Cloud Security Engineer

Mtd Products Inc
Dallas, TX, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Programming Interfaces (APIs) Amazon Web Services Android Software Development Apple IOS Application Firewall Microsoft Azure Cloud Computing Security Cloud Engineering Cyber Security Linux Key Management
+21 more
Network Security Linux System Administration Machine Learning Phishing Mobile Security Google Cloud Multi-Cloud Firewalls (Computer Science) Infrastructure as Code (IaC) Cloudformation Containerization Kubernetes Hashicorp Terraform Prisma Cloud Platform Oracle Cloud Infrastructure Devsecops Serverless Computing Security Orchestration, Automation & Response Static Application Security Testing Dynamic Application Security Testing

Job description

Zimperium® is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware. Our MTD and award-winning machine learning-based engine protects against device, network, phishing and application attacks for IOS, Android and Windows devices, using a non-intrusive approach to always protect privacy of users., We are seeking a highly experienced and self-directed Senior Cloud Security Engineer to join our team. This critical role is responsible for designing, implementing, and maintaining robust security controls across our multi-cloud environment. The ideal candidate will possess deep technical knowledge, a proactive, automation-first mindset, and the ability to operate independently, taking full ownership of security responsibilities in a fast-paced environment., Multi-Cloud Security Architecture: Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments. Infrastructure as Code (IaC) & Automation: Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale. System Hardening: Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters. Security Tooling & Operations: Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls. Application & Network Defense: Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications. DevSecOps & Pipeline Security: Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable “shift-left” security practices. Secrets and Key Management: Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services. Risk & Design Review: Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase. Incident Response & On-Call: Participate in a rotating on-call schedule to address security incidents and operational issues promptly. Compliance & Reporting: Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership. Leadership & Mentorship: Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.

Requirements

Location: USA (Dallas Preferred), 8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment.

  • Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation.
  • Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI.
  • Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs.
  • Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes.
  • Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
  • Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services.
  • Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines.
  • Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager).
  • Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations.
  • Proven ability to operate independently and take ownership of critical responsibilities. Preferred Requirements:

  • Experience working within highly regulated environments, such as FedRAMP, DoD, or similar government/financial sectors.
  • Demonstrated experience with implementing and maintaining controls for security frameworks such as ISO 27001 and SOC 2.
  • Experience conducting formal threat modeling and risk analysis.
  • Experience gained from both a large enterprise environment (for process and scale) and a fast-paced startup/tech company (for agility and innovation).
  • Relevant industry certifications (e.g., CISSP, CCSP, AWS/Azure/GCP Security Specializations).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all