Senior Security Engineer II

United States Digital Space LLC

Chicago (IL)

Hybrid

USD 149,000 - 235,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work model
Equity RSUs
Total Rewards package

Job summary

United States Digital Space LLC is seeking a Senior Cloud Security Engineer II to lead secure cloud architectures and threat modeling across AWS, GCP, and self-managed Kubernetes. The role is a senior IC position focused on technical depth and measurable security outcomes.

You will define standards, drive cross-team security initiatives end to end, mentor engineers, and influence product engineering with governance and practical controls.

Qualifications

  • Several years owning cloud security in production
  • Hands-on AWS as primary cloud, working GCP, self-managed Kubernetes
  • Proficient in Python and Terraform (in-code security)

Responsibilities

  • Define cloud security standards, guardrails, and reference architectures for Infrastructure, SRE, and Product Engineering
  • Set objectives/roadmap for cloud security work and drive measurable outcomes
  • Lead cross-functional security initiatives end to end with clear ownership and delivery
  • Mentor engineers and serve as a technical resource for cloud security
  • Represent cloud security in architecture discussions and translate risk into actionable guidance

Skills

AWS
GCP
Kubernetes
Python
Terraform

Tools

Terraform

Job description

At the company, we have found our people. We’re a genuinely approachable, exceptionally kind, and intensely passionate crew.

We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a global scale while striving for greater equity and opportunity – inside and outside our organization.

To flourish here, you must be prepared to set a high bar for yourself and those around you. There is always a way to contribute: Acting with autonomy, having accountability and being open to new perspectives are essential to our continued success.

Our deep curiosity to learn and our eagerness to share diverse passions with others gives us balance and injects a one-of-a-kind vibrancy into our culture.

If you are driven to solve exhilarating challenges and have a bias toward action in the face of change, you will be empowered to make a real impact here, with a sharp and passionate team at your back. If the company sounds like a place where you can thrive, we can’t wait to meet you.

the company is a modern, cloud-first SaaS company running entirely on cloud-native infrastructure — large-scale, distributed systems spanning AWS, GCP, and self-managed Kubernetes, backed by self-managed data stores such as MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior individual contributor and technical leader for cloud security.

This is a step up from our Senior Cloud Security Engineer role. Where a Senior engineer executes and improves our cloud security controls, a Senior Cloud Security Engineer II sets the technical direction: you define the standards and reference patterns other engineers build on, lead cross-team security initiatives end to end, take on the ambiguous problems that don't yet have a playbook (and write the playbook), and raise the bar for the whole team through mentorship and review. You'll go especially deep across three areas — secure architecture and threat modeling, detection engineering and incident response, and Kubernetes and platform security — and you'll shape how the company does cloud security across Engineering. This is a pure IC role; you lead through technical depth and influence rather than direct people management.

WHAT YOU'LL DO

Set the technical direction (leadership & standards):

  • Define the cloud security standards, guardrails, and reference architectures that Infrastructure, SRE, and Product Engineering build on — turning point-in-time fixes into durable, org-wide patterns
  • Set your own objectives and roadmap for high-impact cloud security work, in partnership with Security Engineering leadership, and drive it to measurable outcomes
  • Lead cross-functional security initiatives end to end — scope, timeline, stakeholders, and delivery — guiding technical debates to a decision and owning the result
  • Mentor and uplevel other security and platform engineers through pairing, design review, and feedback; act as a force multiplier and the go-to technical resource for cloud security
  • Represent cloud security in architecture and design forums, translating complex attack paths and risk into clear, actionable guidance engineers will actually adopt

Secure architecture & threat modeling:

  • Own threat modeling as a discipline for new cloud technologies, services, and patterns adopted across Engineering — making it a repeatable, scalable practice rather than a one-off exercise
  • Partner with Infrastructure, SRE, and Product Engineering to design secure-by-default cloud architectures and build practical, scalable controls across AWS, GCP, and self-managed systems
  • Drive control-plane and IAM security strategy across AWS and GCP, including relationships with external identity providers, RBAC models, and least privilege at scale
  • Continually assess posture, surface systemic and emerging risk, and set the priorities that reduce it

Detection engineering, incident response & automation:

  • Advance our detection strategy: design high-signal detections and SIEM rules (with our SIEM Management function) and own detection coverage for cloud threats end to end
  • Serve as a senior incident responder and cloud-forensics lead for cloud and run-time security investigations across AWS and GCP — and codify what you learn into standard IR playbooks and preventative controls
  • Own and optimize security tooling such as CrowdStrike (EDR/CSPM/IR), Tenable, and native cloud security services, and lead our vulnerability management workflow — scanning, triage, prioritization, and remediation — for cloud assets

Kubernetes & platform security:

  • Own the security of our self-managed Kubernetes environments — control plane, nodes, workload isolation, admission control, run-time security, and the CI/CD supply chain feeding them
  • Set the standards for Infrastructure-as-Code and pipeline security (Terraform preferred): design and harden IaC and CI/CD automation so security is built into how we ship
  • Establish best practices for patch management, base-image hardening, and version management across containerized and VM-based environments
  • Lead the security of large-scale, distributed systems and self-managed data stores (e.g., MongoDB), accounting for their real-world operational and security implications
WHO YOU ARE

You are a senior individual contributor who leads through technical depth and influence rather than authority. You can take an ambiguous, open-ended cloud security problem, define the objective yourself, and deliver a solution that becomes the way the company does it going forward. You translate complex cloud attack paths, IAM misconfigurations, and multi-step threat scenarios into guidance engineers adopt, and you balance strong controls with operational reality. You raise the people around you — through mentorship, review, and the standards you set — and you stay current with the cloud security landscape, tools, and threats. Above all, you can walk someone through the messy middle — what you tried, what broke, and what you'd do differently.

THE FEW HARD PREREQUISITES:

These are the genuinely pass/fail requirements:

  • Several years owning cloud security in production — on-call for it, not adjacent to it
  • Hands-on, not theoretical: AWS as primary cloud, working GCP, self-managed Kubernetes
  • You read and write code (Python, TF)

For candidates based in the United States, the pay range for this position at the start of employment is expected to be between $149,000 and $235,000/year with an expected On Target Earnings (OTE) between $166,000 and $261,000/year (including bonus or commission). Your exact offer may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. In addition to cash compensation, this role qualifies for a comprehensive Total Rewards package that includes equity grants of restricted stock (RSUs) so that you will own a piece of our company.

WHAT WE OFFER

*the company benefits vary by location, and we encourage you to review our specific benefits offerings for each country here. More details on benefits plans will be provided if you receive an offer of employment.*

From offering comprehensive benefits to fostering hybrid ways of working, we’ve got you covered so you can prioritize work-life harmony. the company offers benefits such as:

  • Competitive compensation that may inc
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer II
Senior Security Engineer II

United States Digital Space LLC • Atlanta (GA)

Hybrid
USD 149,000 - 235,000
Total Rewards package
Equity
Senior Security Engineer II
Senior Security Engineer II

United States Digital Space LLC • San Francisco (CA)

Hybrid
USD 149,000 - 235,000
Equity (RSUs)
Total Rewards package
Hybrid work model
Senior Security Engineer, Enterprise Security
Senior Security Engineer, Enterprise Security

United States Digital Space LLC • Austin (TX)

On-site
USD 129,000 - 180,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Global Solutions Consulting LLC. • Baltimore (MD)

Hybrid
USD 90,000 - 135,000
Competitive salary and benefits package
Opportunities for professional growth
Collaborative work environment
+1
Lead Cloud Security Engineer - Boston/Cloud Security/AWS/Azure
Lead Cloud Security Engineer - Boston/Cloud Security/AWS/Azure

Motion Recruitment • Boston (MA)

On-site
USD 150,000 - 190,000
Medical Insurance
Dental Benefits
Vision Benefits
+2
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Senior Security Engineer
Senior Security Engineer

Silversmith Capital Partners • United States

Hybrid
USD 126,000 - 154,000
HDHP + telehealth
Calm subscription
LinkedIn Learning
+3
Sr. Cloud Security Engineer
Sr. Cloud Security Engineer

Talent Connection • Pleasanton (CA)

On-site
USD 180,000 - 210,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Arkadia Search Recruiting • Irving (TX)

On-site
USD 80,000 - 120,000
401(k)
Pet insurance
First day benefits
+1