Cloud Security Engineer

Screenfab, L.L.C.
Los Angeles, CA, United States
27 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$100,000.0 - $120,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Amazon Elastic Compute Cloud Audit Trail Bash Shell Business Systems Software as a Service Cloud Computing Cloud Computing Security Cyber Security Data Auditing DevOps
+19 more
Domain Name System (DNS) Identity and Access Management Information Technology Operations Virtual Private Networks (VPN) Python (Programming Language) Networking Basics Routing Windows PowerShell Remote Access Technology Information Technology Security Auditing TCP/IP Software Vulnerability Management Cloud Platform System Reliability of Systems Amazon Virtual Private Cloud (VPC) Amazon Relational Database Service Infrastructure Automation Frameworks Cloudwatch Terraform

Job description

Work Arrangement: Hybrid - Primarily remote (Greater Los Angeles area) with bi-weekly on-site presence at our Valley Village office for in-person collaboration, meetings, project work, and on-site coverage when needed., Primary Focus: AWS, Security & Auditing

  • Support the administration and security of AWS cloud infrastructure including IAM, VPC, EC2, RDS, CloudWatch, VPN, routing, and CIDR/IP range management.
  • Administer AWS IAM policies, roles, groups, and least-privilege access controls.
  • Support identity governance activities including access reviews, permission cleanup, role-based access alignment, SSO integrations, MFA, and related identity security controls.
  • Support cloud security monitoring, alert triage, vulnerability follow-up, and incident response activities.
  • Help enforce cloud security standards, secure configuration baselines, and least-privilege practices.
  • Participate in regular security audits across cloud infrastructure, identity systems, endpoints, and SaaS platforms.
  • Document audit findings, control gaps, remediation actions, and maintain audit evidence and security documentation.
  • Track remediation efforts and support alignment of security controls with established frameworks such as SOC 2, NIST CSF, ISO 27001, and CCPA.
  • Assist with AWS infrastructure monitoring, alerting, and operational visibility using CloudWatch dashboards, alerts, and notifications.
  • Support AWS billing review, cost visibility, and optimization tracking.
  • Assist with infrastructure configuration and automation using Terraform and AWS Systems Manager (SSM).

Secondary Focus: Tier 2/3 Support & Enterprise Security

  • Provide Tier 2/3 technical support for cloud systems, identity platforms, remote access, and security-related issues escalated from frontline support.
  • Support end users and internal teams with Tier 2/3 access, authentication, device, and connectivity issues that require deeper cloud or security expertise.
  • Troubleshoot service interruptions, coordinate follow-up actions, and communicate updates to stakeholders while partnering with frontline support on issue resolution.
  • Work on both escalated support tickets and larger cloud/security projects (e.g., IAM redesign, audit remediation, security tooling rollouts).
  • Collaborate with the help desk / frontline support function to ensure efficient handoff of Tier 1 versus Tier 2/3 issues as business needs require.
  • Support the administration and continuous improvement of enterprise security controls across cloud, identity, endpoint, collaboration, and SaaS environments.
  • Participate in organization-wide security initiatives including policy implementation, security reviews, risk reduction efforts, and remediation tracking.
  • Help assess security posture across business systems and contribute to recommendations that improve overall enterprise security resilience.
  • Serve as an on-site backup to the IT Director for critical in-office needs at the Valley Village location when physical presence is required (e.g., hardware access, vendor visits, office-specific troubleshooting).

Growth Goals

  • Develop toward broader DevOps engineering capabilities, including infrastructure automation, deployment support, systems reliability, and operational efficiency in cloud environments.
  • Evaluate practical AI-driven tools that can improve security operations, access reviews, audit preparation, reporting, and IT workflow efficiency.
  • Identify responsible uses of AI for automation, analysis, and operational productivity within cloud and security functions.
  • Stay current with emerging AI capabilities relevant to cloud security and provide recommendations for safe adoption.
  • Over time, develop the capability to back up the IT Director in administering core productivity and collaboration environments during planned absences.

Documentation & Collaboration

  • Maintain accurate documentation for AWS configurations, IAM policies, audit records, and security procedures.
  • Collaborate with cross-functional teams to improve security controls and support project delivery.
  • Provide clear communication and knowledge sharing with internal stakeholders.

Requirements

As a Cloud Security Engineer, you will support the design, implementation, and day-to-day administration of secure cloud infrastructure with a strong emphasis on AWS, identity and access management, and security auditing. This role’s primary focus is AWS cloud security, IAM configuration and governance, security operations, and audit participation and remediation. Secondary responsibilities include Tier 2/3 support and broader enterprise security support as needed, including acting as on-site backup when the IT Director is unavailable and in-office presence is required. The ideal candidate brings a solid foundation in AWS and cloud security, strong attention to detail, and an interest in growing further in cloud security engineering. Over time, this role is expected to expand in scope toward broader DevOps engineering capabilities, practical AI adoption, greater ownership of security initiatives, and the ability to back up the IT Director in administering core productivity and, This position requires excellent project and time management skills as well as the following qualifications, * 2-5 years of experience in cloud infrastructure, cloud security, systems administration, or a related IT/security role.

  • Hands-on experience with AWS, especially IAM, VPC, EC2, CloudWatch, VPN, routing, and identity-related administration.
  • Experience with IAM configuration, access control, permission reviews, security auditing, and cloud security responsibilities.
  • Familiarity with security documentation, audit preparation, control validation, and remediation tracking.
  • Working knowledge of SSO, MFA, least-privilege access, and identity governance concepts.
  • Familiarity with Terraform, AWS Systems Manager (SSM), or other infrastructure automation tools.
  • TCP/IP, DNS, VPN, and general networking fundamentals.
  • Ability to troubleshoot Tier 2/3 operational issues and provide hands-on escalated support when needed.

Preferred

  • AWS certifications preferred, especially AWS Certified Security - Specialty, AWS Certified Solutions Architect - Associate, or AWS Certified SysOps Administrator - Associate.
  • Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
  • Exposure to compliance or security frameworks such as SOC 2, NIST CSF, ISO 27001, or CCPA.
  • Experience with enterprise security initiatives across SaaS, endpoint, identity, or collaboration environments.
  • Interest in evaluating AI-driven tools for security and IT operations.
  • Scripting and automation experience (PowerShell, Python, or Bash).

Benefits & conditions

Pulled from the full job description Tuition reimbursement 401(k) Health insurance Retirement plan 401(k) matching Paid time off Vision insurance, * 401(k)

  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance

About the company

Screen Engine/ASI - the leading technology innovator in media and entertainment market research, is seeking a Cloud Security Engineer to help secure, monitor, and improve our cloud-first technology environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:51 min

Audience questions on cloud security and operational capacity

Steffen Heilmann · World Congress 2021

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:51 min

Overview of the three Google Maps routing applications

Germán Álvarez · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all