Cloud Security Architect - St. Louis, MO

Hubbell Incorporated

St. Louis (MO)

On-site

USD 150,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Hubbell Incorporated is seeking a Cloud Security Architect to join our St. Louis software engineering team.

This hands-on role will own security posture across Azure, Kubernetes, and infrastructure-as-code practices, guiding engineers through pragmatic security decisions. You will act as the in-house security expert, drive security standards, and support SOC 2 audits while translating technical posture into clear compliance documentation.

Qualifications

  • 8+ years in a DevOps or platform engineering role with meaningful security ownership.
  • Hands-on experience securing Azure environments (Azure AD/Entra ID, IAM, and network security controls).
  • Experience reviewing and hardening Terraform for security misconfigurations and policy compliance.
  • Working knowledge of Kubernetes security in managed environments (AKS/EKS), including RBAC, network policies, secrets management, and container image scanning.

Responsibilities

  • Define and champion security best practices across our software solutions and development lifecycle, with a focus on our Azure-hosted infrastructure.
  • Review Terraform configurations and infrastructure-as-code changes to identify security misconfigurations and ensure alignment with policy and compliance requirements.
  • Establish and maintain security standards for our Kubernetes environments (AKS and EKS), including RBAC, network segmentation, secrets management, and container security.
  • Act as the in-house security expert — available to help the team make well-informed, security-conscious decisions.
  • Lead SOC 2 audit activities, including control execution, evidence collection, and engagement with auditors when needed.

Skills

DevOps / platform engineering
Security ownership
Azure security
Terraform security
Kubernetes security
SOC 2 audit experience
Communication with engineers

Education

Bachelor's degree in computer science, engineering, or related field

Tools

Terraform
Checkov
Checkmarx
Mend

Job description

Cloud Security Architect - St. Louis, MO

We are looking for a Cloud Security Architect to serve as the embedded security authority within our software engineering team. This is a hands‑on technical role — not a compliance or audit seat. We’re looking for someone who has built and hardened real cloud infrastructure, understands how engineers think, and can help us make security decisions that are pragmatic and grounded in how our systems work.

You’ll own our security posture across Azure, Kubernetes, and our infrastructure‑as‑code practices, while also serving as the go‑to resource for engineers working through security challenges day to day. If you’ve come up through DevOps or platform engineering and grown into security ownership, this role was written for you.

Security Best Practices & Architecture Guidance
  • Define and champion security best practices across our software solutions and development lifecycle, with a focus on our Azure‑hosted infrastructure.
  • Review Terraform configurations and infrastructure‑as‑code changes to identify security misconfigurations and ensure alignment with policy and compliance requirements.
  • Establish and maintain security standards for our Kubernetes environments (AKS and EKS), including RBAC policies, network segmentation, secrets management, and container security.
  • Review architecture and design decisions to identify and mitigate security risks early.
  • Develop and maintain security guidelines, standards, and reference architectures for the engineering team.
Security Advisory & Decision Support
  • Act as the in‑house security expert — available to help the team make well‑informed, security‑conscious decisions.
  • Evaluate third‑party tools, vendors, and integrations from a security perspective.
  • Provide guidance on threat modeling, risk assessment, and security trade‑offs.
Compliance & Standards Ownership
  • Own and maintain our compliance posture in alignment with the standards and frameworks established by our external cybersecurity team.
  • Participate in SOC 2 audit activities, including control execution, evidence collection, and direct engagement with auditors when needed.
  • Proactively identify compliance gaps and drive remediation efforts in partnership with engineering leads.
  • Serve as the primary liaison between the software team and the external cybersecurity organization.
  • Lead the completion of security questionnaires as part of the RFP and sales process.
  • Maintain accurate, up‑to‑date documentation of our security posture to streamline future questionnaire responses.
What will help you thrive in this role?

Required

  • 8+ years in a DevOps, platform engineering, or cloud infrastructure role with meaningful security ownership — or an equivalent blend of engineering and security experience.
  • Hands‑on experience securing Azure environments, including Azure AD/Entra ID, IAM, and network security controls.
  • Experience reviewing and hardening Terraform and other infrastructure‑as‑code for security misconfigurations and policy compliance.
  • Working knowledge of Kubernetes security in managed environments (AKS and/or EKS), including RBAC, network policies, secrets management, and container image scanning.
  • Participated in at least one SOC 2 audit cycle — familiar with control mapping, evidence collection, and working with auditors.
  • Comfortable translating technical security posture into RFP questionnaire responses and compliance documentation.
  • Proven ability to communicate with engineers at a peer level and with non‑technical stakeholders without losing either audience.
  • Bachelor’s degree in computer science, engineering, or a related field.

Preferred

  • Background in DevSecOps — integrating security tooling (Checkov, Mend, Checkmarx, or other SCA/SAST/DAST tooling) into CI/CD pipelines.
  • Familiarity with AKS security controls, including Azure Policy for Kubernetes, Defender for Containers, and container image scanning via ACR
  • AZ‑500 (Microsoft Azure Security Engineer) or similar cloud‑focused certification.
  • Exposure to AWS security controls in addition to Azure.
  • Familiarity with threat modeling and secure design review processes.

Hubbell Incorporated, its subsidiaries and affiliates, is an EO Employer AA: M/F/Veteran/Disability. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender identity or any other protected class.

The above summary of position responsibilities and requirements is not intended, and should not be construed, to be an exhaustive list of duties, skills, efforts, physical requirements, or working conditions associated with the position. It is intended to be an accurate reflection of those principal position elements essential for making decisions related to position performance, employee development, and compensation.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Architect - St. Louis, MO
Cloud Security Architect - St. Louis, MO

Hubbell Incorporated • Maryland Heights (MO)

On-site
USD 150,000 - 190,000
Cloud Security Architect: Secure Azure, Kubernetes & IaC
Cloud Security Architect: Secure Azure, Kubernetes & IaC

Hubbell Incorporated • St. Louis (MO)

On-site
USD 150,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Triwill Group • United States

On-site
USD 86,000 - 112,000
Competitive base salary
Medical, dental, vision insurance
401(k) retirement plan
+2
Cloud Security Engineer
Cloud Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

Hybrid
USD 100,000 - 130,000
Azure Security Engineer - Azure Focus at 1872 Consulting Chicago, IL
Azure Security Engineer - Azure Focus at 1872 Consulting Chicago, IL

Fairweather, LLC • Chicago (IL)

Hybrid
USD 110,000 - 150,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Heath • Houston (TX)

Hybrid
USD 120,000 - 150,000
Medical, Dental, Vision Benefits
401k
PTO
+1
Cloud Security Architect
Cloud Security Architect

Robotics Prcocess Automation, LLC • Coppell (TX)

On-site
USD 90,000 - 130,000
Senior DevSecOps Engineer – Cloud Infrastructure Security
Senior DevSecOps Engineer – Cloud Infrastructure Security

Partnerverse • Saint Cloud (MN)

On-site
USD 140,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Braintrust • San Francisco (CA)

On-site
USD 130,000 - 180,000
Medical, dental, and vision insurance
Daily lunch, snacks, and beverages
Flexible time off
+2
Senior Cloud Security Architect: Azure & Kubernetes
Senior Cloud Security Architect: Azure & Kubernetes

Hubbell Incorporated • Maryland Heights (MO)

On-site
USD 150,000 - 190,000