> Markdown version of [/jobs/ext/2105798-security-engineer](https://www.wearedevelopers.com/jobs/ext/2105798-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Randstad - **Location:** Brooklyn Park, MN, United States - **Experience:** Experienced - **Salary:** $212,451.0 - $222,851.0 - **Contract:** Contract - **Skills:** Agile Methodology, Amazon Web Services, Automation of Tests, Microsoft Azure, Bash Shell, Bioinformatics, Cloud Computing, Cloud Computing Security, Cloud Engineering, Continuous Integration, Github, Python (Programming Language), Security Software, Policy as Code, Google Cloud, Multi-Cloud, Backend, Information Technology, Production Code, Terraform - **Published:** August 18, 2026 - **Apply:** https://www.randstadusa.com/jobs/4/1343834/security-engineer_minneapolis/ ## About the Role Agile environments,AWS,AWS environment,backend,Bash,cloud infrastructure,Cloud Security,Cloud Security Posture,CI/CD pipelines,GitHub,GitHub Actions,GCP,Google Cloud Platform (GCP),Azure,policy-as-code,production code,Python,automated security,Terraform,strong problem-solving skills,Scripting and automation,Google Cloud Platform (GCP),infrastructure engineering,public cloud platforms,risk reduction,Security,security engineering ## Description job summary: ABOUT THE ROLE We are seeking an experienced Cloud Security Engineer to drive the security remediation of our public cloud platforms across GCP, Azure, and AWS. In this role, you will elevate our cloud security posture by designing secure deployment patterns, implementing Policy-as-Code, and modernizing our Cloud Security Posture Management capabilities. You will collaborate across cloud engineering, infrastructure, and security teams to build scalable, automated controls that protect enterprise assets. location: Brooklyn Park, Minnesota job type: Contract salary: $102.14 - 107.14 per hour work hours: 8am to 5pm education: Bachelors responsibilities: DAY-TO-DAY RESPONSIBILITIES Develop and publish security standards and reference architectures for common cloud deployment patterns in GCP, Azure, and AWS. Build reusable Terraform modules and automation scripts to enable secure adoption by engineering teams. Evaluate, test, and implement CSPM solutions, with a strong focus on Wiz, to build an enterprise-ready CSPM environment. Design, develop, test, and maintain enterprise Policy-as-Code libraries using Open Policy Agent (OPA) to enforce secure cloud deployment standards. Collaborate with cloud engineering, infrastructure, and security teams to identify and remediate cloud security risks. Develop scalable automation and security controls that improve cloud governance and reduce operational risk. qualifications: Active Google Cloud Platform (GCP) Professional Certification. 5+ years of hands-on cloud engineering experience supporting GCP in enterprise environments. Proven hands-on experience writing and maintaining Policy-as-Code (OPA/Rego, Sentinel, or CEL). Hands-on experience with Wiz for Cloud Security Posture Management (CSPM) and risk remediation. 3+ years of experience building and maintaining production Terraform code. PREFERRED QUALIFICATIONS Experience supporting multi-cloud environments including Azure and/or AWS. Strong scripting capabilities using Python or Bash integrated into CI/CD pipelines (GitHub Actions, Atlantis). Bachelor's degree in Computer Science, Information Technology, or a related technical field. skills: Agile environments,AWS,AWS environment,backend,Bash,cloud infrastructure,Cloud Security,Cloud Security Posture,CI/CD pipelines,GitHub,GitHub Actions,GCP,Google Cloud Platform (GCP),Azure,policy-as-code,production code,Python,automated security,Terraform,strong problem-solving skills,Scripting and automation,Google Cloud Platform (GCP),infrastructure engineering,public cloud platforms,risk reduction,Security,security engineering Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status. At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact HRsupport@randstadusa.com. Pay offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including: medical, prescription, dental, vision, AD&D, and life insurance offerings, short-term disability, and a 401K plan (all benefits are based on eligibility). This posting is open for thirty (30) days. , DAY-TO-DAY RESPONSIBILITIES Develop and publish security standards and reference architectures for common cloud deployment patterns in GCP, Azure, and AWS. Build reusable Terraform modules and automation scripts to enable secure adoption by engineering teams. Evaluate, test, and implement CSPM solutions, with a strong focus on Wiz, to build an enterprise-ready CSPM environment. Design, develop, test, and maintain enterprise Policy-as-Code libraries using Open Policy Agent (OPA) to enforce secure cloud deployment standards. Collaborate with cloud engineering, infrastructure, and security teams to identify and remediate cloud security risks. Develop scalable automation and security controls that improve cloud governance and reduce operational risk. ## Related Videos - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Developing the Backend with Stefan Lingler, CTO at Shpock](https://www.wearedevelopers.com/videos/100360-developing-the-backend-with-stefan-lingler-cto-at-shpock) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Empowering Developer Innovation - Balancing Speed, Security, and Scale](https://www.wearedevelopers.com/videos/1689-empowering-developer-innovation-balancing-speed-security-and-scale) - [Bringing AI Model Testing and Prompt Management to Your Codebase with GitHub Models](https://www.wearedevelopers.com/videos/1536-bringing-ai-model-testing-and-prompt-management-to-your-codebase-with-github-models) ## Related Articles - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Best Countries for Software Engineers](https://www.wearedevelopers.com/magazine/267-best-countries-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)