Назад
Company hidden
6 часов назад

Senior Cloud Security Engineer (AWS)

140 000 - 165 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cloud Security Engineer (AWS): Hardening AWS infrastructure and software development pipelines with an accent on cloud security posture, vulnerability management, and preventative controls. Focus on securing IAM, networks, containers, secrets, Infrastructure as Code, CI/CD, and WAF operations while building scalable security automation.

Location: Remote

Salary: $140,000–$165,000 USD base annual salary, plus eligibility for an annual bonus.

Company

hirify.global helps Americans address overwhelming debt through individualized financial solutions, compliance-focused services, and user-centric technology.

What you will do

  • Own cloud security posture across AWS using Wiz and AWS-native services.
  • Reduce risk across IAM, network segmentation, container security, secrets, and data exposure.
  • Establish secure Infrastructure as Code defaults with reusable modules, guardrails, and policy as code.
  • Harden CI/CD pipelines and manage cloud and application vulnerability findings through prioritization, SLA tracking, and remediation.
  • Build automation for finding ingestion, deduplication, prioritization, and developer-facing workflows.
  • Operate WAF protections, telemetry, alerting, runbooks, rate limiting, and bot mitigation.

Requirements

  • 5+ years of hands-on security engineering experience in cloud security and vulnerability management.
  • Strong AWS security experience across IAM, networking, container orchestration, logging, and audit.
  • Hands-on experience securing CI/CD pipelines and Infrastructure as Code; Terraform is required.
  • Experience running or substantially contributing to a vulnerability management program.
  • Working knowledge of the OWASP Top 10 and threat modeling.
  • Ability to operate independently and drive projects without day-to-day oversight.

Nice to have

  • Experience with Wiz, Cloudflare WAF/Gateway/Zero Trust, GitHub Advanced Security, Spacelift, and AWS-native services.
  • Production WAF experience, including rule tuning, false-positive management, and incident response.
  • AI/ML security experience covering prompt injection, data poisoning, model abuse, and mitigation controls.
  • Experience with secrets management, identity security, PCI-regulated environments, Ruby on Rails, Python, or Go.

Culture & Benefits

  • Collaborative, supportive environment focused on community, connection, and belonging.
  • Health, dental, and vision programs with considerable employer contributions.
  • Generous PTO, paid holidays, and paid parental leave.
  • 401(k) matching program, merit advancement opportunities, and career development and training.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →