> Markdown version of [/jobs/ext/3422188-principal-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/3422188-principal-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Cloud Security Engineer - **Company:** Rocket Lab - **Location:** Long Beach, CA, United States - **Salary:** $152,300.0 - $165,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Software as a Service, Cloud Computing, Cloud Computing Security, Configuration Management, Cyber Security, Computer Networks, Databases, Continuous Integration, Data Systems, DevOps, Github, Infrastructure as a Service (IaaS), Identity and Access Management, IT Management, Python (Programming Language), Key Management, PostgreSQL, Platform as a Service (PAAS), Windows PowerShell, Systems Development Life Cycle, Power BI, Ansible, Security Support Provider Interface, Software Engineering, SQLite, Tripwire, Software Vulnerability Management, Parquet, Scripting, Google Cloud, HybridCloud, Jupyter, Gitlab, Git, Azure Security Center, Information Technology, Data Analytics, Tenable Nessus, Bitbucket, Machine Learning Operations, Puppet, Terraform, Splunk, Software Version Control, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** September 17, 2026 - **Apply:** https://startup.jobs/principal-cloud-security-engineer-rocket-lab-usa-10102333 ## About the Role * Education and Experience in IT and Cybersecurity + 12+ years of experience in scripting languages (e.g., Bash, PowerShell, Python) and configuration management/infrastructure as code tools (e.g., Puppet, Ansible, Terraform). + Bachelor's degree or equivalent years of work experience (16+ years of total work experience) * Cloud Security and Architecture Expertise + Proven experience in cloud security architecture, design, and implementation across major cloud platforms (AWS, Azure, Google Cloud). + Hands-on experience with cloud security tools and services (e.g., AWS Security Hub, Azure Security Center, Google Cloud Security Command Center). * Compliance, Vulnerability Management, and IT Governance + Experience working under US Government compliance regimes (e.g., CMMC, NIST, DISA STIG) and ITIL/Change Review systems. + Proficiency in vulnerability management systems (e.g., Tenable, Bringa) and CLI scanning tools (e.g., Trivy, OpenSCAP). * Version Control, Networking, and Secure Communication + Extensive experience with git-driven version control systems (e.g., GitHub, GitLab, Bitbucket). + Strong understanding of networking concepts, encryption techniques, and secure communication protocols. * Data and Analytics Expertise + Experience with databases (e.g., PostgreSQL, SQLite) and data formats (e.g., Parquet, Arrow). + Proficiency in analytics systems (e.g., PowerBI, Jupyter) and vendor-agnostic assessment engines (e.g., Cloud Custodian, Panther). * U.S. citizenship is required, due to program requirements., * Advanced degree in computer science, information technology, cybersecurity, or equivalent career experience * Involvement with community cybersecurity organizations * Experience with the following: + AWS GovCloud / Azure GCC High + CI/CD pipeline security + Tier 2 cloud vendors + Hybrid cloud engineering + SAST and DAST testing + Secrets management / vaults / HSMs + Cloud incident response / forensics + Log aggregators like Graylog, ELK, or Splunk This position may require prolonged periods of sitting, standing, walking, computer work, and occasional exposure to moderate levels of noise, dust, and fumes in production areas. ## Description Based onsite at Rocket Lab's office in Long Beach, CA the Principal Cloud Security Engineer must demonstrate a firm grasp of cloud-first, automated, API-driven security and statistical risk concepts and communication. They will work on securing all facets of Rocket Lab's cloud presence: the wide array of vendor services, code pipelines deploying into prod and non-prod environments, and automation performing an assortment of business-critical operations. They will provide analyses including quantifiable statistical information regarding IT and Cybersecurity risk to business partners with fiduciary responsibility. They will support the IT organization to develop a secure, reliable, and fiercely efficient platform to empower the Rocket Lab's objectives as a rapidly growing multinational space company., * Design, implement, and maintain security controls for hybrid cloud-based environments, including infrastructure as a service (IaaS), platform as a service (PaaS), software as a service (SaaS), and function as a service (FaaS) solutions. * Design and develop custom automation in pursuit of cyber team objectives. * Provide security support for internal and external design reviews related to security. * Conduct security assessments and risk analyses to identify vulnerabilities and develop mitigation strategies for automated infrastructure such as public cloud, CI/CD pipelines, and agentic systems. * Work with Infrastructure Operations to Implement and manage identity and access management (IAM) solutions to control access to cloud resources and applications. * Develop documentation, plans, and proofs of concept for cybersecurity-related platform improvements. * Configure and monitor cloud security tools and services. * Collaborate with development teams to integrate security best practices into the software development lifecycle (SDLC), DevOps, and MLOps processes. * Maintain systems to help the team stay up-to-date on emerging threats, vulnerabilities, and industry best practices related to DevSecOps/MLOps and recommend proactive measures to enhance security posture. * Provide guidance and support to internal teams on security-related matters, including incident response, compliance, and security awareness training. * Participate in regular security audits, assessments, and compliance reviews to ensure adherence to regulatory requirements and industry standards. ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Automate everything via NodeJS and Puppeteer](https://www.wearedevelopers.com/videos/322-automate-everything-via-nodejs-and-puppeteer) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)