Cloud Security Engineer (Team Lead)

ProwlerPro, Inc.

España

Hybrid

PHP 7,505,000 - 11,882,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Mandatory PTO
Fully remote team
Workstation stipend
Stock options

Job summary

Prowler is seeking a Cloud Security Engineer - Team Lead who combines security research, software engineering, and community leadership to advance cloud protection at scale. You will mentor engineers, drive threat modeling, and steer the security roadmap for a fully remote, distributed team.

Ideal candidates bring 6+ years in cybersecurity with 3+ in cloud security, hands-on Python, Docker/Kubernetes, IaC, and a proven ability to translate complex risks into actionable guidance for product and

Qualifications

  • Cloud security expertise with 6+ years in cybersecurity, 3+ in cloud ecosystems (CSPM, CWPP, CNAPP).
  • 2–3+ years leading engineering or research teams with agile security projects.
  • Deep CSP APIs knowledge and IAM across at least one major cloud provider.
  • Strong cloud attack methodologies, vulnerability research and pentesting background.
  • Advanced Python coding with attention to detection quality and documentation.
  • Hands-on with containers/orchestration (Docker, Kubernetes) and OS concepts.
  • Experience with IaC and deployment automation in CI/CD pipelines.
  • Ability to translate security threats into business insights for leadership.
  • English fluency and proven startup-style ownership in a remote setting.

Responsibilities

  • Lead, mentor, and grow a team of cloud security engineers and researchers.
  • Architect reviews of AWS/GCP/Azure/Kubs/OCI to uncover threat vectors.
  • Develop scalable security controls and enterprise-grade detection features.
  • Conduct advanced threat modeling on cloud architectures and AI/LLM infra.
  • Drive security roadmap with engineering and research teams.
  • Enforce high-quality code standards, reviews, and CI/CD processes.
  • Engage with the Prowler community and represent the team externally.

Skills

Cloud security
Technical leadership
Cloud architecture & IAM
Attacker/defender mindset
Python
Cloud-native infra
Automation & CI/CD
Communication
Startup DNA

Education

Bachelor’s/master’s in CS or related

Tools

Docker
Kubernetes
Git
Terraform

Job description

We are an Open Source seed-stage startup revolutionizing cloud security infrastructure. Our mission is to build cutting-edge, practitioner-friendly solutions that empower developers to secure their cloud environments effortlessly. We are looking for an experienced dynamic individual who thrives at the intersection of security research, software engineering, and community to join our team as a Cloud Security Engineer - Team Lead


Prowler is a company that values our people as much as it values cybersecurity, demonstrated by mandatory PTO and a fully remote team. Day to day, Prowlerians collaborate, architect, and deploy security checks and remediations across cloud deployments at scale, empowering users to discover the edges of their systems and find gaps in their security posture. We celebrate diversity and are committed to creating an inclusive and welcoming work environment for all employees.

  • Innovate with the Customer in Mind: Partner with product owners, stakeholders, and engineers to understand customer needs, translating complex technical risks into actionable, scalable solutions that solidify Prowler's position at the forefront of the industry and drive our mission to become the standard for cloud protection.
  • Team Leadership & Execution: Lead, mentor, and grow a team of cloud security engineers and researchers, owning the end-to-end planning, execution, and delivery of cutting-edge research and team projects.
  • Pioneer Cloud Threat Research: Conduct comprehensive architectural reviews of major cloud ecosystems (AWS, GCP, Azure, OCI), their telemetry data, and Kubernetes to uncover hidden threat vectors, evasion techniques, and structural vulnerabilities. Naturally adopt an adversarial mindset, constantly evaluating new cloud deployments to identify architectural flaws, blind spots, and potential abuse vectors.
  • Develop Scalable Security Controls: Pioneer new methodologies for threat identification, engineering advanced security rules and automated safeguards from the ground up. Transform experimental security research into robust, enterprise-grade detection features integrated into the Prowler product.
  • Advanced Threat Modeling: Conduct deep-dive analysis and advanced threat modeling on complex cloud architectures and emerging AI/LLM infrastructures to preemptively identify and mitigate risks.
  • Drive the Security Roadmap: Contribute to strategic architecture decisions, collaborating closely with world‑class engineering and research teams to define and execute the security product roadmap.
  • Champion Engineering Excellence: Drive high‑quality code standards by leading code reviews, automated testing, and CI/CD workflows. Provide constructive feedback and mentor fellow engineers on best practices.
  • Elevate Industry Standards: Continuously update knowledge and push the continuous improvement of internal practices, introducing the latest industry standards and emerging trends to keep the team at the forefront of cloud security.
  • Community & Thought Leadership: Actively engage with and support the Prowler community, implement customer‑driven requests, represent the team externally, and guide others in the open‑source cloud security ecosystem.
Qualifications / Skills / Experience

We evaluate the following in candidates for this role:

  • Cloud Security Expertise: 6+ years of extensive experience in Cybersecurity, with at least 3 years explicitly focused on Cloud Security ecosystems (CSPM, CWPP, CNAPP).
  • Technical Leadership: Proven experience (2-3+ years) leading engineering or research teams, driving collaborative development workflows, conducting rigorous code reviews, and managing agile security projects.
  • Cloud Architecture & IAM Mastery: Expert, deep‑dive understanding of CSP APIs, internal services, and complex permission models (IAM) across at least one major cloud provider (AWS, GCP, Azure), alongside strong networking fundamentals (including cross‑network routing, micro‑segmentation, and advanced network topologies).
  • Attacker/Defender Mindset: A proven ability to evaluate any cloud architecture with an adversarial mindset, identifying structural flaws and potential abuse vectors before they are weaponized, backed by a solid foundation in cloud attack methodologies, vulnerability research, and penetration testing.
  • Coding Excellence: Advanced proficiency in Python, with a strong ability to write clean, efficient, scalable code. You are a strong advocate for maintaining high standards of detection quality and thorough documentation.
  • Cloud‑Native & Infrastructure: Hands‑on experience with containers and orchestration tools (Docker, Kubernetes), and a deep understanding of operating system architectures
  • Automation & CI/CD: Practical experience with Git, collaborative workflows, Infrastructure as Code (leveraging the HashiCorp ecosystem or native cloud templates), and deployment automation within CI/CD pipelines.
  • Communication Skills: Adept at translating intricate security threats into actionable business insights for leadership, while providing deep, actionable context for our engineering squads.
  • Startup DNA: Driven by a strong sense of ownership, you excel in self‑directed remote work while remaining deeply engaged and highly communicative within our distributed engineering culture. Working fluency in English is required.
Good to have
  • AI & LLM Security Vanguard: Pioneering knowledge of emerging threat landscapes, attack vectors, and security best practices within Artificial Intelligence infrastructures, LLM security, and MLOps environments.
  • Open‑Source Champion: A strong background with active, hands‑on contributions to open‑source security projects and a visible presence in the collaborative security ecosystem.
  • Industry Thought Leadership: A proven track record of sharing research and knowledge. This includes speaking engagements at top‑tier conferences (e.g., DEF CON, Black Hat, fwd:cloudsec, BSides) or impactful research publications, CVE discoveries, and technical blog posts.
  • Advanced Certifications: Holding industry‑recognized certifications that validate your deep technical expertise, such as AWS Certified Security - Specialty, GCP Professional Cloud Security Engineer, OSCP, OSWE, or equivalent.
How will you know you are successful in this role?
  • Team Trust & Leadership: Your peers view you as a go‑to cloud security authority and an empowering, supportive leader. Positive peer feedback—our most valued metric for performance—reflects your collaborative nature and mentorship.
  • High‑Velocity Impact & Quality: Your manager and stakeholders agree that your security research and feature velocity move at a highly competitive pace, with detection quality that rivals or exceeds top‑tier industry standards.
  • Strategic Alignment: You possess a crystal‑clear understanding of how your daily work drives the company's broader vision. If asked, you can confidently demonstrate that you are consistently focused on the highest‑priority, highest‑impact initiatives.
  • Market‑Defining Contributions: Your research, code, and technical decisions directly and incontrovertibly propel Prowler's success, cementing its position as a standout, market‑leading security product in a fiercely competitive landscape.
  • Opportunity to work with a rapidly growing and innovative company in the cloud security industry.
  • Fully remote work, allowing for a flexible and collaborative environment.
  • Competitive compensation package.
  • Continuous learning and professional development opportunities.
  • Be part of a dynamic team that values creativity and innovation.

