Lead Cloud Security Engineer

The Chamberlain Group LLC

South Carolina

On-site

USD 102,600 - 193,425

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive benefits package
401(k) contribution
Short-term incentive plan

Job summary

The Chamberlain Group LLC is seeking a Cloud Security Engineer responsible for architecting and enforcing security controls across AWS and Azure. Candidates must have over 7 years of experience in information security, with a strong focus on cloud security engineering and proficiency in CSPM platforms.

The role requires at least three days in the office weekly, with competitive compensation ranging from $102,600 to $193,425, plus a benefits package.

Qualifications

  • 7+ years of experience in information security with at least 4 years in cloud security.
  • Strong experience with cloud CSPM platforms and securing IaC pipelines.
  • Ability to manage and monitor major incidents during non-business hours.

Responsibilities

  • Architect and enforce cloud security controls across AWS and Azure.
  • Manage and optimize cloud security posture management tooling.
  • Conduct cloud security assessments and drive remediation.

Skills

AWS security services
Microsoft Azure security services
Cloud security posture management (CSPM)
Infrastructure-as-Code (Terraform, CloudFormation)
Container security (Docker, Kubernetes)
Network security principles
CI/CD security integration
Communication skills
Collaboration

Education

Bachelor’s degree in Computer Science or related field

Tools

Wiz
Rapid7 InsightCloudSec
CrowdStrike Falcon Cloud Security

Job description

Responsibilities
  • Architect and enforce cloud security controls across AWS and Azure, including IAM policies, network segmentation, encryption, and logging configurations.
  • Manage and optimize cloud security posture management (CSPM) and cloud workload protection (CWPP) tooling.
  • Conduct cloud security assessments, identify misconfigurations, and drive remediation with engineering teams.
  • Design and implement guardrails for Infrastructure-as-Code (IaC) pipelines (Terraform, CloudFormation, Bicep) to prevent insecure deployments.
  • Monitor and respond to cloud-specific threats, integrating cloud telemetry into SIEM and detection workflows.
  • Evaluate and harden container and serverless architectures (EKS, ECS, Lambda, AKS, Azure Functions).
  • Develop and maintain cloud security standards, reference architectures, and runbooks.
  • Support incident response activities for cloud-based security events.
  • Partner with Engineering and Application Development teams to embed security into CI/CD pipelines.
  • Provide technical input on cloud security tooling decisions, vendor evaluations, and proof‑of‑concept testing.
  • Stay current on cloud provider security features, emerging threats, and evolving compliance requirements (SOC2, ISO27001, NISTCSF, PCIDSS as applicable).
Qualifications
  • Education/Certifications: Bachelor’s degree in Computer Science, Information Security, Information Technology, or a related field.
  • Experience: 7+ years of progressive experience in information security, with at least 4 years focused on cloud security engineering.
  • Knowledge, Skills, and Abilities:
    • Deep hands‑on experience with both AWS and Microsoft Azure security services, including: AWS: IAM, GuardDuty, Security Hub, CloudTrail, Config, KMS, VPC security, WAF, Organizations/SCPs; Azure: EntraID, Defender for Cloud, Azure Policy, Key Vault, NSGs, Azure Monitor, Sentinel.
    • Strong experience with cloud security posture management (CSPM) platforms (e.g., Wiz, Orca, Rapid7 InsightCloudSec, CrowdStrike Falcon Cloud Security).
    • Working knowledge of Infrastructure-as-Code (Terraform, CloudFormation, or ARM/Bicep templates) and securing IaC pipelines.
    • Experience with container security (Docker, Kubernetes) and serverless security patterns.
    • Capable of persuading non-security leaders by linking security initiatives to operational continuity, consumer trust, and compliance posture.
    • Solid understanding of network security principles applied to cloud environments (VPCs, transit gateways, private endpoints, zero trust network architecture).
    • Familiarity with CI/CD security integration and DevSecOps practices.
    • Ability to communicate complex technical concepts to both engineering peers and non-technical stakeholders.
    • Collaborative approach to working across engineering, IT, and product teams.
  • Other requirements: Required to be in the office at least three days a week; Monday and Wednesday are mandatory; ability to manage and monitor major incidents during non-business hours.
Preferred Qualifications
  • Certifications: AWS Security Specialty, Azure Security Engineer Associate (AZ-500), CCSP, CISSP, or equivalent.
  • Experience with cloud detection and response (CDR) tooling and cloud-native threat detection.
Compensation and Benefits

Pay range: $102,600.00 – $193,425.00. Base pay may vary based on factors such as location, education, training, and experience. In addition to base pay, a comprehensive benefits package and 401(k) contribution are offered (eligible benefits subject to requirements). The position may participate in a short‑term incentive plan subject to applicable plans and policies.

Equal Opportunity Employment

Chamberlain Group is an Equal Opportunity Employer. All qualified applicants will receive consideration regardless of race, color, religion, sex, national origin, age, sexual orientation, ancestry, marital status, disability, veteran status, or any other protected characteristic. Individuals with disabilities who anticipate needing accommodations for any part of the application process may contact Recruiting@Chamberlain.com. Staffing agencies or recruiters should not contact hiring managers directly.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Security Engineer
Cloud Security Engineer

Triwill Group • United States

On-site
USD 86,000 - 112,000
Competitive base salary
Medical, dental, vision insurance
401(k) retirement plan
+2
Cloud Security Operations Engineer
Cloud Security Operations Engineer

Cadence Design Systems • San Jose (CA)

On-site
Paid vacation
Paid holidays
401(k) match
+1
Security Operations Center Cloud Engineer
Security Operations Center Cloud Engineer

Lakeview Loan Servicing • Coral Gables (FL)

Remote
USD 165,000 - 175,000
Annual bonus
Remote work flexibility
Senior Cloud Security Architect (AWS & Azure)
Senior Cloud Security Architect (AWS & Azure)

The Chamberlain Group LLC • South Carolina

On-site
USD 102,600 - 193,425
Comprehensive benefits package
401(k) contribution
Short-term incentive plan
Cloud Security Engineer
Cloud Security Engineer

Booz Allen Hamilton • Alexandria (VA)

On-site
USD 99,000 - 225,000
Health, life, and disability insurance
Retirement plans
Paid leave
Manager, Cloud Engineering
Manager, Cloud Engineering

The Chamberlain Group LLC • South Carolina

On-site
USD 133,000 - 229,000
Comprehensive benefits package
401k contribution
Short-term incentive plan
Corporate Vice President - Cloud Security Engineer
Corporate Vice President - Cloud Security Engineer

New York Life • New York (NY)

Hybrid
USD 147,000 - 211,000
Sr. Cloud Security Engineer (Remote)
Sr. Cloud Security Engineer (Remote)

Inspira Financial • Oak Brook (IL)

Hybrid
USD 125,000 - 155,000
Healthcare
401(k)
Paid time off
+2
Cloud Security Engineer
Cloud Security Engineer

TechDigital Group • Frisco (TX)

On-site
USD 80,000 - 120,000
Senior Staff Engineer - DevSecOps
Senior Staff Engineer - DevSecOps

Exelixis Inc • Alameda (CA)

On-site
USD 154,500 - 220,500
401(k) plan with company contributions
Group medical, dental, and vision coverage
Flexible spending accounts
+1