
Cloud Security Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in California, +5 more states.
• Oversee the design, development, and security of cloud infrastructure.
• Set standards for cloud architecture security.
• Enforce infrastructure-as-code security measures across cloud environments.
• Sustain the cloud security posture and carry out essential cloud security functions.
• Design secure and scalable cloud systems.
• Collaborate with engineering and security leaders to create, build, and uphold secure cloud architecture.
• Monitor and assess cloud-specific threat landscapes, mitigating risks associated with public-cloud misconfigurations.
• Supervise and prioritize CSPM and cloud-native security alerts while conducting forensic investigations.
• Work alongside DevOps to automate security monitoring and alerting within CI/CD pipelines using Infrastructure as Code (IaC).
• Incorporate automated vulnerability scanning and security testing into the software development lifecycle.
• Coordinate vulnerability remediation across various functions.
• Design and audit cloud-native security controls to ensure HIPAA, HITRUST, and SOC compliance.
• Monitor and assess security configurations for systems and applications.
• Engage in containment, eradication, and recovery throughout the security incident response lifecycle.
• Advise software engineering teams on secure cloud architecture and application features.
• 5 to 8+ years of specialized Security Engineering experience centered on AWS security, cloud-native architecture, and DevSecOps.
• Proven experience in constructing and architecting security infrastructure from the ground up, acting as the primary architect and functional owner of the security domain.
• Proficient in deploying cloud-native security tools, such as CSPM and CWPP, and embedding automated security controls into CI/CD deployment pipelines.
• Strong skills in Python, Terraform, Kubernetes, and containerization strategies (Docker).
• In-depth understanding of SaaS risk management and hardening procedures.
• Experience with Data Loss Prevention (DLP) implementations and management.
• Previous experience in a startup environment.
• Possession of CISSP, CNAPP, or equivalent certifications.
• Experience in developing or implementing new tools utilizing the latest resources or technologies.
• Familiarity with implementing or utilizing CSPM tools such as Wiz, Orca, or the AWS security tools suite.
• Background in implementing and tuning SIEM and event management tools.
• Experience in the digital healthcare sector.
• Exceptional verbal and written communication abilities.
• Prior experience with Google Workspace, Slack, Confluence/Jira, and Zoom is advantageous.
• Target annual bonus of 10%.
• Paid benefits.
• Employee perks.
• Access to Cleerly offices in Denver, Colorado; New York, New York; Dallas, Texas; and Lisbon, Portugal.
• Remote work options available for most teams.
• Occasional travel for team meetings and cross-functional projects, typically once a month or once a quarter.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.