Cloud Security Engineer - Risk Reduction

Dahl Consulting
Brooklyn Park, United States of America
yesterday

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
$ 235K

Job location

Brooklyn Park, United States of America

Tech stack

Agile Methodologies
Amazon Web Services (AWS)
Automation of Tests
Azure
Bash
Cloud Computing
Cloud Computing Security
Cloud Engineering
Databases
Github
Identity and Access Management
Python
Policy as Code
Google Cloud Platform
Cloud Platform System
Backend
Infrastructure Automation Frameworks
Information Technology
SDN Network
Terraform
Security Orchestration, Automation & Response

Job description

On behalf of our client-a leading Fortune 50 retail corporation with a large-scale, enterprise public cloud footprint-we are seeking an experienced Cloud Security Engineer - Risk Reduction. Our client operates one of the most complex retail technology environments in the country, spanning e-commerce, supply chain, and in-store systems that serve millions of guests daily. This role sits at the intersection of cloud infrastructure, backend systems, networking, and security engineering, and is focused on driving measurable risk reduction across the organization''s public cloud platforms (Google Cloud Platform, Azure, and AWS). In this position, you will help elevate the client''s cloud security posture by developing secure cloud deployment patterns, implementing policy-as-code, and modernizing Cloud Security Posture Management (CSPM) capabilities. You will deliver scalable, automated security solutions across a high-visibility enterprise environment., As a Cloud Security Engineer, you will partner with cloud engineering, infrastructure, and security teams to identify, prioritize, and remediate cloud security risks at enterprise scale. You will design reusable, automated controls that improve governance and reduce operational risk across the client''s public cloud footprint., * Define Secure Cloud Deployment Patterns: Develop and publish security standards and reference architectures for common cloud deployment patterns in Google Cloud Platform, Azure, and AWS. Build reusable Terraform modules and automation scripts to enable secure adoption by engineering teams.

  • Modernize CSPM Capabilities: Evaluate, test, and implement Cloud Security Posture Management (CSPM) solutions-with a strong focus on Wiz-and partner with key stakeholders to build an enterprise-ready CSPM environment across the public cloud footprint.
  • Policy-as-Code: Design, develop, test, and maintain enterprise Policy-as-Code libraries using Open Policy Agent (OPA) to enforce secure cloud deployment standards and automate compliance across cloud environments.
  • Remediate Cloud Risk: Collaborate with cloud engineering, infrastructure, and security teams to identify and remediate cloud security risks.
  • Automate Security Controls: Develop scalable automation and security controls that improve cloud governance and reduce operational risk.

Requirements

  • Bachelor''s degree in Computer Science, Information Technology, or a related field (or equivalent experience).

  • 5+ years of Cloud Engineering experience in enterprise environments.

  • Current Google Cloud Professional (Google Cloud Platform) Certification is required.

  • Proven experience writing, testing, and maintaining Policy-as-Code using Open Policy Agent (OPA) to enforce cloud security standards; experience building reusable policy libraries is required.

  • Hands-on experience writing additional Policy-as-Code languages such as OPA/Rego, Sentinel, or CEL.

  • Hands-on experience with Wiz for Cloud Security Posture Management (CSPM), including identifying, prioritizing, and remediating cloud security risks.

  • Strong analytical and problem-solving skills, with the ability to resolve complex technical issues independently.

  • Ability to understand existing cloud architectures and develop scalable remediation strategies while minimizing operational risk.

  • Strong communication and collaboration skills, with experience working in Agile environments.

  • Demonstrated commitment to continuous learning and staying current with evolving cloud and security technologies.

  • 5+ years of hands-on engineering experience supporting Google Cloud Platform (Google Cloud Platform).

  • 3+ years of experience developing and maintaining production Terraform code in complex enterprise environments.

  • Strong scripting and automation experience using Python, Bash, or similar languages within CI/CD pipelines.

  • Experience designing secure cloud deployment patterns and infrastructure automation.

  • Strong understanding of cloud and on-premises networking, IAM, compute, storage, databases, and software-defined networking (SDN).

  • Experience securing enterprise cloud environments and implementing cloud security best practices.

Preferred Qualifications:

  • Experience supporting Azure and/or AWS environments.
  • Experience with GitHub, GitHub Actions, or Atlantis.
  • A combination of infrastructure engineering and cloud security experience.
  • Experience evaluating or implementing enterprise cloud security tooling and security automation frameworks.

Benefits & conditions

Dahl Consulting is proud to offer a comprehensive benefits package to eligible employees that will allow you to choose the best coverage to meet your family's needs. For details, please review the DAHL Benefits Summary: .

Apply for this position