> Markdown version of [/jobs/ext/3030550-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/3030550-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Pick and Roll II Inc. - **Location:** United States (Remote available) - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cyber Security, DevOps, Identity and Access Management, Intrusion Detection Systems, Python (Programming Language), Log Analysis, Network Segmentation, Zero Trust Network Access, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Google Cloud, Multi-Cloud, Infrastructure as Code (IaC), Cloudformation, Kubernetes, RSA Archer Platform, Terraform, Oracle Cloud Infrastructure, Devsecops, Docker - **Published:** September 22, 2026 - **Apply:** https://startup.jobs/cloud-security-engineer-oci-oracle-cloud-infrastructure-career-opportunities-9-10140327 ## About the Role * Proven multi-cloud security engineer - Command direct operational ownership of distributed cloud infrastructure security, with hands-on validation across AWS, GCP, Azure, and Oracle Cloud Infrastructure (OCI). * Cloud security architecture expert - Mastered advanced identity and access management (IAM) strategies, cloud network zoning, payload encryption standards, and systemic risk mitigation workflows. * Advanced security automation developer - Highly proficient in in Infrastructure as Code (IaC), building and deploying automated guardrails with Terraform, AWS CloudFormation, Python, and Bash. * GRC infrastructure strategist - Aligned technical, cloud-native configurations directly against global regulatory compliance and audit frameworks, including SOC 2, ISO 27001, GDPR, and HIPAA. * Surgical technical problem-solver - Apply rigorous analytical diagnostics to isolate cloud infrastructure vulnerabilities, resolve failing controls, and execute zero-disruption remediation. * High-impact client consultant - Confidently orchestrate multiple client portfolios concurrently, partnering directly with US-based technology founders, DevOps leads, and executive teams to scale cloud security maturity. * Elite technical communicator - Deliver flawless written and verbal English communication that effortlessly translates dense cloud vulnerabilities and risk vectors into actionable business value., * Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role., * Excellent written and verbal English communication skills, with the ability to engage confidently with candidates, hiring managers, and business leaders across global teams. * A reliable, high-speed internet connection and a professional home office environment that supports confidential conversations, virtual interviews, and uninterrupted collaboration. * Commitment to working a standard schedule of 8:00 AM-5:00 PM US Eastern Time (ET) to effectively support hiring managers, candidates, and cross-functional teams. Occasional flexibility to adjust working hours is expected to accommodate changing business priorities, global collaboration, and time-sensitive hiring needs. * Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities as needed. ## Description What makes this team special isn't just our technical depth; it is how we back each other up. Our strongest engineers and assessors are the ones building reusable modules, writing custom tools, jumping into channels to unblock teammates, and mentoring without being asked. From early-stage startups to regulated enterprises, you will work directly with clients, take on real ownership early, and be surrounded by people who want to see you get good. If you enjoy solving tough security problems and want to be part of a team that is scrappy enough to move fast but seasoned enough to get it right, you will be in good company here., We are seeking a Cloud Security Engineer with Oracle Cloud Infrastructure (OCI), including compute, networking, storage, and IAM experience, to help clients design, implement, and maintain security controls that meet compliance and security requirements. This role is ideal for professionals with hands-on experience in cloud security engineering, compliance frameworks, and cloud-based security best practices. You'll work closely with clients and internal teams to strengthen their cloud security posture and automate security operations across AWS, GCP, and Azure environments., * Deploy and maintain robust cloud security controls across AWS, GCP, Azure, and OCI to eliminate misconfigurations and preserve strict regulatory compliance alignment. * Execute deep-dive architectural risk assessments to surface cloud system vulnerabilities, evaluate asset exposures, and engineer targeted technical remediation blueprints. * Configure and manage enterprise security tool suites, including SIEM solutions, log analytics platforms, identity management layers, IDS/IPS tools, and vulnerability management engines. * Own the client relationship lifecycle as the primary trusted advisor for an assigned portfolio, establishing project milestones, managing communication pathways, and handling technical escalations with calm professionalism. * Programmatically enforce security controls by engineering automated, repeatable IaC deployment playbooks and security testing infrastructure. * Embed continuous security guardrails into CI/CD pipelines and containerized environments to intercept system vulnerabilities early in the software development lifecycle. * Investigate and contain cloud-related security incidents, rapidly executing forensic logic and remediation steps to restore system integrity and minimize blast radii. * Support continuous audit readiness within GRC platforms like Vanta by systematically gathering, testing, and validating cloud configuration evidence., * Validated cloud security credentials - Hold active technical certifications such as AWS Certified Security - Specialty, GCP Professional Cloud Security Engineer, CISSP, CISM, or CISA. * Container and DevSecOps engineering - Practical success auditing and isolating security boundaries within microservice architectures, Docker instances, and Kubernetes clusters. * Zero Trust deployment models - Direct execution of identity-centric security policies, network micro-segmentation, and context-aware access structures. * Commercial tenure in fast-growth environments - Documented history scaling infrastructure configurations within hyper-growth tech startups or elite managed security service providers (MSSP)., * Candidates must participate in live video interviews throughout the hiring process with camera on (non-negotiable) and be prepared to verify their identity during recruitment and onboarding. * Employment is contingent upon successful completion of identity verification and background screening, where permitted by law. * Selected candidates will participate in structured interviews with hiring managers and cross-functional stakeholders to assess role fit, experience, and alignment with Workstreet's operating principles. * Candidates will receive prompt updates and consistent communication throughout the interview process, ensuring a transparent, smooth, and engaging experience at every step. * Applicants must be authorized to work in the U.S. without the need for visa sponsorship now or in the future. Workstreet does not provide employment-based visa sponsorship or transfers for this role, including H-1B, L-1, TN, O-1, E-3, H-1B1, F-1 (OPT/CPT), J-1, or any other work-authorized visa category. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)