Cloud Security Engineer

ECLARO

Illinois

On-site

USD 125,000 - 130,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

401k
Commuter benefits
Medical/Dental/Vision insurance

Job summary

ECLARO is seeking a Cloud Security Engineer in Bolingbrook, IL to implement and optimize security across GCP and Azure environments. You will secure cloud workloads, identities, data services, and CI/CD pipelines while collaborating with infrastructure and development teams.

The role emphasizes zero-trust controls, security automation, and strong communication with technical and non-technical stakeholders to enable secure cloud adoption.

Qualifications

  • 3+ years in cloud security, cybersecurity, or DevSecOps.
  • Hands-on with GCP security services and concepts.
  • Experience securing cloud workloads, identities, data services.
  • Familiar with IAM, encryption, logging, threat detection, and secure deployment.
  • Strong communication and collaboration across teams.

Responsibilities

  • Implement and maintain cloud security controls across GCP and Azure environments.
  • Design, deploy, and improve guardrails, configurations, and policy enforcement.
  • Support IAM initiatives: least-privilege, privileged accounts, service accounts.
  • Secure cloud services, workloads, and data platforms; perform hardening.
  • Contribute to security automation using IaC and cloud-native tools.
  • Integrate security tools to improve visibility, posture, and threat detection.
  • Assist CI/CD pipelines with vulnerability scanning and secret detection.
  • Guide development teams on secure cloud architecture patterns.

Skills

Cloud security
GCP
IAM
DevSecOps
Incident response
Security monitoring
Vulnerability mgmt

Tools

GKE
Kubernetes
CI/CD tooling
Terraform

Job description

Job Number: 26-01668 Use your skills where innovative technology solutions begin. ECLARO is looking for a Cloud Security Engineer for our client in Bolingbrook, IL. ECLARO’s client is a leading technology solutions provider, collaborating with customers to manage their needs and achieve success in their business goals. If you’re up to the challenge, then take a chance at this rewarding opportunity!

Position Overview
  • Cloud Security Engineer with hands-on, technical experience in securing our cloud platforms and modern application environments.
  • This role will focus on implementing and improving cloud security controls, monitoring and responding to security findings, supporting compliance initiatives, and partnering with engineering and project teams to integrate security into cloud and application workflows.
  • Ulta's environment is primarily based within Google Cloud Platform (GCP), with a smaller Azure footprint supporting a subset of applications.
  • Hands-on engineer who can solve technical security challenges across Cloud Infrastructure, IAM, data and workload protection, and DevOps (CI/CD) processes.
  • Requires strong collaboration and communication skills, as you will work closely with infrastructure, platform, and application teams to improve security while enabling business objectives.
Responsibilities
  • Cloud Security Implementation:
    • Implement and maintain cloud security controls across GCP and Azure environments, including projects, subscriptions, and organizational structures.
    • Assist in the design, deployment, and continuous improvement of cloud security guardrails, baseline configurations, and policy enforcement mechanisms.
    • Support Identity and Access Management (IAM) initiatives and operational activities, including least-privilege access, privileged account/identity management, service account governance, and identity federation in the cloud, always following zero-trust principles.
    • Secure cloud services, workloads, and data platforms through configuration reviews, hardening activities, and security best practices; including but not limited to VPC Service Controls, NSGs, Cloud Storage, GKE, BigQuery, Cloud SQL, Pub/Sub, Cloud Functions, and Cloud Run.
    • Support container and workload security initiatives, including hardened container image adoption, image scanning for CVEs, and secure deployment practices (DevSecOps).
    • Support defining and implementing encryption, key management, and data protection practices and controls across cloud environments.
    • Contribute to security automation efforts using Infrastructure as Code (IaC), scripting, and cloud-native tooling to improve operational efficiency and reduce manual processes.
    • Integrate and maintain cloud-native and third-party security tools to improve visibility, posture management, and threat detection to improve overall security posture.
    • Support the implementation of security controls within CI/CD pipelines, including vulnerability scanning, secrets detection, and policy validation (DevSecOps).
    • Assist development teams with secure cloud architecture patterns and application deployment practices.
  • Monitoring & Incident Response:
    • Monitor and tune cloud security alerts, vulnerabilities, and findings from cloud-native and third-party CSPM and CNAPP tools
    • Investigate suspicious activity, misconfigurations, exposed secrets, and potential security incidents within cloud environments.
    • Support incident response activities involving cloud resources, identities, workloads, applications, and data.
    • Perform root cause analysis and recommend remediation actions following security events.
    • Validate remediation efforts and help improve monitoring coverage based on lessons learned from incidents and investigations
  • Compliance & Risk Management:
    • Support cloud security assessments and control reviews against established security frameworks and organizational standards (CIS, NIST 800-53, PCI-DSS).
    • Assist with vulnerability management activities, including identification, prioritization, remediation tracking, and validation.
    • Participate in cloud security posture reviews and continuous improvement initiatives using CNAPP and CSPM technologies.
    • Support audit requests, evidence collection, and documentation activities related to cloud security controls
    • Execute security assessments on cloud workloads, data storage, network segmentation, and CI/CD processes.
  • Collaboration & Support:
    • Partner with infrastructure, platform, application development, and security teams to promote secure cloud adoption and DevSecOps best practices.
    • Provide guidance on secure cloud architecture, infrastructure-as-code, identity management, and cloud-native services.
    • Assist development teams in identifying and remediating cloud and application security issues throughout the SDLC.
    • Contribute to the development of cloud security standards, procedures, technical documentation, and operational runbooks.
Required Qualifications
  • 3+ years of experience in cloud security, cybersecurity, cloud engineering, DevSecOps, or a related technical field.
  • Hands-on experience with Google Cloud Platform (GCP) security services and concepts.
  • Experience securing cloud workloads, identities, applications, and data services.
  • Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
  • Understanding of security fundamentals including IAM, encryption, logging, threat detection, vulnerability management, and secure application deployment practices.
  • Familiarity with application security concepts such as secrets management, dependency scanning, vulnerability remediation, or secure coding principles.
  • Strong analytical, troubleshooting, and communication skills, as well as working effectively with technical and non-technical stakeholders.
Preferred Qualifications
  • Relevant cloud or security certifications such as Google Professional Cloud Security Engineer, Azure Security Engineer Associate (AZ-500), Security+, or equivalent.
  • Familiarity with CNAPP and CSPM tools
  • Experience with container security, Kubernetes security, and secure software supply chain practices.
  • Exposure to application security tools and processes such as SAST, DAST, dependency scanning, secrets detection, software composition analysis (SCA), or secure code review.
  • Familiarity with security frameworks such as CIS Benchmarks, NIST 800-53, PCI-DSS, or ISO 27001.
  • Experience with scripting or automation using Python, PowerShell, Bash, or similar languages.
  • Strong troubleshooting and analytical mindset with attention to detail.
  • Comfortable working in fast-moving cloud environments with minimal supervision.
  • Strong communication skills with both technical and non-technical teams.
  • Accountable and proactive - able to identify risks before failures occur.

