Staff Cloud Security Engineer
Included Health
5 months ago
Remote, United States
Staff+
H1B Sponsor
Base Salary
$161k - $296k/yr
Responsibilities
- Design and implement a comprehensive authorization framework for cloud resources.
- Lead the implementation of Just-In-Time access control systems for production environments.
- Collaborate with engineering to integrate data classification with access control mechanisms.
- Develop and maintain security automation scripts and tools in Python or Go.
- Write clean, maintainable, and testable code for security automation.
- Implement Infrastructure as Code principles using Terraform for security configurations.
- Contribute to the design of centralized security controls like Web Application Firewalls.
- Establish secure practices for managing the development toolchain.
- Design a secure mechanism for webhook testing in local development environments.
- Define and enforce container security hardening standards.
- Drive remediation of legacy cloud environments, particularly in GCP.
- Design solutions for granular data access control in cloud environments.
- Collaborate with teams to integrate automated security controls into systems and CI/CD pipelines.
- Act as a subject matter expert on cloud security, providing guidance and code reviews.
- Support organizational change management related to new security controls.
- Conduct security assessments and contribute to incident response.
Requirements
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- 5+ years of experience in cloud security, focusing on AWS.
- Proven hands-on software development experience in Python and Go.
- Experience designing and implementing authorization and access control frameworks.
- Deep proficiency in writing and maintaining Terraform modules for security.
- Experience with containerization and hardening containerized environments.
- Knowledge of SDLC security and secure software development practices.
- Experience with security logging and monitoring tools and scripting against their APIs.
- Familiarity with cloud security frameworks, regulations, and standards.
Benefits
- Remote-first culture.
- 401(k) savings plan through Fidelity.
- Comprehensive medical, vision, and dental coverage.
- Paid Time Off and Discretionary Time Off.
- 12 weeks of 100% Paid Parental leave.
- Family Building & Compassionate Leave benefits.
- Work-From-Home reimbursement.
Tech Stack
AWSDockerGoGoogle Cloud PlatformKubernetesPythonRubyTerraform
Categories
DevOpsSecurity