Sr. Cloud Security Engineer - FedRamp

Zimperium

Dallas (TX)

On-site

USD 150,000 - 230,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Zimperium in Dallas, USA is seeking a Senior Cloud Security Engineer to design, implement, and maintain robust security controls across a multi-cloud environment. The role emphasizes automation, independence, and ownership of security responsibilities in a fast-paced setting.

Responsibilities include securing AWS/Azure/GCP/OCI, implementing IaC pipelines, and enforcing CIS Level 2 and DISA STIGs across Linux and Kubernetes, with WAFs and advanced security platforms.

Qualifications

  • 8+ years of IT experience with at least 5 years in Cloud Security Engineering in multi-cloud environments.
  • Expert-level IaC for security automation using Terraform and/or CloudFormation.
  • Deep practical experience securing AWS, Azure, GCP, and OCI environments.
  • Strong system hardening using CIS Level 2 and DISA STIGs.
  • Extensive Linux administration and securing Kubernetes.
  • Hands-on with security platforms like Prisma Cloud, Orca, Google SecOps, and Next-Gen Firewalls.
  • Experience with WAFs such as F5 or cloud-native WAFs.
  • Proven DevSecOps experience; integrating SAST/DAST/SCA into CI/CD pipelines.
  • Experience with Secret Management: HashiCorp Vault, AWS Secrets Manager.

Responsibilities

  • Design, implement, and manage security architecture for multi-cloud environments (AWS, Azure, GCP, OCI).
  • Lead security automation using IaC tools to deploy secure infrastructure at scale.
  • Hardening and compliance across Linux hosts and Kubernetes clusters (CIS Level 2, DISA STIGs).
  • Configure and manage security tooling (Prisma Cloud, Orca, Google SecOps, Next-Gen Firewalls).
  • Deploy and manage WAFs (F5 or cloud-native) to protect critical apps.
  • Integrate SAST/DAST/SCA into CI/CD pipelines to enable shift-left security.
  • Design and maintain secrets management strategies (HashiCorp Vault, AWS Secrets Manager).
  • Perform threat modeling, design reviews, and on-call incident response; support audits and leadership reporting.

Skills

Terraform
CloudFormation
Multi-cloud security
Kubernetes
Linux
Prisma Cloud
Orca
Google SecOps
Vault
Secrets Manager
SAST
DAST
SCA
CI/CD

Tools

Terraform
CloudFormation

Job description

Zimperium is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware.

Our MTD and award-winning machine learning-based engine protects against device, network, phishing and application attacks for IOS, Android and Windows devices, using a non-intrusive approach to always protect privacy of users.

Position Summary:

We are seeking a highly experienced and self-directed Senior Cloud Security Engineer to join our team. This critical role is responsible for designing, implementing, and maintaining robust security controls across our multi-cloud environment. The ideal candidate will possess deep technical knowledge, a proactive, automation-first mindset, and the ability to operate independently, taking full ownership of security responsibilities in a fast-paced environment.

Location:

USA (Dallas Preferred)

Key Responsibilities:
  • Multi-Cloud Security Architecture: Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments.
  • Infrastructure as Code (IaC) & Automation: Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale.
  • System Hardening: Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters.
  • Security Tooling & Operations: Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
  • Application & Network Defense: Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications.
  • DevSecOps & Pipeline Security: Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable "shift-left" security practices.
  • Secrets and Key Management: Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services.
  • Risk & Design Review: Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase.
  • Incident Response & On-Call: Participate in a rotating on-call schedule to address security incidents and operational issues promptly.
  • Compliance & Reporting: Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership.
  • Leadership & Mentorship: Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.
Required Qualifications & Experience:
  • 8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment
  • Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation
  • Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI
  • Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs
  • Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes
  • Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls
  • Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services
  • Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines
  • Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager)
  • Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations
  • Proven ability to operate independently and take ownership of critical responsibilities
Preferred Requirements:
  • Experience working within highly regulated environments, such as FedRAMP, DoD, or similar government/financial sectors
  • Demonstrated experience with implementing and maintaining controls for security frameworks such as ISO 27001 and SOC 2
  • Experience conducting formal threat modeling and risk analysis
  • Experience gained from both a large enterprise environment (for process and scale) and a fast-paced startup/tech company (for agility and innovation)
  • Relevant industry certifications (e.g., CISSP, CCSP, AWS/Azure/GCP Security Specializations)

Zimperium is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Cloud Security Engineer - FedRamp
Sr. Cloud Security Engineer - FedRamp

Skydrop • Dallas (TX)

On-site
USD 130,000 - 160,000
Sr. Cloud Security Engineer - FedRamp
Sr. Cloud Security Engineer - FedRamp

Zimperium • Town of Texas (WI)

On-site
USD 120,000 - 150,000
Senior Cloud Security Engineer — FedRAMP Specialist
Senior Cloud Security Engineer — FedRAMP Specialist

Zimperium • Town of Texas (WI)

On-site
USD 120,000 - 150,000
Software Engineer (Java or Python) - Dallas, Texas
Software Engineer (Java or Python) - Dallas, Texas

Zimperium • Dallas (TX)

On-site
USD 100,000 - 140,000
Customer Success Manager (Public Sector & Endpoint Security) - Dallas, Texas
Customer Success Manager (Public Sector & Endpoint Security) - Dallas, Texas

Skydrop • Dallas (TX)

On-site
USD 80,000 - 120,000
Sr. Customer Success Manager (Public Sector & Endpoint Security) - Washington D.C.
Sr. Customer Success Manager (Public Sector & Endpoint Security) - Washington D.C.

Skydrop • United States

On-site
USD 100,000 - 130,000
Director, Partners and Alliances
Director, Partners and Alliances

Zimperium • United States

On-site
USD 150,000 - 210,000
Sr. Customer Success Manager (Public Sector & Endpoint Security) - Washington D.C.
Sr. Customer Success Manager (Public Sector & Endpoint Security) - Washington D.C.

Zimperium • United States

On-site
USD 120,000 - 150,000
Director, Partners and Alliances, Public Sector
Director, Partners and Alliances, Public Sector

Sierra Ventures • Washington

On-site
USD 180,000 - 260,000
Cloud Security Engineer
Cloud Security Engineer

apex-technology-inc • Los Angeles (CA)

On-site
USD 180,000 - 240,000