Salary: $125000.00-$130000.00/year

If hired, you will enjoy the following ECLARO Benefits
  • 401k Retirement Savings Plan administered by Merrill Lynch
  • Commuter Check Pretax Commuter Benefits
  • Eligibility to purchase Medical, Dental & Vision Insurance through ECLARO

Equal Opportunity Employer: ECLARO values diversity and does not discriminate based on Race, Color, Religion, Sex, Sexual Orientation, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status, in compliance with all applicable laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cloud Security Engineer — GCP/DevSecOps Champion
Cloud Security Engineer — GCP/DevSecOps Champion

ECLARO • Illinois

On-site
USD 125,000 - 130,000
401k
Commuter benefits
Medical/Dental/Vision insurance
Technical Lead Site Reliability & Performance Engineer
Technical Lead Site Reliability & Performance Engineer

ECLARO • Addison (TX)

On-site
USD 140,000 - 190,000
401k Retirement Savings Plan
Commuter Check Pretax Benefits
Medical, Dental & Vision Insurance
Cloud Security Engineer
Cloud Security Engineer

ECS • Washington

On-site
USD 120,000 - 130,000
Systems Security Analyst
Systems Security Analyst

ECLARO • Chesapeake (VA)

On-site
USD 96,432 - 99,187
401k Retirement Savings Plan
Commuter Check Pretax Commuter Benefits
Medical, Dental & Vision Insurance
Sr. Zscaler Engineer
Sr. Zscaler Engineer

ECLARO • Danville (PA)

On-site
USD 120,000 - 150,000
401k Retirement Savings Plan
Commuter Check Pretax
Medical, Dental & Vision Insurance
Cloud Security Engineer: GCP & DevSecOps
Cloud Security Engineer: GCP & DevSecOps

ECLARO • Bolingbrook (IL)

On-site
USD 110,000 - 150,000
Cloud Security Engineer - Mid
Cloud Security Engineer - Mid

Connected Logistics • Springfield (VA)

Hybrid
USD 120,000 - 130,000
Health, dental, vision, life, and long
401(k) package
Paid Time Off
Cloud Security Engineer
Cloud Security Engineer

Prestige Staffing • Dallas (TX)

Hybrid
USD 110,000 - 140,000
Career growth in a stable organization
Collaborative and innovative team atmosphere
Comprehensive benefits package
Principal AI Platform Engineer
Principal AI Platform Engineer

ECLARO • San Diego (CA)

On-site
USD 180,000 - 260,000
401k Retirement Savings Plan
Commuter Checks
Medical, Dental & Vision Insurance
Cloud Security Engineer
Cloud Security Engineer

ECS • Arlington (VA)

Hybrid
USD 140,000 - 170,000