Cloud Security Engineer

Screen Engine/ASI LLC

Los Angeles (CA)

Hybrid

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Screen Engine/ASI LLC, a leader in media market research, seeks a Cloud Security Engineer to design, implement, and secure our cloud-first environment with a heavy AWS focus. Hybrid work arrangement: mostly remote with bi-weekly on-site at Valley Village LA office to collaborate and support security operations.

You will manage IAM, VPC, EC2, RDS, and CloudWatch, participate in audits, and help align controls with SOC 2, NIST CSF, ISO 27001, and CCPA.

Qualifications

  • 2–5 years in cloud security or IT security with AWS focus.
  • Hands-on IAM, VPC, EC2, CloudWatch, and security auditing.
  • Experience with security frameworks (SOC 2, NIST CSF, ISO 27001, CCPA) preferred.
  • Hybrid work in the Los Angeles area preferred.

Responsibilities

  • Secure AWS infrastructure with IAM, VPC, EC2, RDS, and monitoring.
  • Administer IAM policies, roles, and least-privilege access.
  • Lead security audits and remediation activities.
  • Provide Tier 2/3 support and on-site backup when needed.
  • Collaborate on DevOps automation and AI adoption initiatives.

Skills

AWS cloud security
IAM & access control
Security auditing
Terraform
PowerShell/Python
Cloud monitoring

Tools

Terraform
AWS Systems Manager (SSM)
PowerShell
Python
Bash

Job description

Job Description Screen Engine/ASI — the leading technology innovator in media and entertainment market research, is seeking a Cloud Security Engineer to help secure, monitor, and improve our cloud-first technology environment. Work Arrangement: Hybrid – Primarily remote (Greater Los Angeles area) with bi-weekly on-site presence at our Valley Village office for in-person collaboration, meetings, project work, and on-site coverage when needed.

As a Cloud Security Engineer, you will support the design, implementation, and day-to-day administration of secure cloud infrastructure with a strong emphasis on AWS, identity and access management, and security auditing. This role’s primary focus is AWS cloud security, IAM configuration and governance, security operations, and audit participation and remediation. Secondary responsibilities include Tier 2/3 support and broader enterprise security support as needed, including acting as on-site backup when the IT Director is unavailable and in-office presence is required. The ideal candidate brings a solid foundation in AWS and cloud security, strong attention to detail, and an interest in growing further in cloud security engineering. Over time, this role is expected to expand in scope toward broader DevOps engineering capabilities, practical AI adoption, greater ownership of security initiatives, and the ability to back up the IT Director in administering core productivity and collaboration environments during planned absences.

Essential Duties & Responsibilities
Primary Focus: AWS, Security & Auditing
  • Support the administration and security of AWS cloud infrastructure including IAM, VPC, EC2, RDS, CloudWatch, VPN, routing, and CIDR/IP range management.
  • Administer AWS IAM policies, roles, groups, and least-privilege access controls.
  • Support identity governance activities including access reviews, permission cleanup, role-based access alignment, SSO integrations, MFA, and related identity security controls.
  • Support cloud security monitoring, alert triage, vulnerability follow-up, and incident response activities.
  • Help enforce cloud security standards, secure configuration baselines, and least-privilege practices.
  • Participate in regular security audits across cloud infrastructure, identity systems, endpoints, and SaaS platforms.
  • Document audit findings, control gaps, remediation actions, and maintain audit evidence and security documentation.
  • Track remediation efforts and support alignment of security controls with established frameworks such as SOC 2, NIST CSF, ISO 27001, and CCPA.
  • Assist with AWS infrastructure monitoring, alerting, and operational visibility using CloudWatch dashboards, alerts, and notifications.
  • Support AWS billing review, cost visibility, and optimization tracking.
  • Assist with infrastructure configuration and automation using Terraform and AWS Systems Manager (SSM).
Secondary Focus: Tier 2/3 Support & Enterprise Security
  • Provide Tier 2/3 technical support for cloud systems, identity platforms, remote access, and security-related issues escalated from frontline support.
  • Support end users and internal teams with Tier 2/3 access, authentication, device, and connectivity issues that require deeper cloud or security expertise.
  • Troubleshoot service interruptions, coordinate follow-up actions, and communicate updates to stakeholders while partnering with frontline support on issue resolution.
  • Work on both escalated support tickets and larger cloud/security projects (e.g., IAM redesign, audit remediation, security tooling rollouts).
  • Collaborate with the help desk / frontline support function to ensure efficient handoff of Tier 1 versus Tier 2/3 issues as business needs require.
  • Support the administration and continuous improvement of enterprise security controls across cloud, identity, endpoint, collaboration, and SaaS environments.
  • Participate in organization-wide security initiatives including policy implementation, security reviews, risk reduction efforts, and remediation tracking.
  • Help assess security posture across business systems and contribute to recommendations that improve overall enterprise security resilience.
  • Serve as an on-site backup to the IT Director for critical in-office needs at the Valley Village location when physical presence is required (e.g., hardware access, vendor visits, office-specific troubleshooting).
Growth Goals
  • Develop toward broader DevOps engineering capabilities, including infrastructure automation, deployment support, systems reliability, and operational efficiency in cloud environments.
  • Evaluate practical AI-driven tools that can improve security operations, access reviews, audit preparation, reporting, and IT workflow efficiency.
  • Identify responsible uses of AI for automation, analysis, and operational productivity within cloud and security functions.
  • Stay current with emerging AI capabilities relevant to cloud security and provide recommendations for safe adoption.
  • Over time, develop the capability to back up the IT Director in administering core productivity and collaboration environments during planned absences.
Documentation & Collaboration
  • Maintain accurate documentation for AWS configurations, IAM policies, audit records, and security procedures.
  • Collaborate with cross-functional teams to improve security controls and support project delivery.
  • Provide clear communication and knowledge sharing with internal stakeholders.
Position Qualifications

This position requires excellent project and time management skills as well as the following qualifications:

Required
  • 2–5 years of experience in cloud infrastructure, cloud security, systems administration, or a related IT/security role.
  • Hands‑on experience with AWS, especially IAM, VPC, EC2, CloudWatch, VPN, routing, and identity‑related administration.
  • Experience with IAM configuration, access control, permission reviews, security auditing, and cloud security responsibilities.
  • Familiarity with security documentation, audit preparation, control validation, and remediation tracking.
  • Working knowledge of SSO, MFA, least‑privilege access, and identity governance concepts.
  • Familiarity with Terraform, AWS Systems Manager (SSM), or other infrastructure automation tools.
  • TCP/IP, DNS, VPN, and general networking fundamentals.
  • Ability to troubleshoot Tier 2/3 operational issues and provide hands‑on escalated support when needed.
Preferred
  • AWS certifications preferred, especially AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or AWS Certified SysOps Administrator – Associate.
  • Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
  • Exposure to compliance or security frameworks such as SOC 2, NIST CSF, ISO 27001, or CCPA.
  • Experience with enterprise security initiatives across SaaS, endpoint, identity, or collaboration environments.
  • Interest in evaluating AI-driven tools for security and IT operations.
  • Scripting and automation experience (PowerShell, Python, or Bash).
Company Description

Screen Engine/ASI is a research and data analytics firm focused on maximizing market potential while assessing risk for clients in the entertainment and media industries.

As a strategic partner, we transform consumer intelligence into prescriptive guidance that helps our clients understand their audiences, optimize engagement, and uncover new growth opportunities. With advanced analytics, emotional insights, and deep generational and multicultural expertise, we deliver tailored solutions that drive smarter decisions in a rapidly evolving world.

Screen Engine/ASI is a research and data analytics firm focused on maximizing market potential while assessing risk for clients in the entertainment and media industries.

As a strategic partner, we transform consumer intelligence into prescriptive guidance that helps our clients understand their audiences, optimize engagement, and uncover new growth opportunities. With advanced analytics, emotional insights, and deep generational and multicultural expertise, we deliver tailored solutions that drive smarter decisions in a rapidly evolving world.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer: AWS IAM & Audit (Hybrid)
Cloud Security Engineer: AWS IAM & Audit (Hybrid)

Screen Engine/ASI LLC • Los Angeles (CA)

Hybrid
USD 110,000 - 160,000
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Sr. Engineer, Information Security (Cloud Security)
Sr. Engineer, Information Security (Cloud Security)

Sony Pictures Entertainment • Culver City (CA)

On-site
USD 120,000 - 150,000
Annual incentive
Comprehensive benefits
Sr. Engineer, Information Security (Cloud Security)
Sr. Engineer, Information Security (Cloud Security)

Sonypictures • Culver City (CA)

On-site
USD 120,000 - 150,000
Comprehensive benefits
Annual incentive opportunities
Global Cybersecurity Engineer
Global Cybersecurity Engineer

Ledgent Technology • Manassas (VA)

Hybrid
USD 140,000 - 145,000
Medical insurance
Dental insurance
Vision insurance
+5
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Emeryville (CA)

On-site
USD 130,000 - 160,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Staff Security Engineer
Staff Security Engineer

Topaz Labs • Dallas (TX)

On-site
USD 150,000 - 210,000
100% covered medical/dental/vision
15 days annual PTO
401k matching
Manager of Security
Manager of Security

Centerfield • Los Angeles (CA)

Hybrid
USD 140,000 - 190,000
Hybrid Playa Vista office schedule
Competitive salary + semi-annual bonus
Unlimited PTO
+4
Cloud Application Security Engineer
Cloud Application Security Engineer

Tactical Edge • Washington

Hybrid
USD 140,000 - 180,000
Security / AI Cloud Engineer
Security / AI Cloud Engineer

Cyber 74, LLC • Connecticut

Hybrid
USD 110,000 - 130,000
Remote work option
Flexible schedules
Company provided training
+3