Remotery

Cloud Security Engineer

atPolymarketRemoteUS flagNew YorkFull-timeCloud EngineerMid-levelSenior$180k – $250k/year

Posted 3 hours ago

This is a fully remote position, open to applicants in New York.

📋 Description

• Take ownership and enhance Polymarket's AWS security posture across various accounts, regions, and services — which includes IAM policies, SCPs, VPC segmentation, and account-level security baselines.

• Evaluate and contribute to Infrastructure as Code (IaC) modules that implement security defaults; incorporate automated security checks into the deployment pipeline, including policy-as-code validation and misconfiguration scanning.

• Manage cloud-side security telemetry, including CloudTrail, GuardDuty, Security Hub, Config Rules, VPC Flow Logs, and S3 access logging.

• Create and refine detection logic for cloud-specific threats; collaborate with the SOC team on alert fidelity, incident response runbooks, and AWS-level investigations.

• Oversee secrets management utilizing AWS Secrets Manager and SSM Parameter Store; manage KMS key policies, rotation, and envelope encryption techniques.

• Facilitate the remediation of findings from AWS Inspector, Security Hub, and third-party CSPM tools; uphold benchmarks aligned with CIS AWS Foundations.

• Assist with audit and compliance efforts (SOC 2, PCI-DSS, or similar) and perform regular access reviews to identify and address privilege creep.


⛳️ Requirements

• Over 4 years of experience in cloud security, cloud engineering, or a security-oriented infrastructure position.

• Extensive hands-on experience with AWS security services: IAM, SCP, GuardDuty, Security Hub, CloudTrail, Config, KMS, WAF, Inspector, and VPC.

• Practical experience in writing Infrastructure as Code (Pulumi, Terraform, CDK, or similar) with a security-centric approach.

• Solid understanding of AWS networking and how misconfigurations can lead to real attack surfaces.

• Proficient in at least one scripting or programming language (Python, TypeScript, or Go) for automation and tooling purposes.

• Capacity to assess architectural decisions for security risks and clearly communicate findings to engineering colleagues.

• (Plus) Familiarity with Pulumi, particularly TypeScript-based stacks.

• (Plus) Understanding of Web3, blockchain infrastructure, or crypto-sector threat models.

• (Plus) Experience in securing containerized workloads on ECS or EKS, including image scanning and runtime security measures.

• (Plus) AWS certifications: Security Specialty, Solutions Architect — Professional, or equivalent.

• (Plus) Knowledge of SOC 2 Type II or PCI-DSS cloud control requirements.


🏝️ Benefits

• Competitive salary & equity.

• Unlimited PTO.

• Comprehensive Health, Vision, & Dental coverage.

• 401k match.

• Hardware setup: new MacBook Pro, large display, & accessories.

People also viewed

Xometry3 hours ago

Staff Cloud Security Engineer

US flagMaryland OnlyFull-timeCloud Engineer$180k – $200k/year
ApplyView job
Carrier3 hours ago

Senior Cloud IoT Software Engineer

US flagNorth Carolina, +1 more stateFull-timeCloud Engineer$96k – $192k/year
ApplyView job
Cloud at Work3 hours ago

Cloud Support Engineer

US flagUnited States OnlyFull-timeCloud Engineer$80k – $95k/year
ApplyView job
PROSTAFF Schweiz4 hours ago

Senior Data Engineer – Databricks, Azure Data Platform

CH flagSwitzerland OnlyFull-timeCloud Engineer
ApplyView job
ClickHouse4 hours ago

Cloud Engineer – Product Metrics

US flagUnited States OnlyFull-timeCloud Engineer$141k – $208k/year
ApplyView job
Empower AI4 hours ago

Cloud Engineer

US flagAlabama, +2 more statesFull-timeCloud Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers