Remotery

Senior Engineer, Cloud Security

Posted 1 day ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Create and manage reusable Terraform and CloudFormation modules focused on IAM, networking, and logging.

• Deploy and oversee AWS multi-account frameworks, which include Organizations and Service Control Policies (SCPs).

• Develop Azure Hub-Spoke and Landing Zone designs.

• Apply least-privilege IAM principles utilizing RBAC, ABAC, permission boundaries, JIT/PIM automation, and federated identity through Okta or Entra ID.

• Address cloud misconfigurations by implementing engineering modifications, automated patching, and correcting configuration drift.

• Establish automated remediation processes using Lambda, Azure Functions, and Python.

• Integrate Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and secret scanning into GitHub Actions or Azure DevOps pipelines.

• Deploy and optimize AWS GuardDuty, Security Hub, AWS Config, Azure Sentinel, and Defender for Cloud.

• Create native logging pipelines for SIEM ingestion.

• Design Virtual Private Clouds (VPCs), security groups, network segmentation, Web Application Firewalls (WAFs), and complete lifecycle encryption using AWS KMS and Azure Key Vault.

• Convert NIST 800-53, FedRAMP, and CMMC requirements into technical controls across cloud settings.

• Collaborate directly with client engineering teams and facilitate architectural workshops.

• Simultaneously manage multiple client engagements.

• Assume direct responsibility for cloud security engineering assignments, vulnerability remediation, and client interactions within the first 15 days.


⛳️ Requirements

• Extensive technical knowledge in cloud infrastructure engineering, with a significant focus on Azure and multi-cloud environments.

• Documented success in deploying security infrastructure, crafting OPA policies, and managing secrets in Vault or AWS Secrets Manager.

• Profound expertise in both Azure and AWS.

• Proficient in Terraform, encompassing module versioning, state management, and provider security controls.

• Strong technical grasp of SAML, OIDC, cross-account IAM roles, and the enforcement of least-privilege principles.

• Capability to lead technical workshops and articulate complex architectures to engineering teams.

• Skillful in managing competing client priorities and executing prompt remediations.

• Technical cloud security certification such as AWS Certified Security Specialty, Azure Security Engineer Associate, or GCP Professional Security Engineer.

• Hands-on experience configuring and enforcing FIPS 140 standards across cloud offerings.

• Practical experience in establishing CMMC-compliant enclaves or FedRAMP security architectures.

• Experience in implementing runtime security controls and vulnerability assessments within containerized environments.

• Exceptional written and spoken English communication skills.

• Dependable, high-speed internet connection and a professional home office setup that facilitates confidential discussions and uninterrupted collaboration.

• Availability to work from 8:00 AM to 5:00 PM US Eastern Time, with occasional flexibility.

• Willingness and capability to travel locally for sporadic onsite meetings, team gatherings, or business-related activities.

• Required to participate in live video interviews with the camera on and confirm identity during the recruitment and onboarding process.

• Employment is contingent on identity verification and background screening, where permitted by law.

• Must be authorized to work in the U.S. without visa sponsorship, either now or in the future.


🏝️ Benefits

• Career Development: Well-defined career path with mentorship and training opportunities.

• Reimbursement for the successful completion of approved training and certification courses relevant to the current position.

• Competitive base salary with regular performance evaluations linked to merit-based assessments and bonus potential.

• Significant opportunities for career progression.

• Remote-first culture with the flexibility to work from anywhere while collaborating with a global team.

People also viewed

Cloudiax6 hours ago

SAP Business One Consultant – Cloud, Migration, AI

DE flagGermany OnlyFull-timeCloud Engineer€60k – €90k/year
ApplyView job
HumanIT Digital Consulting15 hours ago

Cloud Support Engineer – AWS, Kubernetes, Terraform

PT flagPortugal OnlyFreelanceCloud Engineer
ApplyView job
Multiplica1 day ago

Salesforce Marketing Cloud Developer, Marketing Cloud Personalization

MX flagMexico, +1 more countryFreelanceCloud Engineer
ApplyView job
BeyondTrust1 day ago

Cloud Engineer

CA flagCanada, +1 more countryFull-timeCloud Engineer
ApplyView job
Bright Vision Technologies1 day ago

Hybrid Cloud Architect

US flagUnited States OnlyFull-timeCloud Engineer$100k – $150k/year
ApplyView job
Leega1 day ago

Senior MLOps Engineer, AWS

BR flagBrazil OnlyFull-timeCloud Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers