
Cloud & Application Security Engineer
MSG Entertainment Holdings, LLC11 days ago
Burbank, CA, USA or Las Vegas, NV, USAMid Level / Senior
H1B sponsor
Base Salary
$120k - $155k/yr
Responsibilities
- Design and mature secure cloud architectures across AWS, Azure, and GCP, primarily GCP.
- Develop, audit, and harden cloud infrastructure involving IAM, networking, organization policies, logging, and Terraform-based infrastructure-as-code.
- Provide security architecture guidance for cloud applications, APIs, infrastructure, DevOps, and AI-assisted development.
- Perform application security assessments, secure code reviews, and automated and manual testing of web applications, APIs, and cloud services.
- Identify, prioritize, and remediate cloud and application vulnerabilities, including critical and zero-day threats.
- Lead evaluations, proofs of concept, and implementations of cloud and application security technologies.
- Secure AI platforms and AI-assisted applications by implementing controls and reviewing security risks.
- Partner with Security Operations to improve cloud detection, monitoring, incident response, and security visibility.
Requirements
- 4-6 years of related experience.
- Bachelor’s degree or equivalent combination of education and experience.
- Experience securing enterprise cloud environments across AWS, Azure, and/or GCP, including Kubernetes.
- Strong understanding of cloud architecture, IAM, networking, cloud security controls, and infrastructure-as-code.
- Experience integrating security into CI/CD pipelines using Terraform and modern DevOps platforms.
- Proficiency in Python, PowerShell, Bash, Go, or a similar language, or demonstrated ability to use AI-assisted engineering tools for automation and security solutions.
- Hands-on experience with Wiz or a comparable CSPM/CNAPP platform.
- Experience with application security practices including secure SDLC, threat modeling, secure code reviews, SAST, DAST, SCA, secret scanning, vulnerability management, remediation, and web application security testing.
- Understanding of web application security, REST APIs, OAuth/OIDC/JWT authentication, and OWASP Top 10.
- Familiarity with AI security concepts and securing enterprise AI platforms or AI-assisted applications.
- Security certifications such as CISSP, CCSP, AWS Security Specialty, Google Professional Cloud Security Engineer, AZ-500, CSSLP, or GWAPT are a plus.
Benefits
- Onsite role, as indicated by the #LI-Onsite designation.
- Access to employee upskilling tools and resources to develop skills and advance careers.
- Growth and longevity are emphasized as employee priorities.
- Equal employment opportunity and consideration for reasonable accommodations are provided.