This is a full time, salaried position writing, testing, reviewing, and operating code at scale. Prowler is fully remote and distributed, spanning all U.S. time zones and several in E.U. This necessitates individuals taking responsibility for their working hours and broadcasting availability to colleagues. Mandatory minimum PTO (shoot for ~5 weeks; anything less than 4 weeks/year is unacceptable), workstation/home office stipend per year, flexible working hours, and stock options are some of our other benefits.

Hiring Process
  • Intro & Technical Screen (30 minutes): We want to get to know the person behind the profile. You'll jump on a quick call with one of our founders or tech leads to discuss your background, your proudest achievements, and the complex security or engineering challenges you’ve tackled so far.
  • Culture & Alignment Interview (1 hour): We thrive on a generative, diversity-first culture that champions context over control. This conversation is a two‑way street to ensure you resonate with the high degree of autonomy, freedom, and ownership we expect, and to confirm that our environment is the right place for you to grow and succeed.
  • Technical Team Dynamic (1 hour 30 minutes): No take‑home assignments here—we want to see how we build together. You will join a live, collaborative session with your future teammates to tackle a real‑world cloud security scenario. Rather than answering trick questions in isolation, this interactive exercise focuses on your technical reasoning, solution architecture, and how effectively you communicate and problem‑solve within a team setting.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Cloud Security Team Lead | Open Source
Remote Cloud Security Team Lead | Open Source

ProwlerPro, Inc. • España

Hybrid
PHP 7,505,000 - 11,882,000
Mandatory PTO
Fully remote team
Workstation stipend
+1
Product Security Engineer – Build Secure, Scalable Cloud
Product Security Engineer – Build Secure, Scalable Cloud

GoMining • España

On-site
USD 120,000 - 180,000
Professional growth support
Remote or hybrid format
Flexible hours
+2
Product Security Engineer
Product Security Engineer

GoMining • España

On-site
USD 120,000 - 180,000
Professional growth support
Remote or hybrid format
Flexible hours
+2
Product Security Engineer (Remote)
Product Security Engineer (Remote)

Hire Feed • España

On-site
PHP 6,897,000 - 10,658,000
Application Security Engineer
Application Security Engineer

Sideways 6 • Philippines

On-site
PHP 1,200,000 - 1,900,000
Platform Engineer, Golang & IaC (Remote, European Union)
Platform Engineer, Golang & IaC (Remote, European Union)

Talanto • España

Hybrid
PHP 5,646,000 - 8,156,000
Equity package
Remote-first
Security Engineer - Offensive Security
Security Engineer - Offensive Security

Thrive • Capas

Hybrid
PHP 450,000 - 750,000
Security Operations Lead
Security Operations Lead

Fireworks • San Mateo

On-site
PHP 1,800,000 - 3,200,000
Senior Security Research Engineer, SONAR (Security Operations and Novel Adversary Research)
Senior Security Research Engineer, SONAR (Security Operations and Novel Adversary Research)

Elasticsearch B.V. • España

On-site
PHP 4,866,000 - 7,698,000
Health coverage
Flexible locations and schedules
Generous vacation days
+3
Senior Security Research Engineer, SONAR (Security Operations and Novel Adversary Research)
Senior Security Research Engineer, SONAR (Security Operations and Novel Adversary Research)

Elastic • España

On-site
EUR 115,000 - 181,000
Health coverage
Flexible work locations
Generous vacation days
+1