Cloud Security Engineer
Core
Single accountable owner for cloud security posture across AWS, Azure, and GCP, ensuring infrastructure is hardened and findings are remediated on SLA.
Role type
Senior IC Cloud Security Engineer
Builds
Policy-as-code gates in Terraform pipelines, consistent multi-cloud security baselines, and hardened Kubernetes clusters.
Domain
Cloud Security / Multi-Cloud Infrastructure
Deliverable
production ML models | infrastructure
Required skills
Cloud security expertise (AWS/Azure/GCP), CNAPP/CSPM triage and remediation, Terraform with policy-as-code (OPA/Rego, Checkov), Kubernetes security (RBAC, admission control, image scanning), Python or Go scripting
Preferred skills
Multi-cloud experience, Kubernetes certifications (CCSK, CKA, CKS), container runtime security, SIEM/detection exposure
Technologies
AWS, Azure, GCP, Wiz, Terraform, OPA/Rego, Checkov, tfsec, EKS, AKS, GKE, RunReveal
Responsibilities
Triage Wiz findings by exploitability and drive remediation across engineering teams; Design and ship policy-as-code gates to block misconfigurations in CI/CD; Define and enforce consistent security baselines across multi-cloud environments; Harden Kubernetes clusters and enforce image scanning standards; Lead remediation efforts for engineering teams without direct authority; Grow the share of infrastructure managed via Terraform with active security checks
Seniority
Senior, hands-on IC