> Markdown version of [/jobs/ext/2564965-senior-application-and-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/2564965-senior-application-and-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Application and Cloud Security Engineer - **Company:** Proactive Logic Consulting Inc - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $160,555.0 - $228,800.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Cloud Computing Security, Continuous Integration, Data Infrastructure, Cursor (Graphical User Interface Elements), Multi-Factor Authentication, Identity and Access Management, OAuth, OpenID, Role-Based Access Control, Zero Trust Network Access, Security Assertion Markup Language (SAML), Data Streaming, Web Applications, Data Logging, Amazon Virtual Private Cloud (VPC), Static Application Security Testing, Dynamic Application Security Testing - **Published:** August 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c65194e90d2994e2 ## About the Role We're hiring a Senior Application and Cloud Security Engineer Consultant for a remote healthcare technology modernization program. This is a Corp-to-Corp 1099 engagement for a hands-on security engineer who can assess application and AWS architecture, design practical controls, and help engineering teams implement them. This is an AI-forward delivery role. Daily use of coding agents such as Claude Code, OpenAI Codex, Cursor, or equivalent tools is required. You must retain human ownership of correctness, security, testing, and production readiness. Key Requirements * 10+ years in application, cloud, platform, or product security. * Strong secure-design judgment across APIs, web applications, services, data flows, secrets, authentication, authorization, logging, and failure modes. * Hands-on AWS security experience with IAM, workload identities, VPC controls, KMS, Secrets Manager, CloudTrail, Config, GuardDuty, Security Hub, and related services. * Zero Trust and identity experience, including least privilege, OIDC/OAuth 2.0, SAML, MFA, RBAC or permission-based authorization, and privileged-access patterns. * Application-security testing and remediation experience using threat modeling, SAST, DAST, dependency scanning, container scanning, and CI/CD guardrails. * Ability to use AI coding agents to accelerate security work while protecting sensitive data and preserving human review. * Excellent client-facing communication, requirements discovery, and the ability to turn findings into prioritized implementation work. * Healthcare, pharmacy, HIPAA, PHI, or other regulated-data experience is preferred. * Must have an active LLC or S-Corp. This is 1099 Corp-to-Corp only; no W-2., * Application or cloud security: 10+ years (Required) * AWS security: 5+ years (Required) * Identity and Zero Trust: 3+ years (Required) * Consulting/client-facing delivery: 5+ years (Required) * Daily use of AI coding agents: 1+ years (Required) * Healthcare or regulated-data environments: Any (Preferred) ## Description * Review application and AWS architectures, identify priority risks, and produce clear remediation guidance. * Implement security guardrails, identity controls, cloud configuration improvements, and CI/CD checks. * Partner with engineers and stakeholders to balance risk reduction, delivery speed, operability, and cost. * Use AI coding agents to accelerate implementation while preserving evidence, testing, and accountability. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Build Delightful Mobile Experiences with Kotlin, Realm, and Atlas Device Sync](https://www.wearedevelopers.com/videos/694-build-delightful-mobile-experiences-with-kotlin-realm-and-atlas-device-sync) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Find a Developer Job: 12 Best Job Sites For Developers](https://www.wearedevelopers.com/magazine/165-find-a-developer-job-12-best-job-sites-for-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)