W. R. Berkley Corporation

Cloud Security & Automation Engineer

W. R. Berkley Corporation
Apply
20 hours ago
Wilmington, DE, USASenior

Responsibilities

  • Configure, administer, optimize, and troubleshoot cloud security and exposure management platforms across Azure, AWS, and other in-scope cloud services.
  • Manage cloud account onboarding, connectors, permissions, policies, rules, integrations, dashboards, and platform health.
  • Identify, validate, prioritize, and coordinate remediation of cloud exposures, attack paths, toxic combinations, exceptions, and related risks.
  • Design and build reusable automation for asset onboarding, policy deployment, enrichment, ticket routing, evidence collection, remediation validation, and reporting.
  • Define and implement cloud security requirements, reference patterns, preventive guardrails, and detective controls for identity, network, workloads, containers, Kubernetes, data, secrets, logging, and configuration.
  • Partner with Cloud, DevOps, Vulnerability Management, IAM, infrastructure, application, and AI security teams to integrate controls into delivery workflows.
  • Provide security engineering for AI platforms and services, including architecture reviews, identity controls, secrets management, data-flow protection, monitoring, exposure analysis, and automation.
  • Develop dashboards and operating metrics for cloud coverage, exposures, remediation aging, exceptions, automation effectiveness, and control adoption.
  • Provide cloud security expertise during investigations and incidents, including configuration analysis, identity and access review, log analysis, containment support, and corrective-action engineering.
  • Create technical standards, procedures, runbooks, architecture diagrams, playbooks, and control documentation; mentor engineers and lead technical workstreams.
  • Contribute to technical interviews, resume reviews, and practical assessments for cloud security engineering roles.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline.
  • At least 5 years of experience in cloud security engineering, security engineering, DevSecOps, cloud platform engineering, or a related technical security role.
  • Hands-on experience securing and operating production environments in Microsoft Azure and/or Amazon Web Services; multi-cloud experience is preferred.
  • Hands-on experience with a CNAPP, CSPM, or cloud exposure management platform such as Wiz or Prisma Cloud.
  • Experience prioritizing cloud risk using business context, exploitability, attack paths, asset criticality, identity exposure, network exposure, and data sensitivity.
  • Strong scripting and automation skills using Python and/or PowerShell, REST APIs, JSON/YAML, source control, and CI/CD practices.
  • Experience with Infrastructure as Code and policy-as-code technologies such as Terraform, Bicep, ARM templates, CloudFormation, or Open Policy Agent.
  • Understanding of cloud identity and access management, non-human identities, least privilege, network security, workload and container security, secrets management, encryption, logging, monitoring, and incident response.
  • Ability to troubleshoot complex technical issues, communicate risk clearly, drive remediation across teams, produce technical documentation and metrics, and provide leadership-ready updates.
  • Preferred experience designing or operating a formal CTEM or cloud exposure management program.
  • Preferred experience integrating cloud security platforms with ServiceNow, Azure DevOps, Jira, SIEM/SOAR platforms, messaging platforms, data pipelines, or reporting tools.
  • Preferred experience securing Kubernetes, containers, serverless services, CI/CD pipelines, software supply chains, and cloud-native application architectures.
  • Preferred familiarity with AI/ML security, including AI service architecture, model and data access, agent or workload identities, prompt and data-flow risks, AI security posture management, and AI governance.
  • Preferred knowledge of NIST CSF, NIST 800-53, CIS Benchmarks, CSA CCM, MITRE ATT&CK, OWASP, and relevant regulatory or audit requirements.
  • Relevant certifications such as CCSP, CISSP, CCSK, Microsoft Azure Security Engineer, AWS Certified Security - Specialty, or vendor platform certifications are preferred.
  • Must be able to sit at a desk and work on a computer for extended periods, occasionally lift or move up to ten pounds, and meet close-vision and focus-adjustment requirements.

Benefits

  • Primary location is Wilmington, Delaware.
  • The role includes occasional travel or assigned Person in Charge coverage as applicable.

Categories

W. R. Berkley Corporation

About W. R. Berkley Corporation

1,001-5,000 employees

W. R. Berkley Corporation is a public insurance holding company that sells commercial property‑casualty coverage and insurance‑related services to businesses. Its operating units focus on primary insurance, reinsurance, and monoline excess products tailored to industry niches and regional markets. Founded in 1967 and headquartered in Greenwich, Connecticut, the company trades on the NYSE (WRB) and operates worldwide; subsidiaries include Berkley Technology Services, which supports core systems for its insurance businesses.

Contact me