Cybersecurity Engineer II (Public Cloud Network Security/ AWS/ Palo Alto/ AI)

American Express Company
Phoenix, AZ, United States
26 days ago
Apply on us.experteer.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Automation of Tests Cloud Computing Cloud Computing Security Code Review Cyber Security Continuous Integration Decision Support Systems Software Design Patterns Domain Name System (DNS) Github
+13 more
Virtual Private Networks (VPN) Network Security Routing Role-Based Access Control Runbook Policy as Code Data Logging Cloud-native Network Functions (CNF) Transport Layer Security Generative AI Firewalls (Computer Science) Terraform Security Orchestration, Automation & Response

Job description

Experteer Overview Enabling secure, scalable cloud networking for AWS as the primary environment, with GCP support. You design, implement, and operationalize network security controls across cloud platforms and drive automation with Terraform and CI/CD. You work with cross-functional teams to embed secure patterns and guardrails at scale, while exploring AI-assisted security workflows. This role offers the chance to influence security architecture in a Fortune 100 tech-driven company and contribute to a trusted customer experience. Compensation / Benefits * Design, implement, and maintain network security architectures across AWS and GCP * Configure native CSP security controls (security groups, NACLs, firewalls, routing, private connectivity) * Deploy and operate Palo Alto cloud network security platforms * Build reusable Terraform modules for secure cloud networking * Leverage GitHub and GitHub Actions for automated testing, validation, deployment, and lifecycle management of infrastructure and security controls * Promote CI/CD best practices, including code review, environment promotion, and rollback strategies * Implement policy-as-code and IaC to enforce security standards and guardrails * Collaborate with cloud, platform, application, and security teams to embed secure networking patterns * Develop automation to improve visibility and accelerate secure cloud adoption * Evaluate and apply generative and agentic AI to improve security engineering productivity and decision support Tasks * Hands-on experience securing public cloud environments with strong AWS expertise and working knowledge of GCP * Strong network security fundamentals (routing, segmentation, firewalls, DNS, TLS, VPNs, private connectivity, logging) * Experience with AWS-native network security services; familiarity with GCP equivalents is a plus * Experience deploying or managing Palo Alto technologies in cloud/hybrid environments * Proficiency with Terraform and infrastructure-as-code design patterns * Experience using GitHub, GitHub Actions, and modern CI/CD pipelines for infrastructure or security automation * Familiarity with policy-as-code tools for automated compliance checks, guardrails, and pre-deployment validation * Ability to write clear technical documentation, reusable standards, and runbooks * Understanding of secure software delivery, least privilege, and automated testing * Foundational knowledge of generative and agentic AI concepts and responsible AI in security contexts Key requirements *

Requirements

Security/ and security controls * Promote CI/CD best practices, including code review, environment promotion, and rollback strategies * Implement policy-as-code and IaC to enforce security standards and guardrails * Collaborate with cloud, platform, application, and security teams to embed secure networking patterns * Develop automation to improve visibility and accelerate secure cloud adoption * Evaluate and apply generative and agentic AI to improve security engineering productivity and decision support Tasks * Hands-on experience securing public cloud environments with strong AWS expertise and working knowledge of GCP * Strong network security fundamentals (routing, segmentation, firewalls, DNS, TLS, VPNs, private connectivity, logging) * Experience with AWS-native network security services; familiarity with GCP equivalents is a plus * Experience deploying or managing Palo Alto technologies in cloud/hybrid environments * Proficiency with Terraform and infrastructure-as-code design aaaa aaO_ * Experience using GitHub, GitHub Actions, and modern CI/CD pipelines for infrastructure or security automation * Familiarity with policy-as-code tools for automated compliance checks, guardrails, and pre-deployment validation * Ability to write clear technical documentation, reusable standards, and runbooks * Understanding of secure software delivery, least privilege, and automated testing * Foundational knowledge of generative and agentic AI concepts and responsible AI in security contexts Key requirements *

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos ¡ LIVE

2:50 min

Introduction and the value of runbooks

Hila Fish ¡ World Congress 2023

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters ¡ World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

1:51 min

Overview of the three Google Maps routing applications

Germån Álvarez ¡ LIVE

Videos

See all

Related articles

See all