Cloud Security Engineer (AWS & GCP

Quantum Sky Engineering Llc
United States
1 day ago
Apply on www.builtincolorado.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$115,000.0 - $140,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Amazon Web Services Amazon Elastic Compute Cloud Amazon S3 Systems Engineering JIRA Backup Devices Cloud Computing Cloud Computing Security Cloud Storage Cyber Security
+26 more
Linux Data Flow Control Identity and Access Management Issue Tracking Systems Network Architecture Network Diagrams Cloud Services Ansible Systems Integration Tripwire Virtual Machines Software Vulnerability Management Google Cloud Okta Firewalls (Computer Science) Gitlab Cloudformation Kubernetes Information Technology Palo Alto Networks Nessus Terraform Splunk Devsecops Servicenow Vulnerability Analysis

Job description

Be an Early Applicant Remote Hiring Remotely in US 115K-140K Annually Senior level Remote Hiring Remotely in US 115K-140K Annually Senior level Performs cloud security engineering across AWS and GCP, including system hardening, vulnerability remediation, compliance scanning, cloud operations, security tooling, incident response, and troubleshooting across infrastructure and identity layers. Supports FedRAMP, FISMA, and NIST 800-53 environments, participates in a 24×7 on-call rotation, maintains technical documentation, communicates with customers, and mentors junior engineers. The summary above was generated by AI, Quantum Sky is hiring a Cloud Security Engineer (AWS & GCP) to join our team of cloud, security, and compliance experts. This role is primarily focused on day-to-day security engineering, including system hardening, vulnerability remediation, cloud operations, and security tool management across AWS & GCP environments., * Perform systems administration and maintenance including patching, vulnerability scanning, compliance scanning and remediation, backups, and recovery for cloud workloads.

  • Support AWS & GCP environments, including Windows and Linux virtual machines, container workloads, and cloud services such as EC2, EBS, S3, RDS, WorkSpaces (AWS), Compute Engine, Cloud Storage, Cloud SQL (GCP), and Active Directory or equivalent identity services.
  • Configure, update, and maintain security tools for endpoint protection, log collection, vulnerability scanning, and compliance monitoring.
  • Troubleshoot issues across network, compute, application, and identity layers by reviewing logs, collecting data, and analyzing system behavior.
  • Implement hardening and compliance controls using CIS Benchmarks, DISA STIGs, and FedRAMP requirements.
  • Remediate vulnerabilities identified by tools such as Tenable, Trivy, OpenSCAP, Anchore, Twistlock, and others.
  • Provide quality assurance feedback during system deployments to ensure architecture meets compliance and operational requirements.
  • Collaborate with Security Analysts to ensure uninterrupted delivery of security services to customers.
  • Create and maintain documentation including network diagrams, dataflow diagrams, SOPs, and security tool configuration guides.
  • Support client communications, deliverables, and issue resolution with strong verbal and written communication skills.
  • Support and mentor junior engineers as and when required.
  • After-Hours 24×7 On-Call Rotation:
  • Serve as primary or backup on-call engineer during assigned rotation.
  • Respond to after-hours security alerts, infrastructure incidents, outages, and ConMon events.
  • Perform initial triage, containment, and stabilization using established runbooks.
  • Investigate and respond to alerts generated.
  • Escalate complex issues to senior engineers, architects, or compliance teams.
  • Document incidents, actions taken, and recommended improvements.
  • Contribute to automation improvements and runbook enhancements.

Requirements

  • Six (6) or more years of IT engineering and/or cybersecurity experience, with at least three (3) years working in a dedicated cloud security engineering or similar position.
  • Hands-on experience with both AWS and Google Cloud Platform (GCP).
  • Ability to diagnose and resolve issues across Linux and Windows systems, network infrastructure, and cloud services.
  • General systems administration and vulnerability management experience, including system patching and hardening, identity and access management (IAM), and related tasks.
  • Experience working in a DevSecOps environment, integrating security practices into cloud and infrastructure workflows.
  • Familiarity with ITSM ticketing systems such as Gitlab (preferred), Jira, ServiceNow, etc.
  • Ability to work independently during both business hours and on-call periods.
  • Strong written and verbal communication skills for customer interaction and incident documentation.
  • Hands-on experience with one or more of the following tools:
  • Splunk Enterprise
  • Tenable Security Center/Nessus
  • Invicti/Acunetix
  • Appgate
  • Okta
  • GitLab
  • Palo Alto Networks Firewalls
  • TrendMicro Deep Security
  • Trivy
  • Anchore
  • Terraform
  • CloudFormation
  • Ansible

Desired:

  • Bachelor’s Degree in Computer Science or other relevant field.
  • Experience supporting federal/government-facing customers or consulting engagements, ensuring compliance and operational requirements.
  • Experience with FedRAMP, FISMA, or NIST 800-53 compliance frameworks.
  • Prior on-call, SRE, SOC, or incident response experience.
  • Relevant AWS or Google Cloud Platform certifications.
  • Security+ or other relevant industry security certification.
  • Experience with infrastructure-as-code or automation tooling.
  • Experience with Kubernetes is highly desirable., * Must be a US Citizen with the ability to obtain a security clearance

Benefits & conditions

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $115,000-$140,000 This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range., * Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

About the company

The world the mission operates in is going post-quantum, contested, and machine-speed. Quantum Sky engineers the advantage across cyber, networks, software, and quantum because the mission demands dominance, not parity. We don’t follow the map. We draw it.

At Quantum Sky, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamQuantumSky?

Quantum Sky Engineering LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.builtincolorado.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

Videos

See all

Related articles

See all