- Review infrastructure and tooling configurations to ensure security posture is established, maintained, and continued throughout the Software Development LifeCycle
- Identify internal infrastructure susceptible to known vulnerabilities
- Create solutions and lead programs to remediate identified vulnerabilities
- Develop systems that automatically respond to and remediate known security vulnerabilities or insecure configurations
- Develop systems integrating with Security Operations Center and identity and account management tools
- Review, audit, and assist in writing compliance policies
- Remediate identified compliance gaps
- Design and implement autonomous AI agents for security workflows
- Integrate AI agents into security operations and incident response
- Mentor and lead junior cloud security engineers
Requirements
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience
- 4–6+ years of experience
- Experience with endpoint security, IDS/IDP, AV/AM, Firewall, and Integrity Monitoring systems
- Experience with Kubernetes environments, monitoring, and security best practices; CKA and CKS preferred
- Experience securing cloud infrastructure and assets in an enterprise-level product
- Experience or desire to work directly with security incidents, security teams, and security researchers
- Knowledge of cloud resource security, cloud configuration hardening, and cloud-native security architecture
- Knowledge of container and cloud-native security best practices
- Knowledge of cloud networking, security groups, NACLs, VPC design, and API security
- Knowledge of cloud IAM policies, RBAC, and privilege escalation prevention
- Knowledge of secrets management and credential security in cloud environments
- Experience with Amazon Web Services and Microsoft Azure
- Experience with AWS Security Services, networking services, IAM, Lambda Functions, and CloudFormation; preferred
- Experience with Azure security services including Microsoft Defender, Azure Policy, and identity management; preferred
- Development experience in Go or Python
- Experience with RESTful APIs and cloud service integrations
- Experience with IaC tools including Terraform, CloudFormation, AWS CDK, or ARM templates
- Experience with cloud security automation, orchestration, and compliance-as-code
- Experience building security tools and systems for automated cloud misconfiguration detection and remediation
- Experience with cloud logging, monitoring, and alerting tools including CloudWatch, Azure Monitor, and CloudTrail
- Agentic AI experience designing and implementing autonomous AI agents for security workflows
- Expertise in AI security and safety, adversarial testing, prompt injection defense, AI model security, and machine learning supply-chain security
- Ability to write clean, maintainable security code with flow-state development practices
- Familiarity with AWS Well-Architected Framework, Azure Well-Architected Framework, CIS Benchmarks, and cloud FedRAMP/HIPAA
- Knowledge of cloud data security and encryption at rest and in transit
- Experience with multi‑cloud and hybrid cloud security architecture
- Demonstrated ability to mentor and lead junior cloud security engineers
- Experience with cloud security assessment and cloud posture management tools; Wiz preferred
- Understanding of serverless and FaaS security considerations
- Strong communication, coordination, and collaboration skills in worldwide remote settings
Core Competencies
Demonstrates expertise in cloud security architecture, vulnerability remediation, and compliance management, with a strong focus on integrating AI solutions into security workflows. Proficient in developing automated systems for security incident response and maintaining security posture across cloud environments.
Highest-signal resume keywords
- Cloud Security Architecture
- Vulnerability Remediation
- AI Security Solutions
- Kubernetes Security Best Practices
- Cloud Infrastructure Security
ATS Optimization Keywords
Hard Skills
- Cloud Security Automation
- Endpoint Security
- Development in Go
- Development in Python
- RESTful APIs
- Infrastructure as Code (IaC)
- Cloud Security Assessment
- Security Code Writing
- Cloud Configuration Hardening
- Compliance Management
Soft Skills
- Mentoring Junior Engineers
- Strong Communication Skills
- Coordination Skills
- Collaboration Skills
Certifications & Qualifications
- Certified Kubernetes Administrator (CKA)
- Certified Kubernetes Security Specialist (CKS)
Industry Keywords
- Software Development LifeCycle
- Compliance Policies
- Cloud Networking
- IAM Policies
- RBAC
- Secrets Management
- Adversarial Testing
- Machine Learning Security
- CIS Benchmarks
- FedRAMP/HIPAA
Tools & Technologies
- Amazon Web Services
- Microsoft Azure
- Terraform
- CloudFormation
- CloudWatch
- Azure Monitor
- CloudTrail
- Wiz
- Security Operations Center Tools
- Identity and Account Management Tools