Senior Associate Security Engineer (Cloud Security)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+5 more
Job description
Implements advanced technical, cybersecurity, and Azure/AWS cloud security engineering capabilities across the software development lifecycle. Supports cloud security architecture reviews and applies defined approaches for configuration assessments, threat modeling, security testing, penetration testing, identity and access management, and vulnerability remediation for assigned systems and cloud services. Executes and enhances cybersecurity technologies by baselining cloud and on-premises systems, monitoring results, and adjusting configurations, automation, and processes to deliver reliable, scalable, compliant, and secure solutions with direct impact on the job area, while continuously building technical skills and knowledge., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
- Implements cybersecurity solutions that protect critical assets across Azure, AWS, and on-premises environments, contributing to cloud design and configuration decisions while following established security strategies, patterns, and guidance.
- Supports cloud security architecture reviews and performs security configuration assessments, threat modeling, and security testing for assigned platforms and services, using defined methods to identify and remediate vulnerabilities and misconfigurations.
- Integrates and configures information security technologies in Azure and AWS test and production environments, applying and adjusting approved configuration patterns, infrastructure-as-code, automation, and handoff steps for assigned systems.
- Implements and maintains cloud security controls, including identity and access management, least-privilege access, network security, encryption, logging and monitoring, vulnerability management, and secure configuration baselines.
- Uses Azure and AWS native security services and approved enterprise cloud security tools to assess security posture, investigate findings, validate remediation, and improve preventive and detective controls.
- Analyzes cloud security findings, determines applicable risk and remediation actions, collaborates with responsible engineering teams, and validates that identified security issues are appropriately resolved.
- Investigates security issues escalated within the team for services in scope, performing root-cause analysis and implementing practical fixes that prevent recurrence.
- Reviews relevant cloud threats, tools, architecture options, and shared-responsibility considerations, and provides input that supports technical plans and priorities for the job area.
- Collaborates with product, platform, application, DevOps, and engineering teammates to apply security guidelines, secure-by-design practices, cloud governance requirements, and policy-as-code controls in day-to-day development and delivery activities.
- Implements and maintains approved Azure and AWS security baselines, guardrails, and governance controls for assigned cloud services and environments, including AWS organizational guardrails and Azure policy controls within the assigned area of responsibility.
- Supports incident response and forensic analysis for assigned cloud services by following established playbooks and using approved Azure and AWS logging, monitoring, and security capabilities.
- Shares cloud security knowledge and best practices with technical teammates, offering informal guidance and support during code reviews, architecture discussions, design reviews, and pairing sessions.
- Plans and manages own work to meet defined objectives and milestones, seeking feedback, pursuing self-development, and adjusting approaches to improve quality and effectiveness over time.
Requirements
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Bachelor’s degree or equivalent education, training, and work-related experience.
- Minimum of 3 years of experience in security engineering or related cybersecurity roles.
- Developing knowledge in cybersecurity principles, theories, and concepts.
- Experience in software development lifecycle security practices.
- Proficiency in implementing and managing information security technologies., * Minimum of 3 years of experience in security engineering, cloud security engineering, or related cybersecurity roles.
- Developing knowledge of cybersecurity principles, theories, concepts, and cloud shared-responsibility models.
- Hands-on experience implementing or assessing security controls for workloads, services, or platforms in Microsoft Azure and/or Amazon Web Services (AWS).
- Experience with cloud identity and access management, network security, encryption, logging and monitoring, vulnerability management, and secure configuration practices.
- Experience using scripting, APIs, infrastructure-as-code, CI/CD pipelines, or automation to implement, assess, and maintain cloud security controls.
- Proficiency in implementing and managing information security technologies and analyzing cloud security findings through native or enterprise security tools.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The 12 Best Jobs for Software Engineers
Why Upskilling And Reskilling is Important For Developers
7 Cloud Computing Trends Coming in 2025 for Developers
Top-Paying Tech Jobs (with Salaries)