Staff Cloud Security Engineer
Core
Building, automating, and maintaining security infrastructure and controls at scale for a multi-account AWS environment.
Role type
Staff Cloud Security Engineer
Builds
Secure AWS infrastructure, networking patterns, and automated security guardrails for investment data platform
Domain
Financial Technology / Cloud Security
Deliverable
production ML models | infrastructure
Required skills
AWS security, Terraform, Python, networking, policy-as-code (OPA), CI/CD, secrets management, identity management, vulnerability detection, cloud logging
Preferred skills
Zero Trust solutions, GitOps, K8s, Linux, container security
Technologies
AWS, Terraform, Python, boto3, OPA, GitHub Actions, Argo CD, Secrets Manager, Parameter Store, Control Tower, SCPs
Responsibilities
Maintain and iterate on Swiss AWS environment to enforce data locality; Design and build secure networking and private resource access patterns; Author and maintain Terraform code for security infrastructure; Write and support CI checks using policy-as-code and IaC scanning; Automate vulnerability detection and remediation; Strengthen identity and secrets management; Perform investigations and resource discovery using cloud native logging; Participate in infrastructure design reviews and security assessments; Act as an escalation point for the Security Operations Center
Seniority
Staff, hands-on IC with strategic scope