> Markdown version of [/jobs/ext/2710169-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/2710169-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Iterable, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $141,000.0 - $221,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, Automation of Tests, Cloud Computing Security, Continuous Integration, DevOps, Github, Identity and Access Management, Java Virtual Machine (JVM), Python (Programming Language), Reliability Engineering, Cloud Services, Prometheus, Security Software, Security Information and Event Management, Jupyter Notebook, Datadog, Load Balancing, Grafana, Infrastructure as Code (IaC), Jupyter, Gitlab, Cloudformation, Kubernetes, Terraform, Virtual Private Clouds, Devsecops, Vulnerability Analysis, Programming Languages - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-cloud-security-engineer-iterable-8922558 ## About the Role * 5+ years hands-on-keyboard in Cloud Security, SRE, DevOps, DevSecOps, or Infra Engineering. * Strong working knowledge of Kubernetes and ecosystem tools such as helm, ArgoCD. * Production experience with AWS services, particularly AWS Organizations, AWS Identity (SSO), Identity and Access Management (IAM), Service Control Policies (SCPs), Virtual Private Clouds, Elastic Load Balancers, AWS CloudTrail, and Security Groups. * Proficiency with Terraform. * Experience developing custom actions or workflows in Github or Gitlab. * Solid understanding of cloud security vulnerabilities defense techniques and security best practices, including AWS security practices and present-day threats * Proficiency in a high level programming language, such as Python or Go * Familiarity with policy management tools such as OPA or Kyverno Bonus points: * SRE Experience * Scala or JVM ecosystem experience * Familiarity with common observability tools such as Datadog, Prometheus/Grafana * Experience with AWS EKS * Experience with Panther SIEM * Hands on work standing up Jupyter notebook instances, using Jupyter operationally. ## Description * Review system designs and implementations, and consult with engineers across the organization to identify and/or avoid security issues through alignment with security standards and best practices, document and ensure security issues are appropriately remediated * Leverage subject matter expertise of systems and infrastructure to propose solutions and drive architectural improvements which address classes of security vulnerabilities * Develop and implement cloud and infrastructure security architecture and contribute to overall strategy and roadmap plans * Participate in the selection, design, development, implementation, and management of automated security testing tools, such as cloud security posture management and image vulnerability scanners * Implement solutions that integrate into CI pipelines to shift security as far left as possible and raise concerns early to engineering teams. * Promote DevSecOps principles and implement Infrastructure as Code (IaC) scanning and policy enforcement to ensure deployments via Terraform, AWS CloudFormation, or similar, are secure and compliant with standards and guidelines * Coordinate and participate in penetration tests of our cloud services, Criminal and/or civil liabilities may arise from such actions, and Iterable expressly reserves the right to take legal action, including criminal action, against such individuals/entities whenever such phenomena occur. In any case, please note that under no circumstances shall Iterable and any of its affiliates be held liable or responsible for any claims, losses, damages, expenses or other inconvenience resulting from or in any way connected to the actions of these impostors. ## Related Videos - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: 5 Security and Privacy Tools for Developers](https://www.wearedevelopers.com/magazine/710-the-overflow-5-security-and-privacy-tools-for-developers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)