> Markdown version of [/jobs/ext/190835-cloud-security-engineer-l](https://www.wearedevelopers.com/jobs/ext/190835-cloud-security-engineer-l). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer l - **Company:** Tesla, Inc. - **Location:** St. Louis, MO, United States (Remote available) - **Experience:** Starter - **Salary:** $85,000.0 - $95,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Bash Shell, Cloud Computing, Cloud Computing Security, Code Review, Cyber Security, Continuous Integration, Linux, DevOps, Monitoring of Systems, Identity and Access Management, Python (Programming Language), Networking Basics, Security Support Provider Interface, Software Vulnerability Management, Data Logging, Scripting, Kubernetes, Nessus, Cloudwatch, Terraform, Splunk, Devsecops, Vulnerability Analysis - **Published:** May 21, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=67380d5b627628c6 ## About the Role Do you have experience in Vulnerability management?, * 1-3 years of experience supporting cybersecurity, cloud security, DevSecOps, system administration, or security engineering activities. * Familiarity with security frameworks and compliance standards such as NIST RMF, STIGs, or FedRAMP concepts. * Exposure to vulnerability management, security scanning, and remediation processes. * Familiarity with Linux or Windows administration, networking fundamentals, and identity/access management concepts. * Exposure to cloud-based environments, preferably AWS or AWS GovCloud. * Eligibility for a security clearance and ability to operate within a regulated environment. Desired Experience: * Familiarity with scripting or automation technologies (e.g., Bash, Python, or similar). * Exposure to containers, CI/CD security, or infrastructure-as-code concepts (e.g., Terraform). * Familiarity with security logging and monitoring tools. * Experience with ACAS / Nessus and STIG compliance support. * Experience with Splunk, CloudWatch, or similar security logging tools. * Familiarity with Terraform or infrastructure-as-code concepts. * Container security experience (ECS/Kubernetes preferred). * Basic understanding of ATO packages and POA&M management. ## Description The Role: The Cloud Security Engineer I supports security control implementation, monitoring, and maintenance across customer-facing systems in regulated environments contributing to compliance sustainment, vulnerability remediation, system hardening, and security tooling under the guidance of senior personnel, with an expectation of growing technical depth in cloud security and secure engineering practices over time, Position Summary: The Cloud Security Engineer I supports the implementation, monitoring, and maintenance of security controls across customer-facing systems operating in regulated environments. This role contributes to compliance sustainment activities by supporting security engineering tasks, compliance evidence collection, vulnerability remediation, system hardening, and security tooling administration. The Cloud Security Engineer I operates under the guidance of senior security and engineering personnel and is expected to develop increasing technical capability in cloud security, compliance, and secure engineering practices over time. Essential Duties and Responsibilities (others may be assigned) Security Control Implementation Support * Support implementation and maintenance of technical security controls across applications and infrastructure. * Assist with security configuration of systems, services, containers, and cloud resources. * Support validation of security controls and evidence collection activities. * Participate in system hardening activities aligned with established security baselines and standards. Compliance and Security Support * Support compliance sustainment activities through artifact preparation, documentation updates, and evidence gathering. * Support ISSO activities related to SSP maintenance, control implementation evidence, and POA&M tracking. * Assist with preparation for audits, assessments, and security reviews. * Support control testing and remediation tracking activities. Vulnerability Management and Remediation * Assist with vulnerability identification, triage, and remediation coordination. * Support review of scan findings (e.g., STIG, ACAS/Nessus, container, and code scanning results). * Work with engineering and DevOps teams to track and verify corrective actions. * Support patching and remediation validation activities. Security Operations Support * Support DevOps and security personnel in monitoring security-related logging, alerting, and audit data. * Assist with investigation and documentation of security events or control anomalies. * Support access control, auditability, and least-privilege implementation practices. * Contribute to incident response and operational support activities as assigned. Secure Engineering and Change Support * Support ISSO-led security review activities for application and infrastructure changes. * Support secure configuration reviews for deployments and environment changes. * Assist engineering teams in incorporating security requirements into delivery activities. * Identify and escalate security concerns early in the change lifecycle. What Success Looks Like: * Security controls are implemented and maintained consistently across supported systems. * Vulnerabilities and findings are addressed in a timely and traceable manner. * Compliance sustainment activities are supported with accurate documentation and evidence. * Engineering and DevOps teams receive effective security support throughout delivery activities. * The engineer demonstrates continued growth in technical capability and security ownership. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The best of two worlds - Bringing enterprise-grade Linux to the vehicle](https://www.wearedevelopers.com/videos/67-the-best-of-two-worlds-bringing-enterprise-grade-linux-to-the-vehicle) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers)