Cybersecurity Engineer II Cloud and Identity

Atlantic Health System

Morristown (NJ)

Hybrid

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Atlantic Health System is seeking a Cybersecurity Engineer II focused on Cloud Security and Identity. You will secure cloud environments (AWS with Azure/M365 support), manage identity security including Entra ID, hybrid Active Directory, and PAM practices.

The role also covers vulnerability management, data protection, application security, and incident response. You will work on security metrics, runbooks, and collaborate with Privacy and Compliance to protect ePHI and regulated data, with

Qualifications

  • Must have hands-on experience securing cloud environments (AWS focused).
  • Strong understanding of identity security, Entra ID, and hybrid AD.
  • Experience with CNAPP tooling for cloud visibility and risk triage.
  • Familiarity with CIS Benchmarks and AWS Well-Architected security pillar.
  • Know-how in vulnerability management, data protection, and incident response.

Responsibilities

  • Design, implement, and operate security controls across cloud environments (AWS primary).
  • Configure and optimize CNAPP platforms to surface findings for triage.
  • Perform risk-based analysis and drive remediation with cross-functional teams.
  • Monitor cloud and identity security alerts from major security services.
  • Contribute to secure onboarding, architecture reviews, and third-party integrations.

Skills

Cloud security
AWS security
Entra ID
IAM policies
Privileged access
Vulnerability management
Data protection
Application security
Incident response
Terraform/CloudFormation
Kubernetes
CI/CD security

Tools

Wiz
AWS
Azure/M365
Microsoft Defender for Cloud

Job description

Job Description

The Cybersecurity Engineer II – Cloud Security and Identity is responsible for helping secure the organization's cloud environments and the identities that access them. This role focuses primarily on cloud security engineering and operations—with an emphasis on Amazon Web Services (AWS), supported by Microsoft Azure and Microsoft 365, and using a cloud-native application protection platform (CNAPP) such as Wiz to maintain visibility into cloud configuration, workload, data, and permission risk. Alongside this cloud focus, the Engineer II supports enterprise identity and access security, with particular attention to Microsoft Entra ID, hybrid Active Directory, conditional access, multifactor authentication, and privileged access. The successful candidate is a well-rounded security practitioner: while cloud and identity are the primary areas of contribution, this role sits on a small, versatile team and requires solid working knowledge across the broader cybersecurity landscape, including vulnerability management, data protection, application security, and endpoint and email security. As with every member of this team, the Engineer II serves as part of a dynamic team responsible for cybersecurity incident response and other cybersecurity initiatives, works to safeguard electronic protected health information (ePHI) and other regulated data, and shares in a rotating on-call schedule.

Duties and Responsibilities
  • Support the design, implementation, and ongoing operation of security controls across the organization's cloud environments, with a primary emphasis on AWS and additional coverage of Microsoft Azure and Microsoft 365.

  • Administer, configure, and optimize a cloud-native application protection platform such as Wiz to continuously discover cloud assets, identify misconfigurations, excessive permissions, exposed data, and vulnerable workloads, and surface findings for triage.

  • Perform risk-based analysis and prioritization of cloud security findings using severity, exploitability, data sensitivity, and business context, and drive remediation to closure in partnership with cloud, infrastructure, application, and vendor teams.

  • Evaluate cloud environments against recognized benchmarks and best practices—such as the CIS Benchmarks, the AWS Well-Architected Framework security pillar, and internal standards—and track configuration drift and remediation over time.

  • Support cloud identity and entitlement security, including the review and right-sizing of AWS IAM roles, policies, and permission boundaries, and the reduction of standing and excessive privilege across cloud accounts.

  • Administer and support Microsoft Entra ID and hybrid Active Directory identity services, including conditional access policies, multifactor authentication, authentication methods, application registrations, and single sign-on integrations.

  • Configure and operate Microsoft Entra Privileged Identity Management (PIM) and support privileged access practices, just-in-time elevation, and periodic access reviews and certifications for sensitive roles and applications.

  • Monitor, triage, and investigate cloud and identity security alerts from sources such as Wiz, AWS-native security services (GuardDuty, Security Hub, CloudTrail), Microsoft Defender for Cloud, Microsoft Entra ID Protection, and the enterprise SIEM.

  • Contribute to secure cloud onboarding and architecture reviews for new cloud services, SaaS applications, and third-party integrations, including evaluation of authentication, authorization, logging, encryption, and data handling.

  • Maintain familiarity with infrastructure-as-code and container technologies—such as Terraform or CloudFormation templates, CI/CD pipelines, and Kubernetes—sufficient to review security findings in these areas and route them appropriately.

  • Serve as a well-rounded contributor across the broader security program, assisting with vulnerability management, data protection, application security, and endpoint and email security work as team priorities and organizational risk require.

  • Serve as part of a dynamic team responsible for cybersecurity incident response, contributing to the detection, triage, investigation, containment, and remediation of security incidents, including cloud and identity-based attacks.

  • Develop and maintain cloud and identity security metrics, dashboards, runbooks, and technical documentation for technical teams and leadership.

  • Collaborate with teams throughout ISS, as well as Privacy and Compliance, to ensure the protection of ePHI and adherence to HIPAA and other regulatory requirements.

  • Contribute to the development and implementation of cybersecurity strategies, policies, standards, and procedures, particularly those governing cloud and identity.

  • Participate in a rotating on-call schedule to support incident response and time-sensitive security matters outside of standard business hours.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

Merci Technologies, Inc. • Miami (FL), Northern (KY)

Hybrid
USD 140,000 - 180,000
IT Cloud & Identity Administrator II (Remote)
IT Cloud & Identity Administrator II (Remote)

cafairplan • Los Angeles (CA)

Remote
USD 110,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Cloud Security & Identity Engineer II
Cloud Security & Identity Engineer II

Atlantic Health System • Morristown (NJ)

Hybrid
USD 110,000 - 150,000
Security Architect (Cloud)
Security Architect (Cloud)

SS&C Technologies • Windsor (CT)

On-site
GBP 90,000 - 130,000
Hybrid Work Model
Professional Development Reimbursement
Competitive holiday scheme
+1
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

The Blue Venture Fund • Oak Brook (IL)

Remote
USD 140,000 - 190,000
Cyber Cloud Security Engineer
Cyber Cloud Security Engineer

Pierce • New York (NY)

On-site
USD 140,000 - 190,000
Senior Security Engineer 5529
Senior Security Engineer 5529

Tier4 Group • Chicago (IL)

On-site
USD 140,000 - 200,000
Cloud Security Engineer
Cloud Security Engineer

Fabergent • Miami (FL)

On-site
USD 100,000 - 130,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Eleven Recruiting • Santa Monica (CA)

On-site
USD 140,000 - 190,000