Cloud Security Engineer

14 hours, 2 minutes ago
Full-time
Senior
DevOps and Infrastructure
WorkWave

WorkWave

WorkWave provides field service management software solutions to automate business operations, improve efficiency, and enhance customer experiences through a suite of products like PestPac® and WorkWave Service™.

Professional Services
251-1K
Founded 1984

Description

  • Lead deployment and optimization of AWS Control Tower, Security Hub, and AWS WAF to establish a secure multi-account strategy.
  • Own cloud security outcomes across AWS (primary), Azure (secondary), and limited GCP, including secure landing zone standards, guardrails-as-code, detection coverage, and remediation automation.
  • Design and implement reusable, secure-by-default cloud patterns, hardened Terraform modules, reference architectures, and baseline configurations to enable safe engineering self-service.
  • Collaborate with AppSec and platform teams to secure container environments (EKS/ECS) through image scanning, runtime protection, and least-privilege orchestration.
  • Perform comprehensive baseline cloud security assessments, produce prioritized roadmaps, and drive remediation with engineering partners.
  • Lead design and enforcement of least-privilege IAM architecture across accounts and workloads, including KMS key strategy and governance.
  • Develop and maintain secure configuration standards, operational procedures, and documentation to enable consistent, audit-ready cloud operations.
  • Own detection and telemetry (CloudTrail, GuardDuty, VPC Flow Logs, etc.), CSPM/MDR integrations, and tuning to improve alert fidelity and remediation workflows.
  • Build and run cloud vulnerability and exposure management programs (workloads, container images, AMIs) with severity-based SLAs and scalable scanning/patch workflows.
  • Participate in on-call rotation as primary cloud security SME, run incident playbooks and tabletop exercises, and ensure forensics readiness and break-glass procedures.

Requirements

  • 5–8+ years in Information Security with at least 3+ years focused on AWS cloud security.
  • Deep hands-on experience designing and securing AWS environments and core services (IAM, VPC, S3, KMS) and security services (GuardDuty, Inspector, Config).
  • Strong hands-on experience with Terraform and infrastructure-as-code practices.
  • Proven experience securing containerized workloads in EKS or ECS and integrating image/runtime scanning and protections.
  • Willingness to support and maintain an existing Azure environment (deep Azure expertise not required).
  • Experience with cloud detection/telemetry, CSPM/MDR tooling, and vulnerability scanning (e.g., AWS Inspector, ECR scanning).
  • Ability to assess complex environments and produce a pragmatic, prioritized “roadmap to green” and to collaborate closely with engineering teams.
  • Automation-first mindset with experience automating security controls, remediation, and evidence collection for compliance.
  • Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent work experience); AWS/Azure security certifications (e.g., AWS Certified Security – Specialty, Azure security cert) are highly desirable.
  • Willingness to participate in on-call rotations and incident response as the cloud security SME.

Benefits

  • Salary range $120,000 - $145,000 per year (final offer dependent on experience and qualifications).
  • Remote-first work environment with flexible remote work and optional use of regional offices and HQ in Holmdel, NJ.
  • Robust benefits package including health and dental insurance and 401(k) with company match.
  • Flexible Time Off or generous PTO plan and paid holidays.
  • Up to 4 weeks paid bonding leave.
  • Tuition reimbursement and access to extensive on-demand and live training resources for career growth.
  • Employee Assistance Program (TotalCare) with 24/7 counseling, plus 24/7 virtual medical care via Teladoc.
  • Quarterly peer-nominated awards, regional discounts, and opportunities to participate in charitable and community events.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Cloud Security Engineer

ClickHouse 51-250 IT Services

Security Engineer on ClickHouse’s Security Team responsible for securing cloud infrastructure and services supporting ClickHouse products, with the main objective of implementing scalable security controls, automation, and incident response to reduce risk across AWS, GCP, and Azure environments.

AWS Azure CI/CD ClickHouse GCP Kubernetes Secrets Management
14 hours, 17 minutes ago

Senior Software Engineer I, Infrastructure

Axon 1K-5K Professional Services

Software engineer at Axon on the Real-Time Operations team responsible for designing, building, and operating mission-critical real-time services (Axon Dispatch and Axon Respond) to deliver a world-class real-time operations platform for public safety.

Agile C# Go Java Scala Scrum
14 hours, 31 minutes ago

Senior Security Engineer

Bitwarden 51-250 Internet Software & Services

Senior Security Engineer at Bitwarden working remotely in the U.S. to run purple team testing, security assessments, and investigations across Bitwarden’s products and services to identify, validate, and remediate vulnerabilities and improve platform resilience.

Burp Suite C# Encryption Metasploit Nmap OAuth OpenID Connect Penetration Testing SAML Serverless TypeScript
15 hours, 47 minutes ago

Senior Security Engineer (Firewall) - Mid-Atlantic region

GuidePoint Security 251-1K Internet Software & Services

Senior Security Engineer – Firewall Configuration Specialist at GuidePoint Security responsible for designing, deploying, and managing firewall and remote-access configurations to secure enterprise and cloud environments and support ongoing security operations.

Azure Splunk Terraform
16 hours, 31 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers