Cloud Security Engineer

A N SECURITY SOLUTIONS
San Francisco, CA, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Distributed Systems Key Management Network Segmentation Azure Machine Learning Software Vulnerability Management Cloud Platform System Software Security
+3 more
Multi-Cloud Containerization Kubernetes

Job description

Anyscale’s security needs are growing as we operate more production and cloud infrastructure for larger and more demanding customers. We’re looking for a Senior Cloud Security Engineer to own the security of that infrastructure. This is a hands-on, high-ownership role: you will own how our production and cloud environments are hardened, isolated, and monitored.

You will set and drive the direction for infrastructure and production security, reporting to the Head of Security and partnering closely with the wider engineering organization. This role is based in the San Francisco, Bay Area. In your first year, success looks like hardened and well-segmented production environments, strong runtime security coverage across our container footprint, and a clear, defensible story for how we secure the infrastructure our customers rely on.

What You’ll Do

  • Own the security posture of Anyscale’s production and cloud infrastructure across AWS and Azure, including hardening, network segmentation, and tenant isolation.
  • Own runtime security coverage across our Kubernetes environments, from deployment through detection of anomalous activity.
  • Partner with engineering on secure infrastructure architecture and the secure design of our production environments.
  • Own cloud security posture management end to end: triage, prioritization, and driving remediation with the teams that own the resources.
  • Define and drive cloud infrastructure security standards: baseline configurations, infrastructure-as-code security, and key and secrets management.
  • Drive fine-grained, role-based access to production, in partnership with engineering and IT.
  • Feed infrastructure findings into vulnerability management and risk reporting.

Requirements

  • 8+ years in security engineering, with a deep focus on cloud and infrastructure security, ideally at a high-growth startup.
  • Hands-on expertise securing multi-cloud environments (AWS and Azure) and container platforms (Kubernetes).
  • Strong grounding in infrastructure-as-code, cloud networking, and identity and access in cloud environments.
  • Experience with CSPM and runtime security tooling, and the judgment to turn findings into prioritized, actioned work.
  • The ability to own cloud infrastructure security independently, set its direction, and make sound tradeoffs across teams.
  • Fluency working directly with engineers on architecture and remediation, not just producing findings., * Experience securing multi-tenant production systems or environments that run customer workloads.
  • Familiarity with Upwind or similar CSPM and runtime platforms.
  • Experience contributing to SOC 2 or ISO 27001 evidence from the infrastructure side.
  • Background in AI or ML platforms or distributed systems.

About the company

At Anyscale, we’re on a mission to democratize distributed computing and make it accessible to software developers of all skill levels. We’re commercializing Ray, a popular open-source project that’s creating an ecosystem of libraries for scalable machine learning. Companies like OpenAI, Uber, Spotify, Instacart, Cruise, and many more, have Ray in their tech stacks to accelerate the progress of AI applications out into the real world.

With Anyscale, we’re building the best place to run Ray, so that any developer or data scientist can scale an ML application from their laptop to the cluster without needing to be a distributed systems expert.

Proud to be backed by Andreessen Horowitz, NEA, and Addition with $250+ million raised to date.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

1:22 min

Overcoming developer challenges in multi-cloud environments

Sandeep Pal Sandeep Pal · Coffee With Developers

1:41 min

Protecting etcd databases using Key Management System plugins

Alex Soto Alex Soto · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:14 min

Solving complex platform architecture challenges at an enterprise scale

Maria Apazoglou · Coffee With Developers

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

Videos

See all

Related articles

See all