Sr. Cloud Security Engineer - FedRamp (Dallas, TX)

1 month, 3 weeks ago
Full-time
Senior
DevOps and Infrastructure
Zimperium

Zimperium

Mobile Security Solutions | Complete Mobile Security for Apps and Devices Zimperium is the only mobile security platform purpose built for enterprise, securing both mobile devices and applications so they can securely access data. Zimperium is a leadin...

Professional Services
251-1K
Founded 2010
$60M raised

Description

  • Design, implement, and manage security controls across AWS, Azure, GCP, and OCI environments.
  • Serve as the subject matter expert for security automation using CloudFormation and/or Terraform.
  • Implement and enforce CIS Level 2 and DISA STIG hardening across Linux systems and Kubernetes clusters.
  • Configure, manage, and optimize cloud-native and third-party security tools such as Prisma Cloud, Orca, Google SecOps, and Palo Alto firewalls.
  • Deploy and manage WAF solutions, including F5 and cloud-native web application firewalls.
  • Integrate SAST, DAST, and SCA security testing into CI/CD pipelines to support DevSecOps practices.
  • Design and maintain secure storage and rotation of secrets, credentials, and API keys.
  • Conduct threat modeling and security reviews for new applications and services.
  • Participate in rotating on-call coverage for security incidents and operational issues.
  • Support audits by generating evidence, writing reports, and presenting technical findings to leadership.

Requirements

  • 8+ years of progressive IT experience, including at least 5 years in cloud security engineering in a multi-cloud environment.
  • Expert-level proficiency with Infrastructure as Code for security automation using Terraform and/or CloudFormation.
  • Experience securing at least three major cloud platforms among AWS, Azure, GCP, and OCI.
  • Proven expertise with CIS Level 2 and DISA STIG system hardening standards.
  • Extensive Linux administration experience and hands-on security experience with Kubernetes.
  • Experience with at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
  • Hands-on experience with WAF solutions such as F5 or equivalent cloud-native services.
  • Strong working knowledge of DevSecOps principles and integrating security tools into CI/CD pipelines.
  • Experience with secret management tools such as HashiCorp Vault or AWS Secrets Manager.
  • Excellent written and verbal communication skills, including executive-level reporting and technical presentations.
  • Ability to operate independently and take ownership of critical responsibilities.
  • Preferred experience in regulated environments such as FedRAMP, DoD, government, or financial sectors.
  • Preferred experience implementing and maintaining controls for ISO 27001 and SOC 2.
  • Preferred experience with formal threat modeling and risk analysis.
  • Preferred experience in both large enterprise and startup/tech environments.
  • Relevant certifications such as CISSP, CCSP, or AWS/Azure/GCP Security Specializations are preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Active Directory / Identity Engineer

Keywords Studios 10K-50K Internet Software & Services

Keywords Group is seeking an experienced Active Directory SME and Azure Identity Lead to guide company-wide identity architecture and support global IT across on-premises and cloud environments.

Active Directory Cybersecurity DHCP DNS PowerShell
14 hours, 29 minutes ago

Senior Security Compliance Engineer

Klaviyo 1K-5K IT Services

Klaviyo is seeking a Senior Security Compliance Engineer to help its Security Trust & Risk team automate and scale compliance operations, continuous monitoring, and GRC tooling across a fast-growing AI-first B2C CRM platform.

AWS CI/CD Go HIPAA Kubernetes Python REST API SQL
15 hours, 14 minutes ago

Website Security Engineer

PetDesk 51-250 Health Care Providers & Services

PetDesk is hiring a Website Security Specialist to protect its website portfolio by preventing vulnerabilities, responding to incidents, and maintaining secure technical operations across the full site lifecycle.

WordPress
15 hours, 14 minutes ago

Principal AI Security Specialist - Federal

Zscaler 1K-5K Internet Software & Services

Zscaler is hiring a Principal AI Security Specialist to lead field-facing enterprise AI security engagements, helping Fortune 500 customers adopt GenAI securely across complex sales cycles.

Cybersecurity Generative AI LLM
1 day, 14 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers