> Markdown version of [/jobs/ext/637861-lead-engineer-cloud-security](https://www.wearedevelopers.com/jobs/ext/637861-lead-engineer-cloud-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Engineer, Cloud Security - **Company:** V-Soft Consulting Inc. - **Location:** Oak Brook, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Continuous Integration, Identity and Access Management, Intrusion Detection and Prevention, Zero Trust Network Access, Runbook, Security Information and Event Management, Software Engineering, Cloud Platform System, Amazon Virtual Private Cloud (VPC), Cloudformation, Kubernetes, Infrastructure Automation Frameworks, Information Technology, Bicep, Terraform, Devsecops, Serverless Computing, Docker, Key Vault - **Published:** June 25, 2026 - **Apply:** https://www.dice.com/job-detail/043f5150-32f0-496d-b7f1-fb6b2a04c4bd ## About the Role * Bachelors degree in computer science, Information Security, Information Technology, or a related field. * 7+ years of progressive experience in information security, with at least 4 years focused on cloud security engineering. * Experience with container security (Docker, Kubernetes) and serverless security patterns. Capable of persuading non-security leaders (e.g., IT Ops, Engineering, Product) by linking security initiatives to operational continuity, consumer trust, and compliance posture. Education/Certifications: * AWS Security Specialty, Azure Security Engineer Associate (AZ-500), CCSP, CISSP, or equivalent Experience: * Experience with cloud detection and response (CDR) tooling and cloud-native threat detection Knowledge and Skills: * Deep hands-on experience with both AWS and Microsoft Azure security services, including: AWS: IAM, GuardDuty, Security Hub, CloudTrail, Config, KMS, VPC security, WAF, Organizations/SCPs. Azure: Entra ID, Defender for Cloud, Azure Policy, Key Vault, NSGs, Azure Monitor, Sentinel. * Strong experience with cloud security posture management (CSPM) platforms (e.g., Wiz, Orca, Rapid7 InsightCloudSec, CrowdStrike Falcon Cloud Security, or equivalent). * Working knowledge of Infrastructure-as-Code (Terraform, CloudFormation, or ARM/Bicep templates) and securing IaC pipelines. * Solid understanding of network security principles applied to cloud environments (VPCs, transit gateways, private endpoints, zero trust network architecture). * Familiarity with CI/CD security integration and DevSecOps practices. * Ability to communicate complex technical concepts to both engineering peers and non-technical stakeholders. * Collaborative approach to working across engineering, IT, and product teams. ## Description * Manage and optimize cloud security posture management (CSPM) and cloud workload protection (CWPP) tooling * Conduct cloud security assessments, identify misconfigurations, and drive remediation with engineering teams. * Design and implement guardrails for Infrastructure-as-Code (IaC) pipelines (Terraform, CloudFormation, Bicep) to prevent insecure deployments * Monitor and respond to cloud-specific threats, integrating cloud telemetry into SIEM and detection workflows * Evaluate and harden container and serverless architectures (EKS, ECS, Lambda, AKS, Azure Functions). * Develop and maintain cloud security standards, reference architectures, and runbooks. * Support incident response activities for cloud-based security events. * Partner with Engineering, and Application Development teams to embed security into CI/CD pipelines. * Provide technical input on cloud security tooling decisions, vendor evaluations, and proof-of-concept testing. ## Related Videos - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Learning Kubernetes made easy with KubeCampus](https://www.wearedevelopers.com/magazine/348-learning-kubernetes-made-easy-with-kubecampus) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)