Cloud Security Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+12 more
Job description
Weâre seeking a Cloud Security Engineer to join an Advanced Fusion Center (AFC) Subject Matter Expert (SME) team supporting the ongoing, day-to-day operation and monitoring of a clientâs cloud security stack. This is a steady-state operations role - SME Services focus on the ongoing day-to-day management, operation, and/or monitoring of technology platforms
Working within client-owned infrastructure under client direction. It is not a net-new build/architecture role.
Key Responsibilities:
Directly from the engagement scope, the Cloud Security Engineer will:
¡ Design and implement hybrid enterprise network architectures with segmentation, zero trust principles, and layered defenses2
¡ Maintain operational cloud security and compliance continuity around hybrid cloud systems, primarily in AWS2
¡ Support Prisma Cloud, Cortex Cloud, and CI/CD pipelines using Terraform2
¡ Apply a deep understanding of cloud native controls (Azure NSGs, AWS SGs, routing, private endpoints, ingress/egress controls)2
¡ Perform scripting, Infrastructure as Code (Ansible), and IT orchestration2 across managed platforms
¡ Implement future-proof configurations with considerations for long-term maintainability and risk reduction2
¡ Partner with business stakeholders to design secure implementation patterns and orchestration2
¡ Assess the posture of current network security assets and remediate2
Requirements
¡ AWS-primary cloud security experience - hands-on operational security and compliance in production AWS (hybrid a plus)
¡ Prisma Cloud and/or Cortex Cloud (Palo Alto CNAPP) hands-on experience - CSPM/CWPP posture management
¡ CI/CD security with Terraform - authoring and maintaining IaC in automated pipelines
¡ Cloud-native network controls - AWS Security Groups, Azure NSGs, routing, private endpoints, ingress/egress design
¡ Infrastructure as Code (Ansible) and IT orchestration platforms
¡ Zero Trust & segmentation design and operational experience
¡ Strong security posture assessment and remediation skills
Plus the SOWâs baseline SME skillsets:
¡ Proactively and reactively troubleshooting common issues within their field of expertise; Base experience in cloud, containerization, and other modern design patterns; Modern problem solving and design patterns: basic scripting, cloud, and automation; Critical thinking skills âbeyond runbooksâ and problem solving; Written and verbal communication and language skills3
Preferred Qualifications
¡ Multi-cloud exposure (Azure/Google Cloud Platform alongside AWS)
¡ Compliance framework experience (CIS, NIST, SOC 2, PCI-DSS)
¡ Container/Kubernetes security (EKS/AKS)
¡ Relevant certifications (e.g., AWS Security Specialty, Palo Alto PCCSE, Terraform Associate)
¡ CI/CD security tooling (Checkov, tfsec, Snyk, Aqua/Trivy) - note: Prisma Cloudâs IaC scanning is built on Checkov, so this experience transfers well
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
How We Built a Worry-Free System That Runs for 10+ Years â And What Weâd Do Again
Dev Digest 134 - Where pixels sing?