Senior Cloud Security Engineer

Med-Metrix LLC
Parsippany-Troy Hills, NJ, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Continuous Integration Information Leak Prevention DevOps Multi-Factor Authentication Identity and Access Management Python (Programming Language)
+25 more
Key Management Network Security Machine Learning Microsoft Office Open Source Technology Open Web Application Security PCI Data Security Standards Cloud Services Zero Trust Network Access Azure Machine Learning Software Engineering Policy as Code Data Logging Google Cloud Cloud Platform System Large Language Models Peripherals Cloudformation Kubernetes Bicep Machine Learning Operations Terraform Devsecops Docker Databricks

Job description

The Senior Cloud Security Engineer will design, implement, and maintain security controls across our multi-cloud environment, with a particular emphasis on securing AI/ML workloads and leveraging AI-driven security tooling. The Senior Cloud Security Engineer will serve as a technical leader, partnering with engineering, application development, and DevOps teams to embed security into every stage of the cloud and AI development lifecycle., * Design and implement secure cloud architecture across AWS and Azure, including identity, network security, encryption, and key management

  • Implement cloud-native logging, monitoring, and threat detection to improve visibility and incident response
  • Build Infrastructure-as-Code (Terraform, CloudFormation, Bicep), Policy-as-Code, and automated compliance controls
  • Implement and enhance Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), and CNAPP capabilities
  • Conduct threat modeling, security architecture reviews, and risk assessments for cloud services and applications
  • Design and secure AI/ML environments, including MLOps pipelines, model security, inference endpoints, and AI governance
  • Assess and mitigate AI-specific threats, including prompt injection, model poisoning, adversarial attacks, and data leakage
  • Partner with engineering and data science teams to implement secure-by-design and privacy-preserving controls for regulated data
  • Develop automated detections, SOAR playbooks, and AI-driven threat hunting capabilities
  • Lead technical response to cloud and AI security incidents, including forensic analysis and remediation
  • Design and implement security controls supporting HIPAA, HITRUST, PCI DSS, SOC 2, NIST CSF, and NIST AI RMF requirements
  • Support technical readiness, evidence collection, and remediation activities for security audits and compliance assessments
  • Develop and maintain cloud security standards, technical guidance, and AI governance documentation
  • Support enterprise risk management and vendor security assessments
  • Integrate security throughout the DevSecOps lifecycle, including application, container, and secrets management
  • Develop security metrics, communicate technical risks to stakeholders, and recommend continuous security improvements
  • Mentor junior engineers and champion security best practices across engineering teams
  • Other duties as assigned
  • Use, protect and disclose patients’ protected health information (PHI) only in accordance with Health Insurance Portability and Accountability Act (HIPAA) standards
  • Understand and comply with Information Security and HIPAA policies and procedures at all times
  • Limit viewing of PHI to the absolute minimum as necessary to perform assigned duties

Requirements

  • High school diploma or equivalent required
  • 6+ years of experience in information security, with at least 4 years focused on cloud security engineering
  • Deep hands-on expertise in both AWS and Microsoft Azure, including native security services (e.g., AWS GuardDuty, Security Hub, IAM Identity Center; Microsoft Defender for Cloud, Sentinel, Entra ID)
  • Strong knowledge of IAM, zero trust architecture, network security, encryption, and secrets management in cloud environments
  • Practical experience securing AI/ML systems or LLM-based applications, or demonstrable working knowledge of AI security frameworks (OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF)
  • Proficiency in at least one scripting/programming language (Python preferred) and infrastructure-as-code tooling
  • Experience with container and orchestration security (Docker, Kubernetes, EKS/AKS)
  • Solid understanding of DevSecOps practices and CI/CD security integration
  • Hands-on experience supporting compliance programs such as HIPAA, HITRUST CSF, PCI DSS, and SOC 2 in cloud environments, including audit evidence and control implementation
  • Proficiency in Microsoft Office Suite
  • Strong interpersonal skills, ability to communicate well at all levels of the organization
  • Strong problem solving and creative skills and the ability to exercise sound judgment and make decisions based on accurate and timely analyses
  • High level of integrity and dependability with a strong sense of urgency and results oriented
  • Excellent written and verbal communication skills required

Preferred Qualifications

  • Experience with Google Cloud Platform (GCP) in addition to AWS and Azure
  • Experience deploying or securing MLOps platforms (SageMaker, Vertex AI, Azure ML, Databricks, Kubeflow)
  • Familiarity with AI-driven security platforms and building custom detections using ML techniques
  • Relevant certifications such as CISSP, CCSP, HCISPP, CCSFP (HITRUST), AWS Security Specialty, Azure Security Engineer (AZ-500), GCP Professional Cloud Security Engineer, or GIAC certifications
  • Prior experience in healthcare, health tech, or revenue cycle management environments handling PHI at scale
  • Experience with red teaming or adversarial testing of AI systems
  • Knowledge of data privacy regulations as they apply to AI training data and model outputs, particularly de-identification standards under HIPAA (Safe Harbor and Expert Determination)
  • Contributions to security communities, open-source tooling, or published research

Working Conditions

  • Travel may be required for training, conferences, etc.
  • Must possess a smart-phone or electronic device capable of downloading applications, for multifactor authentication and security purposes
  • Physical Demands: While performing the duties of this job, the employee is occasionally required to move around the work area; Sit; perform manual tasks; operate tools and other office equipment such as computer, computer peripherals and telephones; extend arms; kneel; talk and hear
  • Mental Demands: The employee must be able to follow directions, collaborate with others, and handle stress
  • Work Environment: The noise level in the work environment is usually minimal

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:19 min

Challenges of protecting sensitive data in cloud AI

Mingshen Sun Mingshen Sun · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · World Congress 2026 Europe

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

Videos

See all

Related articles

See all