Senior Cloud Security Engineer - InfoSec
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Cloud security plays a similar role at Mercury. Our customers come for products that feel remarkably simple. Behind that simplicity is an infrastructure that quietly protects billions of dollars, preserves customer trust, and gives engineers the confidence to move quickly. We’re looking for a Cloud Security Engineer who enjoys building those invisible supports.
Protecting our customers’ security and privacy is a top priority. We’re all about using the latest technology to do things smarter. That’s why we need a Cloud Security Engineer. This person will be our go-to for designing the systems, guardrails, and automation that allow Mercury to scale without compromising security or slowing down engineering. The ideal candidate should be ready and willing to come up with innovative solutions leveraging the newest technologies to address the unique problems they encounter. We work with teams across the enterprise to solve security, privacy, and compliance challenges so be ready to collaborate.
Come be a part of helping us stay safe and maintain trust with our customers!
As we gear up for the next stages of Mercury’s growth, you will:
- Help build and define cloud security posture. Enable cyber resilience. Help with zero trust initiatives.
- Have an understanding of Governance, Risk and Compliance as it relates to cloud engineering
- Work with the infrastructure and other engineering teams to improve the overall reliability and security of our cloud infrastructure
- Automate cloud security controls to ensure threats, vulnerabilities, and risk are minimized
- Shape Mercury’s AWS cloud architecture around resilience, least privilege, and long-term maintainability
- Work with teams throughout Mercury to address remote access challenges in a remote-first environment
- Work with teams and stakeholders throughout Mercury to address security concerns in the cloud.
Requirements
- 5+ years relevant experience in cloud security, networking, information security, or other relevant fields.
- A strong desire to learn and grow and proven track record of doing so.
- Familiarity with standard security frameworks and privacy regulations (NIST CSF, FFIEC, SOX, SOC2, GLBA, ISO27018, PCI-DSS, etc.)
- Deep problem-solving and analytical skills, and poise and ability to act calmly and competently in high-pressure, high-stress situations.
- A fundamental understanding of accepted security practices, troubleshooting issues, attack vectors, and customer support.
- Familiarity with information as code (IaC) tooling.
- AWS certifications are encouraged.
Benefits & conditions
The total rewards package at Mercury includes base salary, equity (stock options/RSUs), and benefits. Our salary and equity ranges are highly competitive within the SaaS and fintech industry and are updated regularly using the most reliable compensation survey data for our industry. New hire offers are made based on a candidate’s experience, expertise, geographic location, and internal pay equity relative to peers.
Our target new hire base salary ranges for this role are the following:
- US employees (any location): $166,600 - $208,300
-
Canadian employees (any location): CAD 157,400 - 196,800
- Mercury is a fintech company, not an FDIC-insured bank. Banking services provided through Choice Financial Group and Column N.A., Members FDIC.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
9 Ways to Make Money Hacking
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Understanding and Mitigating Common Web Vulnerabilities