiency, and innovation. It offers an extensive array of services, including strategic consulting, technology implementation, cloud computing, data center management, cybersecurity, software licensing, and hardware procurement. In addition to its business-to-business (B2B) services, it also serves as a valuable resource for IT professionals and decision-makers, providing valuable insights and thought leadership through its various publications, webinars, and events., * Contract Cloud Security Engineer to stand up a cloud security program across Client's multi-cloud, SaaS-heavy environment. * Over a 12-16 week engagement the resource will: (1) build an authoritative inventory of all cloud properties (AWS, Azure, GCP, OCI, and material SaaS) and land it in the ServiceNow CMDB; (2) assess cloud security posture against CIS, CSA, and NIST CSF 2.0 baselines; (3) build a cloud account onboarding and monitoring workflow in ServiceNow and integrate cloud telemetry into the existing security stack; and (4) author operational runbooks and run the program in steady state. This is a build-and-operate role - the ServiceNow workflow and CMDB integration are the core deliverable. Day-to-Day Responsibilities: * Enumerate cloud accounts, subscriptions, and projects (AWS, Azure, GCP, OCI) and Client material SaaS applications; reconcile into a ServiceNow CMDB cloud asset class. * Run cloud posture assessments; document misconfigurations and IAM, exposure, logging, and encryption gaps; risk-rank and map findings to owners; surface them in a ServiceNow posture dashboard. * Build the cloud account onboarding and monitoring workflow in ServiceNow (M&A fast-track). * Onboard cloud telemetry into CrowdStrike, Obsidian, and Varonis DSPM; configure log forwarding (Cribl) into NG-SIEM; tune detections; route alerts into SecOps. * Author operational runbooks and operate the program in steady state; provide weekly status. * Apply frontier AI models (ChatGPT Enterprise, Claude) to accelerate inventory analysis, posture assessment, runbook drafting, and workflow design., * Fully remote. Collaborative, fast-paced IT Security engineering team operating in a SAFe Agile model. ServiceNow is used for ITSM and SecOps; Zoom for collaboration. * The culture is AI-forward, with frontier models actively used across security workflows. A heavy M&A cadence means the environment changes constantly. Technology Stack: * AWS, Azure, GCP, OCI; CrowdStrike (Falcon Cloud Security, NG-SIEM); Obsidian (SSPM); Zscaler (ZIA/ZPA); Varonis DSPM; Cribl; Okta; ServiceNow (CMDB, SecOps); ChatGPT Enterprise and Claude. Team Dynamics: * Joins a security engineering team under IT Security leadership. * Works alongside the in-house ServiceNow SecOps developer on the workflow and CMDB build, and coordinates with tool owners (endpoint, network, infrastructure) and the Compliance team for regulatory mapping. Operates within SAFe Agile cadences. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [ Evaluating AI models for code comprehension](https://www.wearedevelopers.com/videos/1462-evaluating-ai-models-for-code-comprehension) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Speak, Code, Deploy: Transforming Developer Experience with Voice Commands](https://www.wearedevelopers.com/videos/1159-speak-code-deploy-transforming-developer-experience-with-voice-commands) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)