Cloud Security Architect - St. Louis, MO

Hubbell Incorporated

St. Louis (MO)

On-site

USD 150,000 - 190,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Hubbell Incorporated is seeking a Cloud Security Architect to join our St. Louis software engineering team.

This hands-on role will own security posture across Azure, Kubernetes, and infrastructure-as-code practices, guiding engineers through pragmatic security decisions. You will act as the in-house security expert, drive security standards, and support SOC 2 audits while translating technical posture into clear compliance documentation.

Qualifications

  • 8+ years in a DevOps or platform engineering role with meaningful security ownership.
  • Hands-on experience securing Azure environments (Azure AD/Entra ID, IAM, and network security controls).
  • Experience reviewing and hardening Terraform for security misconfigurations and policy compliance.
  • Working knowledge of Kubernetes security in managed environments (AKS/EKS), including RBAC, network policies, secrets management, and container image scanning.

Responsibilities

  • Define and champion security best practices across our software solutions and development lifecycle, with a focus on our Azure-hosted infrastructure.
  • Review Terraform configurations and infrastructure-as-code changes to identify security misconfigurations and ensure alignment with policy and compliance requirements.
  • Establish and maintain security standards for our Kubernetes environments (AKS and EKS), including RBAC, network segmentation, secrets management, and container security.
  • Act as the in-house security expert — available to help the team make well-informed, security-conscious decisions.
  • Lead SOC 2 audit activities, including control execution, evidence collection, and engagement with auditors when needed.

Skills

DevOps / platform engineering
Security ownership
Azure security
Terraform security
Kubernetes security
SOC 2 audit experience
Communication with engineers

Education

Bachelor's degree in computer science, engineering, or related field

Tools

Terraform
Checkov
Checkmarx
Mend

Job description

Cloud Security Architect - St. Louis, MO

We are looking for a Cloud Security Architect to serve as the embedded security authority within our software engineering team. This is a hands‑on technical role — not a compliance or audit seat. We’re looking for someone who has built and hardened real cloud infrastructure, understands how engineers think, and can help us make security decisions that are pragmatic and grounded in how our systems work.

You’ll own our security posture across Azure, Kubernetes, and our infrastructure‑as‑code practices, while also serving as the go‑to resource for engineers working through security challenges day to day. If you’ve come up through DevOps or platform engineering and grown into security ownership, this role was written for you.

Security Best Practices & Architecture Guidance
  • Define and champion security best practices across our software solutions and development lifecycle, with a focus on our Azure‑hosted infrastructure.
  • Review Terraform configurations and infrastructure‑as‑code changes to identify security misconfigurations and ensure alignment with policy and compliance requirements.
  • Establish and maintain security standards for our Kubernetes environments (AKS and EKS), including RBAC policies, network segmentation, secrets management, and container security.
  • Review architecture and design decisions to identify and mitigate security risks early.
  • Develop and maintain security guidelines, standards, and reference architectures for the engineering team.
Security Advisory & Decision Support
  • Act as the in‑house security expert — available to help the team make well‑informed, security‑conscious decisions.
  • Evaluate third‑party tools, vendors, and integrations from a security perspective.
  • Provide guidance on threat modeling, risk assessment, and security trade‑offs.
Compliance & Standards Ownership
  • Own and maintain our compliance posture in alignment with the standards and frameworks established by our external cybersecurity team.
  • Participate in SOC 2 audit activities, including control execution, evidence collection, and direct engagement with auditors when needed.
  • Proactively identify compliance gaps and drive remediation efforts in partnership with engineering leads.
  • Serve as the primary liaison between the software team and the external cybersecurity organization.
  • Lead the completion of security questionnaires as part of the RFP and sales process.
  • Maintain accurate, up‑to‑date documentation of our security posture to streamline future questionnaire responses.
What will help you thrive in this role?

Required

  • 8+ years in a DevOps, platform engineering, or cloud infrastructure role with meaningful security ownership — or an equivalent blend of engineering and security experience.
  • Hands‑on experience securing Azure environments, including Azure AD/Entra ID, IAM, and network security controls.
  • Experience reviewing and hardening Terraform and other infrastructure‑as‑code for security misconfigurations and policy compliance.
  • Working knowledge of Kubernetes security in managed environments (AKS and/or EKS), including RBAC, network policies, secrets management, and container image scanning.
  • Participated in at least one SOC 2 audit cycle — familiar with control mapping, evidence collection, and working with auditors.
  • Comfortable translating technical security posture into RFP questionnaire responses and compliance documentation.
  • Proven ability to communicate with engineers at a peer level and with non‑technical stakeholders without losing either audience.
  • Bachelor’s degree in computer science, engineering, or a related field.

Preferred

  • Background in DevSecOps — integrating security tooling (Checkov, Mend, Checkmarx, or other SCA/SAST/DAST tooling) into CI/CD pipelines.
  • Familiarity with AKS security controls, including Azure Policy for Kubernetes, Defender for Containers, and container image scanning via ACR
  • AZ‑500 (Microsoft Azure Security Engineer) or similar cloud‑focused certification.
  • Exposure to AWS security controls in addition to Azure.
  • Familiarity with threat modeling and secure design review processes.

Hubbell Incorporated, its subsidiaries and affiliates, is an EO Employer AA: M/F/Veteran/Disability. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status, sexual orientation, gender identity or any other protected class.

The above summary of position responsibilities and requirements is not intended, and should not be construed, to be an exhaustive list of duties, skills, efforts, physical requirements, or working conditions associated with the position. It is intended to be an accurate reflection of those principal position elements essential for making decisions related to position performance, employee development, and compensation.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cloud Security Architect: Secure Azure, Kubernetes & IaC
Cloud Security Architect: Secure Azure, Kubernetes & IaC

Hubbell Incorporated • St. Louis (MO)

On-site
USD 150,000 - 190,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Eleven Recruiting • Santa Monica (CA)

On-site
USD 140,000 - 190,000
Cloud Security Engineer
Cloud Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

On-site
USD 100,000 - 130,000
Senior DevSecOps Engineer – Cloud Infrastructure Security
Senior DevSecOps Engineer – Cloud Infrastructure Security

Partnerverse • Saint Cloud (MN)

On-site
USD 140,000 - 190,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Heath • Houston (TX)

On-site
USD 120,000 - 150,000
Medical, Dental, Vision Benefits
401k
PTO
+1
Cloud Security Architect
Cloud Security Architect

Compunnel, Inc. • Cumberland (RI)

On-site
USD 130,000 - 180,000
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

Inspira Financial • Oak Brook (IL)

On-site
USD 125,000 - 155,000
Healthcare
401(k)
Paid time off
+2
Lead Security Architect (Cloud, Data & AI Platforms)
Lead Security Architect (Cloud, Data & AI Platforms)

Tenth Revolution Group • Philadelphia

On-site
USD 180,000 - 240,000
Application Security Architect
Application Security Architect

ServiceLink • Dallas (TX)

On-site
USD 120,000 - 160,000
Azure Security Engineer
Azure Security Engineer

Zeektek • Sacramento (CA)

On-site
USD 140,000 - 170,000