
Senior Security Engineer
Posted Jun 25

Posted Jun 25
This is a fully remote position, open to applicants in United States.
• Design, implement, and oversee secure cloud networking frameworks that encompass VPCs, subnets, peering, and transit gateways across GCP, AWS, or Azure.
• Configure and uphold cloud-native firewall regulations, security groups, network ACLs, and perimeter controls to uphold least-privilege traffic policies.
• Implement and manage cloud security posture management (CSPM) tools while continuously addressing misconfigurations across cloud environments.
• Design and execute network segmentation and micro-segmentation strategies in accordance with zero trust architecture principles.
• Oversee and fortify cloud IAM, which includes role definitions, service account policies, privileged access controls, and just-in-time access.
• Manage next-generation firewall (NGFW) platforms, focusing on policy development, rule lifecycle management, and traffic inspection configurations.
• Implement and sustain IDS/IPS, DNS security, and network monitoring solutions to identify and respond to threats.
• Conduct regular reviews of firewall rules and access path analysis to pinpoint and rectify overly permissive configurations.
• Design, implement, and manage PKI infrastructure, including certificate authorities, certificate lifecycle management, and trust store management.
• Administer and enforce access control policies across identity providers (IdPs), directory services (Active Directory / LDAP), and SSO platforms.
• Implement and maintain multi-factor authentication (MFA), privileged access management (PAM), and role-based access control (RBAC) systems.
• Ensure cryptographic implementations comply with FIPS 140-2/140-3 requirements and federal standards.
• Conduct continuous monitoring, log reviews, and evidence collection to facilitate compliance audits and third-party assessments.
• Over 5 years of experience in cloud infrastructure security, network security, or IT systems engineering with a security emphasis.
• Hands-on experience in securing cloud environments within GCP, AWS, or Azure, focusing on networking, IAM, and logging controls (GCP is strongly preferred).
• Proven experience in designing and managing cloud network security controls such as firewalls, security groups, VPC/VNet architecture, and traffic inspection.
• Proficient in next-generation firewalls (e.g., Palo Alto, Fortinet, or cloud-native equivalents), including policy management and traffic analysis.
• Familiarity with PKI concepts, certificate lifecycle management, and cryptographic protocols (TLS, mTLS, FIPS 140-2/3).
• Practical experience implementing and managing IAM, PAM, MFA, RBAC, and SSO systems in enterprise or federal settings.
• Direct experience in implementing technical controls for CMMC L2, FedRAMP, or NIST 800-171 compliance programs.
• Strong grasp of zero trust architecture principles and their practical application in hybrid environments.
• Experience with SIEM platforms, log aggregation, and security monitoring for infrastructure and network event data.
• Competitive salary
• Comprehensive benefits (401(k), dental, vision, health, life insurance)
• Paid time off
• Equity options
• Flexible working arrangements, including hybrid remote/in-office schedules
GuidePoint Security
Redpanda Data
CyberSheath
Akamai Technologies
Get handpicked remote jobs straight to your inbox weekly.