Cloud Security Engineer

Posted 4 days ago

This is a fully remote position, open to applicants in Pennsylvania.

📋 Description

• Safeguard and oversee cloud infrastructure and cloud-based applications, particularly focusing on Azure.

• Protect containerized workloads and Kubernetes environments, including network policies, workload identities, runtime protections, and container image scanning.

• Take ownership of and enhance cloud security posture management (CSPM), consistently identifying and correcting cloud misconfigurations.

• Secure infrastructure-as-code orchestration platforms and Terraform/OpenTofu pipelines via access control, secrets management, and deployment approval workflows.

• Manage identities in Microsoft Entra ID using Conditional Access, Entitlement Management, and just-in-time (JIT) privileged access models.

• Evaluate network diagrams and proposed connectivity modifications; provide advice on segmentation and sensitive data flows in collaboration with IT and SRE teams.

• Administer Zero Trust network access and edge security tools for both corporate and cloud resources.

• Oversee broader security solutions such as SIEM, DLP, E/XDR, and vulnerability management.

• Monitor alerts, respond to and escalate incidents, and take part in the incident response on-call rotation.

• Perform threat analysis, vulnerability assessments, and risk evaluations; document findings, manage mitigation strategies, and report status to leadership.

• Create queries, scripts, integrations, and automated workflows to enhance cloud security operations.

• Collaborate with development teams to embed security into the SDLC and CI/CD pipeline.

• Conduct regular cloud configuration and access reviews to ensure compliance.

• Engage in audits and assessments that support governance, risk, and compliance (GRC) efforts.

• Contribute to a collaborative security team within a healthcare-regulated environment that adheres to HIPAA, HITRUST, and HITECH.


⛳️ Requirements

• Preferred Bachelor's degree in information security, computer science, or a related field; equivalent experience will be considered.

• A minimum of 5 years of experience in cloud security engineering or a related position.

• Extensive hands-on experience securing cloud infrastructure and cloud-based applications (Azure preferred, AWS is a plus).

• Practical experience in network security with a solid understanding of network architecture, connectivity, segmentation, and firewall controls.

• Proficient in securing containerized workloads and Kubernetes environments (e.g., AKS), including network policies, workload identities, and runtime protections.

• Familiarity with cloud security posture management (CSPM) and addressing misconfigurations across cloud environments.

• Experience in securing IaC orchestration platforms, including access control, secrets management, and deployment approval workflows (e.g., Terraform, OpenTofu).

• Knowledge of Microsoft Entra ID, including Conditional Access, Entitlement Management, and just-in-time (JIT) privileged access models.

• Experience with Zero Trust / SASE tools (e.g., Cloudflare Zero Trust, WAF, Gateway, or equivalent).

• Understanding of security frameworks (NIST, ISO 27001, CIS) and compliance frameworks (HITRUST, PCI DSS).

• Proven capability to conduct security assessments, vulnerability management, and incident response.

• Strong grasp of OS platforms (Windows, Linux) and endpoint security practices.

• Industry certifications such as CISSP, SSCP, Security+, or a cloud security certification (Azure/AWS) are preferred.

• Familiarity with GitOps tools (Argo, Flux) for secure deployments in Kubernetes environments.

• A background in Network or Systems Engineering is a significant advantage.

• Familiarity with programming/scripting languages is a plus.


🏝️ Benefits

• Employer-sponsored health, dental, vision, life, and disability insurance.

• Retirement plan with company contributions.

• Annual profit-sharing for employees.

• Personal development and training budget.

• Open and collaborative work environment.

• Comprehensive two-week onboarding plan.

• Extensive mentorship program.

People also viewed

GitLab1 day ago

Staff Security Researcher

US flagUnited States, +2 more countriesFull-timeCybersecurity / Security Engineer$168k – $238k/year
ApplyView job
GitLab1 day ago

Principal Security Researcher

US flagUnited States, +2 more countriesFull-timeCybersecurity / Security Engineer$203.2k – $275k/year
ApplyView job
Cisco1 day ago

Software Security Lead

US flagNorth Carolina OnlyFull-timeCybersecurity / Security Engineer$151.6k – $222.4k/year
ApplyView job
Lovesac1 day ago

Senior Engineer, Information Security Architect

US flagConnecticut OnlyFull-timeCybersecurity / Security Engineer$95k – $125k/year
ApplyView job
General Dynamics Information Technology1 day ago

Cybersecurity Architect

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$149.5k – $184k/year
ApplyView job
PGTEK1 day ago

Senior Security Agent / AI Red Team Engineer

US flagVirginia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers