Sr. Cloud Security Engineer - FedRamp (Dallas, TX)

3 months ago
Full-time
Senior
DevOps and Infrastructure
Zimperium

Zimperium

Mobile Security Solutions | Complete Mobile Security for Apps and Devices Zimperium is the only mobile security platform purpose built for enterprise, securing both mobile devices and applications so they can securely access data. Zimperium is a leadin...

Professional Services
251-1K
Founded 2010
$60M raised

Description

  • Design, implement, and manage security controls across AWS, Azure, GCP, and OCI environments.
  • Serve as the subject matter expert for security automation using CloudFormation and/or Terraform.
  • Implement and enforce CIS Level 2 and DISA STIG hardening across Linux systems and Kubernetes clusters.
  • Configure, manage, and optimize cloud-native and third-party security tools such as Prisma Cloud, Orca, Google SecOps, and Palo Alto firewalls.
  • Deploy and manage WAF solutions, including F5 and cloud-native web application firewalls.
  • Integrate SAST, DAST, and SCA security testing into CI/CD pipelines to support DevSecOps practices.
  • Design and maintain secure storage and rotation of secrets, credentials, and API keys.
  • Conduct threat modeling and security reviews for new applications and services.
  • Participate in rotating on-call coverage for security incidents and operational issues.
  • Support audits by generating evidence, writing reports, and presenting technical findings to leadership.

Requirements

  • 8+ years of progressive IT experience, including at least 5 years in cloud security engineering in a multi-cloud environment.
  • Expert-level proficiency with Infrastructure as Code for security automation using Terraform and/or CloudFormation.
  • Experience securing at least three major cloud platforms among AWS, Azure, GCP, and OCI.
  • Proven expertise with CIS Level 2 and DISA STIG system hardening standards.
  • Extensive Linux administration experience and hands-on security experience with Kubernetes.
  • Experience with at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
  • Hands-on experience with WAF solutions such as F5 or equivalent cloud-native services.
  • Strong working knowledge of DevSecOps principles and integrating security tools into CI/CD pipelines.
  • Experience with secret management tools such as HashiCorp Vault or AWS Secrets Manager.
  • Excellent written and verbal communication skills, including executive-level reporting and technical presentations.
  • Ability to operate independently and take ownership of critical responsibilities.
  • Preferred experience in regulated environments such as FedRAMP, DoD, government, or financial sectors.
  • Preferred experience implementing and maintaining controls for ISO 27001 and SOC 2.
  • Preferred experience with formal threat modeling and risk analysis.
  • Preferred experience in both large enterprise and startup/tech environments.
  • Relevant certifications such as CISSP, CCSP, or AWS/Azure/GCP Security Specializations are preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Director , Information Security and IT

Luna Physical Therapy 251-1K Health Care Providers & Services

Luna is hiring a Director of Information Security & IT to lead enterprise technology and security programs supporting secure operations and patient care in a HIPAA-regulated environment.

AWS Azure GCP HIPAA Penetration Testing
20 hours, 25 minutes ago

Senior MS Intune & Cloud Security Specialist (Freelance)

Coderio 51-250 Internet Software & Services

Coderio is seeking a Senior Cloud Security Architect / MS Intune Specialist to lead a greenfield Microsoft Intune, Entra ID, and Defender for Endpoint implementation for a multi-cloud environment spanning Google Workspace, AWS, and DevOps pipelines.

Active Directory Android AWS Bash GitHub GitLab iOS macOS PowerShell
20 hours, 25 minutes ago

Senior Security Engineer

Hummingbird 1K-5K Professional Services

Hummingbird is hiring a Senior Security Engineer to own and strengthen security for its remote-first SaaS platform that helps financial institutions fight financial crime.

AWS Azure CircleCI Docker Encryption GraphQL JavaScript Network Security PostgreSQL Python React Redis Ruby Ruby on Rails Terraform TypeScript
2 days, 20 hours ago

Principal IAM Engineer Consultant

Kalles Group 11-50 Internet Software & Services

Kalles Group is hiring a remote Principal IAM Engineer Consultant to lead engineering design and delivery for a customer identity and access management platform in a highly regulated financial services environment.

DevSecOps Microservices REST API SAML
3 days, 19 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers