> Markdown version of [/jobs/ext/1677009-lead-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/1677009-lead-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Cloud Security Engineer - **Company:** Chamberlain Group - **Location:** Oak Brook, IL, United States - **Experience:** Expert - **Salary:** $102,600.0 - $193,425.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Identity and Access Management, Network Segmentation, PCI Data Security Standards, Zero Trust Network Access, Runbook, Security Information and Event Management, Software Engineering, Data Logging, Cloud Platform System, Multi-Cloud, Amazon Virtual Private Cloud (VPC), Cloudformation, Kubernetes, Infrastructure Automation Frameworks, Information Technology, Bicep, Terraform, Devsecops, Serverless Computing, Docker, Key Vault - **Published:** July 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=cbfd60dafd761191 ## About the Role Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field., * 7+ years of progressive experience in information security, with at least 4 years focused on cloud security engineering., * Deep hands-on experience with both AWS and Microsoft Azure security services, including: AWS: IAM, GuardDuty, Security Hub, CloudTrail, Config, KMS, VPC security, WAF, Organizations/SCPs. Azure: Entra ID, Defender for Cloud, Azure Policy, Key Vault, NSGs, Azure Monitor, Sentinel. * Strong experience with cloud security posture management (CSPM) platforms (e.g., Wiz, Orca, Rapid7 InsightCloudSec, CrowdStrike Falcon Cloud Security, or equivalent). * Working knowledge of Infrastructure-as-Code (Terraform, CloudFormation, or ARM/Bicep templates) and securing IaC pipelines. * Experience with container security (Docker, Kubernetes) and serverless security patterns. Capable of persuading non-security leaders (e.g., IT Ops, Engineering, Product) by linking security initiatives to operational continuity, consumer trust, and compliance posture. * Solid understanding of network security principles applied to cloud environments (VPCs, transit gateways, private endpoints, zero trust network architecture). * Familiarity with CI/CD security integration and DevSecOps practices. * Ability to communicate complex technical concepts to both engineering peers and non-technical stakeholders. * Collaborative approach to working across engineering, IT, and product teams. Other: * Required to be in the office at least three days a week. Monday and Wednesday are mandatory. * Ability to manage and monitor major incidents during non-business hours Preferred Qualifications Education/Certifications: * AWS Security Specialty, Azure Security Engineer Associate (AZ-500), CCSP, CISSP, or equivalent Experience: * Experience with cloud detection and response (CDR) tooling and cloud-native threat detection #LI-Hybrid ## Description The Cloud Security Senior Engineer is responsible for designing, implementing, and maintaining security controls across AWS and Azure cloud environments. The ideal candidate brings deep hands-on experience securing multi-cloud environments in fast-paced, transformation-driven organizations with the ability to work directly with highly technical teammates.Architect and enforce cloud security controls across AWS and Azure, including IAM policies, network segmentation, encryption, and logging configurations. * Manage and optimize cloud security posture management (CSPM) and cloud workload protection (CWPP) tooling * Conduct cloud security assessments, identify misconfigurations, and drive remediation with engineering teams. * Design and implement guardrails for Infrastructure-as-Code (IaC) pipelines (Terraform, CloudFormation, Bicep) to prevent insecure deployments * Monitor and respond to cloud-specific threats, integrating cloud telemetry into SIEM and detection workflows * Evaluate and harden container and serverless architectures (EKS, ECS, Lambda, AKS, Azure Functions). * Develop and maintain cloud security standards, reference architectures, and runbooks. * Support incident response activities for cloud-based security events. * Partner with Engineering, and Application Development teams to embed security into CI/CD pipelines. * Provide technical input on cloud security tooling decisions, vendor evaluations, and proof-of-concept testing * Stay current on cloud provider security features, emerging threats, and evolving compliance requirements (SOC 2, ISO 27001, NIST CSF, PCI DSS as applicable). * Comply with health and safety guidelines and rules; managers should also ensure compliance across their teams. * Protect Chamberlain Group's reputation by keeping information confidential. * Maintain professional and technical knowledge by attending educational workshops, reading professional publications, establishing personal networks, and participating in professional societies. * Contribute to the team effort by accomplishing related results and participating on projects as needed. * Motivate and lead a high performance team by attracting, developing, engaging and retaining team members * Drive the performance management and compensation processes by communicating job expectations, monitoring and evaluating performance, providing feedback and facilitating employee development per the company's policies * Maintain transparent communication by appropriately communicating organization information to team through department meetings, one-on-one meetings, appropriate email, IM and regular interpersonal communications * Lead and motivate individuals and teams to create a workplace culture that is consist ## Related Videos - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Enterprise-Cloud-Native - Fast-Paced Development & Deployment in a Highly Secure Banking Environment](https://www.wearedevelopers.com/videos/671-enterprise-cloud-native-fast-paced-development-deployment-in-a-highly-secure-banking-environment) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)