> Markdown version of [/jobs/ext/534127-sr-engineer-information-security-cloud-security](https://www.wearedevelopers.com/jobs/ext/534127-sr-engineer-information-security-cloud-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Engineer, Information Security (Cloud Security) - **Company:** Sony Pictures Entertainment Inc. - **Location:** Culver City, CA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon S3, Cloud Computing Security, Cloud Engineering, Cyber Security, Data Integrity, Data Transformation, Data Security, Identity and Access Management, Python (Programming Language), Parsing, Shell Script, Security Information and Event Management, Data Ingestion, Mitre Att&ck, Cloudformation, Microsoft Fabric, Data Lakes, Information Technology, Data Analytics, Enterprise Integration, Cortex XSOAR Platform, AWS Data Analytics, Terraform, Splunk, Data Pipelines, Security Orchestration, Automation & Response - **Published:** June 5, 2026 - **Apply:** https://dejobs.org/x/x/0FEFB30C8921468797AD0947229965A2/job/ ## About the Role * Experience: * Minimum of 4-6 years of experience in information security. * Significant hands-on experience designing, implementing, and managing data ingestion pipelines, with a strong emphasis on Fluent Bit. * Proven experience working with AWS Data Lake architecture and related services (e.g., S3, IAM, Glue, Athena). * Experience with Cortex XSOAR or other SOAR platforms. * Strong experience with Splunk or other SIEM tools. * Deep understanding of data lake security best practices on AWS. * Proficient in scripting languages (e.g., Python, Shell scripting). * Experience with infrastructure-as-code (IaC) tools like Terraform or CloudFormation is a plus. * Skills: * Strong understanding of data ingestion methodologies and best practices. * Excellent analytical and problem-solving skills, particularly in troubleshooting data pipelines. * Solid understanding of security principles and practices. * Ability to work independently and as part of a team. * Strong communication and interpersonal skills. * Knowledge of common attack frameworks like MITRE ATT&CK. * Education: Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience). * Certifications (Preferred): * AWS Certified Data Analytics - Specialty * AWS Certified Security - Specialty * AWS Certified Data Engineer ## Description We are seeking a highly motivated and experienced Information Security Cloud Engineer to join our dynamic security team. This critical role will focus on building and maintaining robust data ingestion pipelines into our AWS Data Lake, primarily leveraging Fluent Bit, while also developing and implementing security solutions centered around Cortex XSOAR. The ideal candidate will possess a deep understanding of data ingestion methodologies, AWS Data Lake architecture, security automation, and SIEM technologies. You will be instrumental in ensuring the secure and efficient collection and processing of security-relevant data to proactively detect and respond to threats.Responsibilities: * Data Ingestion (Fluent Bit & AWS Security Data Lake): * Architect, implement, and manage scalable and reliable data ingestion pipelines from various sources into the AWS Data Lake using Fluent Bit/App Fabric etc. * Design and configure Fluent Bit agents for efficient log collection, parsing, and routing. * Troubleshoot and optimize data ingestion pipelines for performance and reliability. * Implement data transformation and enrichment processes during ingestion. * Ensure data integrity and quality throughout the ingestion process. * Security Data Lake (AWS): * Design and implement robust security controls for our AWS Data Lake environment. * Develop and enforce data access policies and encryption standards within the data lake. * Monitor data lake activity for security threats and unauthorized access using AWS security services. * Conduct security assessments and participate in hardening the data lake infrastructure. * SOAR (Cortex XSOAR) Operations: * Design, develop, and maintain security automation playbooks using Cortex XSOAR, leveraging data from the AWS Data Lake and other sources. * Integrate various security tools and platforms with Cortex XSOAR to automate incident response workflows triggered by data lake analytics. * Troubleshoot and optimize existing SOAR playbooks to improve efficiency and effectiveness based on data lake insights. * Develop and maintain custom integrations and scripts as needed. * Use Case Development: * Collaborate with security analysts and incident responders to identify and develop new security use cases that leverage the rich data within the AWS Data Lake. * Translate security requirements into actionable playbooks, dashboards, and alerts, with a focus on data lake-driven insights. * Document and maintain security use case documentation, emphasizing data sources and ingestion methods. * Research and stay up to date on new attack vectors and develop data lake-centric use cases to detect them. * Incident Response: * Assist in the investigation and remediation of security incidents, utilizing data lake logs and analytics. * Provide technical expertise during security incident analysis, focusing on data lake-related events. * Collaboration and Communication: * Work closely with cross-functional teams, including data engineers, security analysts, and developers, on data ingestion and security initiatives. * Communicate security findings and recommendations, especially those related to data lake security and ingestion, to stakeholders. * Provide training and support to other team members on data ingestion processes and security tools. ## Related Videos - [WeAreDevelopers LIVE - CSS is DOOMed](https://www.wearedevelopers.com/videos/1838-wearedevelopers-live-css-is-doomed) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Building a Compiler with C#](https://www.wearedevelopers.com/videos/116-building-a-compiler-with-c) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data)