Назад
Company hidden
1 час назад

Staff Cloud Security Engineer (AWS)

169 000 - 224 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Cloud Security Engineer (AWS): Securing cloud platforms that support early cancer detection technology with an accent on AWS security architecture, DevSecOps, threat modeling, and cloud-native controls. Focus on designing scalable guardrails, automating compliance and incident response, protecting Kubernetes and application workloads, and guiding secure cloud engineering across a regulated healthcare environment.

Location: Sunnyvale, California, United States. Hybrid arrangement with at least 60% or 24 hours of the work week on-site; the remaining time may be worked from home.

Annual base pay: $169K–$224K, plus potential bonus or incentives and benefits.

Company

hirify.global develops healthcare technology focused on early cancer detection.

What you will do

  • Lead the design and continuous improvement of cloud security architectures across AWS environments.
  • Implement and manage AWS-native security services, including IAM, KMS, GuardDuty, Security Hub, Inspector, Macie, WAF, Shield, CloudTrail, Config, and CloudWatch.
  • Define security standards, guardrails, and governance for AWS accounts, containers, Kubernetes/EKS, serverless, and hybrid cloud workloads.
  • Automate security monitoring, compliance validation, vulnerability management, and incident response using IaC, scripting, and cloud-native tools.
  • Conduct threat modeling, architecture risk assessments, security reviews, penetration testing, and vulnerability assessments.
  • Act as a cloud security subject matter expert during incidents and investigations while mentoring engineers and partnering with Engineering, Platform, Infrastructure, Compliance, and Product teams.

Requirements

  • 8+ years of experience in product security, cybersecurity, cloud security, application security, or related technical security roles.
  • Hands-on experience leading threat modeling, security risk assessments, and vulnerability management for complex software products.
  • Experience with CI/CD, DevSecOps, production incident response, and root cause analysis.
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field, or equivalent practical experience.
  • Ability to work in the Sunnyvale office under a hybrid arrangement with a minimum 60% on-site requirement.

Nice to have

  • Experience in regulated environments such as medical devices, healthcare, or life sciences.
  • Knowledge of IEC 62304, ISO 14971, ISO 80001-2, NIST, or FDA cybersecurity guidance.
  • Experience securing AI/ML systems and mitigating data poisoning, model manipulation, and unauthorized access.
  • AWS, OSCP, GPEN, GCIH, GWAPT, CISSP, CCSP, or equivalent security certifications.
  • Experience with cybersecurity programs, tabletop exercises, incident simulations, and globally distributed teams.

Culture & Benefits

  • Mission-driven work supporting early cancer detection technology.
  • Flexible hybrid work from the office or home, subject to the on-site requirement.
  • Flexible time off or vacation.
  • 401(k) retirement plan with employer match.
  • Medical, dental, and vision coverage, plus mindfulness programs.
  • Occasional business travel may be required.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →