> Markdown version of [/jobs/ext/2025829-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/2025829-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** National Association of Insurance Commissioners - **Location:** Kansas City, MO, United States - **Experience:** Expert - **Salary:** $107,000.0 - $142,000.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Microsoft Windows, Artificial Intelligence, Amazon Web Services, Apple Mac Systems, Microsoft Azure, Software as a Service, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Computer Networks, Continuous Integration, Linux, DevOps, Infrastructure as a Service (IaaS), Identity and Access Management, Key Management, Network Security, Platform as a Service (PAAS), Zero Trust Network Access, Azure Machine Learning, Cloud Platform System, Firewalls (Computer Science), Gitlab, Cloudformation, Containerization, Kubernetes, Infrastructure Automation Frameworks, CIS Benchmarks, Terraform, Oracle Cloud Infrastructure - **Published:** August 11, 2026 - **Apply:** https://www.jofdav.com/jobs/59186944-cloud-security-engineer ## About the Role * Bachelor's degree (B.A. or B.S.) from four-year College or university in a computer related field and 5+ years of experience in information security, with significant focus on cloud environments, and/or equivalent combination of education and technical experience. * Hands-on experience securing AWS (Azure and OCI experience are a plus). * Practical experience securing Kubernetes and containerized workloads. * Familiarity with infrastructure-as-code and CI/CD security concepts. * Strong working knowledge of: + Cloud IAM and identity federation + Network security (VPCs/VNETs, firewalls, security groups) + Encryption, key management, and secrets handling * Ability to communicate complex security concepts clearly to technical and non-technical audiences., * Experience working in regulated or compliance-driven environments (e.g., SOC 2, GovRAMP, PCI, HIPAA). * Familiarity with frameworks such as NIST 800-53, CIS Benchmarks, or Zero Trust architectures. * Experience evaluating or securing AI/ML platforms or SaaS tools. * Experience with CSPM, container security, or cloud-native security tools (vendor-agnostic). * Relevant certifications (e.g., AWS Security Specialty, CCSK, CKS, CISSP) are a plus. Systems & Technology Requirements: * AWS * Kubernetes & Container Technologies * Infrastructure-as-code tools (e.g., Terraform, CloudFormation, ARM, Gitlab) * Windows, Linux, and MacOS Endpoints * Identity & Access Management (IAM / IdP), Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time. ## Description The Security, Risk, and Compliance division of the National Association of Insurance Commissioners (NAIC) has an exciting opportunity for a Cloud Security Engineer. This position is responsible for defining, implementing, and maintaining the security architecture of the organization's cloud and cloud-native environments. This role partners closely with Cloud Engineering, DevOps, Compliance, and Risk teams to ensure cloud platforms-including Kubernetes and emerging AI-enabled technologies-are designed and operated securely, in alignment with regulatory requirements, security best practices, and organizational risk tolerance. This is a full-time hybrid position, in a positive and flexible environment. Residency within 100 miles of the Kansas City office is required., * Design, implement, and maintain secure cloud architectures across IaaS, PaaS, and SaaS platforms (e.g., AWS, Azure, OCI), including security guardrails and standards. * Develop and maintain cloud security standards and documentation and ensure cloud architecture designs align with said standards and risk management requirements. * Lead security architecture and controls for containerized and Kubernetes-based workloads, including cluster hardening and secure configuration, workload isolation and network policies, secrets management and key rotation, and container image security and supply chain integrity. * Collaborate with DevOps teams on container security tooling, runtime protection, and secure CI/CD pipelines. * Contribute to the development and architecture of an organizational AI security strategy, including governance, acceptable use, and risk controls. * Translate regulatory and compliance requirements (e.g., SOC 2, NIST, ISO 27001, GovRAMP) into actionable cloud security controls. * Evaluate and implement cloud security posture management (CSPM), container security, CI/CD security, and cloud-native security tools. Management Responsibilities: This position does not have direct reports., This position does not require overnight business travel. Employees are responsible for their personal transportation to/from the home and office, including events, meetings, and training required by the NAIC. ## Related Videos - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [#90DaysOfDevOps - The DevOps Learning Journey](https://www.wearedevelopers.com/videos/548-90daysofdevops-the-devops-learning-journey) ## Related Articles - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026)