Cloud Engineer, Security
Remote (United States)
Job Details
Location: United States
Workplace: Remote
Experience: 5+ years of hands-on cloud security experience
Core Areas: AWS, GCP, Cloud Security, Terraform, Infrastructure as Code, IAM, CI/CD, Security Automation
Compensation: Base salary ranges from $130,050–$324,909 annually, depending on geographic zone, plus equity and benefits.
About the Role
This opportunity is for a Cloud Engineer, Security responsible for strengthening cloud security across primarily AWS environments while supporting GCP infrastructure. The role focuses on designing, implementing, and automating cloud security controls that protect infrastructure, secure sensitive healthcare data, and improve security operations through scalable engineering solutions.
The position combines hands-on engineering with cross-functional collaboration, partnering with Infrastructure, DevOps, Engineering, and Product teams to implement secure-by-design cloud infrastructure, automate security workflows, and improve the overall cloud security posture across production environments. The role is available at either the Senior or Staff level.
What You'll Do
- Design and automate cloud security controls across Identity & Access Management (IAM), authorization, Just-in-Time access, platform access, and data access.
- Strengthen AWS and GCP security posture by implementing Terraform guardrails, secure infrastructure patterns, risk remediation initiatives, and cloud security roadmaps.
- Develop security automation and cloud tooling using Python, Go, and AWS Lambda to support vulnerability management, alerting, Protected Health Information (PHI) logging, and cloud security operations.
- Secure containers, production workloads, and CI/CD pipelines by implementing practical security controls suitable for production environments.
- Partner with Infrastructure, DevOps, Engineering, and Product teams on secure platform initiatives, incident response activities, and sensitive data protection.
- Create and maintain documentation for security controls, engineering standards, automation processes, and operational playbooks that support secure engineering workflows.
Qualifications
- Minimum of 5 years of hands-on cloud security experience with deep expertise in AWS and familiarity with Google Cloud Platform (GCP).
- Strong technical knowledge of cloud infrastructure, networking, identity, authorization, containers, CI/CD, logging, monitoring, security operations, and cloud platforms.
- Experience developing security automation and infrastructure tooling using Python, Go, Terraform, and cloud-native services.
- Experience designing and operating access control models including RBAC, ABAC, policy-as-code, granular engineering access controls, and Just-in-Time access.
- Experience applying cloud security frameworks, HIPAA requirements, and related security standards within production environments.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
Compensation
The base salary varies by geographic compensation zone:
- Zone A: $130,050–$249,930 annually
- Zone B: $143,055–$274,923 annually
- Zone C: $156,060–$299,616 annually
- Zone D: $169,065–$324,909 annually
Final compensation is determined by factors such as education, technical skills, certifications, years and depth of experience, internal equity, business needs, and geographic location.
Benefits
- Remote-first work environment.
- Equity opportunity.
- 401(k) retirement savings plan through Fidelity.
- Comprehensive medical, dental, vision, and disability coverage.
- Paid Time Off (PTO) and Discretionary Time Off (DTO).
- Twelve weeks of fully paid parental leave.
- Family-building benefits including fertility coverage, up to $25,000 for adoption or surrogacy assistance, and paid leave related to fertility treatments, adoption, or pregnancy.
- Work-from-home reimbursement to support a productive remote office environment.
Looking for more opportunities?
View All Jobs