Назад
Company hidden
3 дня назад

Cloud Security Engineer (AWS)

153 000 - 178 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cloud Security Engineer (AWS): Designing and automating security guardrails across AWS infrastructure, Kubernetes platforms, and deployment pipelines with an accent on cloud hardening, identity and access management, and zero-trust architecture. Focus on building policy enforcement and self-service security tools, conducting threat modeling, and responding to cloud security incidents while maintaining CMMC and NIST 800-171 compliance.

Location: On-site in Burlingame, California, United States

Salary: $153,000–$178,000 per year, plus equity

Company

hirify.global develops Pulsar, a low Earth Orbit satellite infrastructure platform providing precise, resilient global positioning and navigation services.

What you will do

  • Design and enforce secure cloud patterns, zero-trust network segmentation, and hardening standards across AWS multi-account infrastructure and Kubernetes platforms.
  • Architect authentication, authorization, secrets management, IAM, and zero-trust networking for platform services.
  • Build automated security guardrails, policy enforcement, and self-service security tools for engineering teams.
  • Automate compliance with standards including CMMC and NIST 800-171.
  • Conduct security assessments and threat modeling, monitor security telemetry, triage cloud threats, and participate in incident response and root-cause analysis.
  • Collaborate with architecture, DevOps, SRE, operations, and enterprise security teams.

Requirements

  • 4+ years of experience in cloud security, DevOps, or platform engineering, with a strong focus on security operations and architecture.
  • Hands-on experience securing AWS, GCP, or Azure environments.
  • Strong knowledge of container security and Kubernetes controls, including RBAC, network policies, and runtime security.
  • Proficiency in Python, Go, or similar scripting languages and experience with automation tools.
  • Familiarity with CI/CD security integrations, SBOM, SIEM, and CSPM tools.
  • For the U.S. role, eligibility must include U.S. citizenship, lawful permanent residence, or another protected-individual status under applicable export regulations.

Nice to have

  • AWS Certified Security, CISSP, or CCSK certification.
  • Experience implementing zero-trust architectures in modern enterprises.
  • Familiarity with Policy-as-Code frameworks such as Open Policy Agent.
  • Experience with developer enablement, security-as-a-product practices, or red-team exercises for distributed cloud environments.

Culture & Benefits

  • Security is integrated into platform engineering rather than handled solely as a compliance gate.
  • Engineering teams are supported with secure defaults and self-service tooling.
  • Work alongside architecture, DevOps, SRE, operations, and enterprise security functions.
  • Full-time employment with equity compensation.
  • Commitment to an inclusive workplace and equal employment opportunity.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →