Sr. Cloud Security Engineer - FedRamp (Dallas, TX)

1 week, 1 day ago
Full-time
Senior
DevOps and Infrastructure
Zimperium

Zimperium

Mobile Security Solutions | Complete Mobile Security for Apps and Devices Zimperium is the only mobile security platform purpose built for enterprise, securing both mobile devices and applications so they can securely access data. Zimperium is a leadin...

Professional Services
251-1K
Founded 2010
$60M raised

Description

  • Design, implement, and manage security controls across AWS, Azure, GCP, and OCI environments.
  • Serve as the subject matter expert for security automation using CloudFormation and/or Terraform.
  • Implement and enforce CIS Level 2 and DISA STIG hardening across Linux systems and Kubernetes clusters.
  • Configure, manage, and optimize cloud-native and third-party security tools such as Prisma Cloud, Orca, Google SecOps, and Palo Alto firewalls.
  • Deploy and manage WAF solutions, including F5 and cloud-native web application firewalls.
  • Integrate SAST, DAST, and SCA security testing into CI/CD pipelines to support DevSecOps practices.
  • Design and maintain secure storage and rotation of secrets, credentials, and API keys.
  • Conduct threat modeling and security reviews for new applications and services.
  • Participate in rotating on-call coverage for security incidents and operational issues.
  • Support audits by generating evidence, writing reports, and presenting technical findings to leadership.

Requirements

  • 8+ years of progressive IT experience, including at least 5 years in cloud security engineering in a multi-cloud environment.
  • Expert-level proficiency with Infrastructure as Code for security automation using Terraform and/or CloudFormation.
  • Experience securing at least three major cloud platforms among AWS, Azure, GCP, and OCI.
  • Proven expertise with CIS Level 2 and DISA STIG system hardening standards.
  • Extensive Linux administration experience and hands-on security experience with Kubernetes.
  • Experience with at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
  • Hands-on experience with WAF solutions such as F5 or equivalent cloud-native services.
  • Strong working knowledge of DevSecOps principles and integrating security tools into CI/CD pipelines.
  • Experience with secret management tools such as HashiCorp Vault or AWS Secrets Manager.
  • Excellent written and verbal communication skills, including executive-level reporting and technical presentations.
  • Ability to operate independently and take ownership of critical responsibilities.
  • Preferred experience in regulated environments such as FedRAMP, DoD, government, or financial sectors.
  • Preferred experience implementing and maintaining controls for ISO 27001 and SOC 2.
  • Preferred experience with formal threat modeling and risk analysis.
  • Preferred experience in both large enterprise and startup/tech environments.
  • Relevant certifications such as CISSP, CCSP, or AWS/Azure/GCP Security Specializations are preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Digital Workplace Engineer

Sword Group 1K-5K Internet Software & Services

Sword is hiring a Digital Workplace Engineer to support strategic managed service clients within its Microsoft Cloud & Cyber team, focusing on the performance, security, and continuous improvement of M365 and Entra ID-based digital workplace platforms.

Active Directory PowerShell
56 minutes ago

Security Engineer, Operations

K2 Space Corporation 51-200 Defense and Space Manufacturing

K2 Space is hiring a Security Operations professional to help protect its corporate and mission-critical environments supporting the development and launch of high-powered satellite platforms.

C++ Go Python Rust SIEM
2 hours, 52 minutes ago

Senior Security Technician

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Security Technician to install, program, troubleshoot, and maintain access control and IP camera systems at client sites.

4 hours, 26 minutes ago

Principal Security Engineer, Operations

K2 Space Corporation 51-200 Defense and Space Manufacturing

K2 Space is hiring a Principal Security Engineer to build the corporate security architecture that protects people, systems, and data while enabling rapid satellite company growth and mission operations.

C++ Go Network Security Python Rust
6 hours, 8 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers