> Markdown version of [/jobs/ext/461280-cloud-security-engineer](https://www.wearedevelopers.com/jobs/ext/461280-cloud-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security Engineer - **Company:** Tiger Security - **Location:** Philadelphia, PA, United States (Remote available) - **Experience:** Experienced - **Salary:** $90,000.0 - $130,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cloud Engineering, Cyber Security, Computer Networks, Continuous Integration, DevOps, Identity and Access Management, Python (Programming Language), Peering, Windows PowerShell, Zero Trust Network Access, Security Information and Event Management, Google Cloud, Cloud Platform System, Microsoft Power Automate, Multi-Cloud, Amazon Virtual Private Cloud (VPC), Cloudformation, Infrastructure Automation Frameworks, Information Technology, Bicep, Patch Management, Opsworks, CIS Benchmarks, Purple Team (Cyber Security), Terraform, Devsecops - **Published:** June 3, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=706ebaefec9f6a1e ## About the Role Do you have a valid AWS Certified Security - Specialty certification?, Do you have experience in Zero Trust security?, Do you have a Bachelor's degree?, In-depth understanding of: * Microsoft Azure and Entra ID, including conditional access, PIM, and Defender for Cloud * Google Cloud Platform (GCP) security services, including Security Command Center, IAM, and VPC Service Controls * Amazon Web Services (AWS) security services, including IAM, GuardDuty, Security Hub, and AWS Config * Cloud identity and access management principles and zero trust architecture Working knowledge of: * Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP) * Infrastructure-as-Code (IaC) tools such as Terraform, Bicep, or CloudFormation * Networking concepts as applied to cloud environments (VPCs, peering, private endpoints, firewalls) * SIEM and EDR technologies in cloud-integrated environments Experience with: * CI/CD pipeline security and DevSecOps practices * Organizing or supporting penetration testing, purple team exercises, or cloud-focused security assessments * Compliance frameworks relevant to cloud environments (e.g., CIS Benchmarks, NIST CSF, SOC 2) Moderate experience with: * Scripting and automation using Python, PowerShell, or Bash * Automation via tools such as Power Automate, Logic Apps, or cloud-native orchestration services, * Punctuality and timely attendance to external client and internal stakeholder needs. * A bachelor's degree in Information Technology, Computer Science, or a similar field of study, or equivalent experience. * 3+ years of hands-on experience in cloud security engineering or a related role, with demonstrable experience across at least two of the three major cloud platforms (Azure, GCP, AWS). * Relevant cloud security certifications preferred (e.g., AZ-500, SC-100, Google PCSE, AWS Security Specialty). * A passion for learning about cloud security, emerging technologies, and threat landscapes. * Excellent verbal and written communication skills. * Strong time management and organizational skills., These Essential Functions, Requirements, and Skills are guidelines. If you are a candidate who does not meet this exact job description but can demonstrate excellent organization, attention to detail, professionalism, flexibility, and self-direction in your professional background, we hope you apply. SRA values a diverse workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, and veterans to apply. ## Description Security Risk Advisors Intl., LLC (SRA) is offering a Cloud Security Engineer position. This role is responsible for designing, implementing, and maintaining security controls across SRA's multi-cloud environment, spanning Microsoft Azure/Entra ID, Google Cloud Platform (GCP), and Amazon Web Services (AWS). The Cloud Security Engineer will work closely with internal IT, security operations, and engineering teams to ensure cloud infrastructure is deployed and maintained in a secure, compliant, and resilient manner., * Design, implement, and maintain cloud security architectures across Azure/Entra ID, GCP, and AWS environments. * Administer and continuously improve cloud identity and access management (IAM) policies, roles, and privilege models across all three platforms. * Monitor cloud environments for misconfigurations, threats, and vulnerabilities using cloud-native and third-party security tooling (e.g., Defender for Cloud, Security Command Center, AWS Security Hub). * Operationalize cloud vulnerability and patch management processes, ensuring timely remediation of identified risks. * Implement and maintain Cloud Security Posture Management (CSPM) solutions to enforce security baselines and compliance standards. * Develop and enforce cloud security policies, standards, and guardrails (e.g., Azure Policy, GCP Organization Policies, AWS SCPs). * Collaborate with engineering and DevOps teams to embed security into CI/CD pipelines and infrastructure-as-code (IaC) workflows. * Conduct cloud security assessments and architecture reviews for new and existing environments. * Support incident response activities related to cloud infrastructure, including investigation, containment, and remediation. * Create and maintain technical documentation for cloud security architectures, configurations, and operational procedures. * Research and evaluate emerging cloud security technologies and provide recommendations for adoption. * Develop detection content and security analytics in SRA's internal SOC applicable to cloud environments. ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Transforming Education: A Journey from interactive Markdown to Remote-Labs](https://www.wearedevelopers.com/videos/941-transforming-education-a-journey-from-interactive-markdown-to-remote-labs) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)