Senior Cloud Security Engineer

🕒 Agosto 5

🏖️ New Jersey – Remoto

infoinfo

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

👻 Score fantasma 32%

infoinfo

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Med-Metrix

Med-Metrix

1001 - 5000 funcionários

Fundada em 2010

🏥 Saúde

☁️ SaaS

💰 Private equity em 2025-09

Healthcare • SaaS

A Med-Metrix é uma empresa para a qual foi fornecida apenas uma presença mínima na web (a página apenas exibia "Carregando aplicativo... Seu navegador precisa ter o JavaScript habilitado... "). Nenhum produto, mercado ou detalhes de missão foram incluídos no texto fornecido. Com base apenas no nome da empresa, é plausível que foque em métricas médicas ou clínicas, análises ou software para a área de saúde, mas isso é especulativo e não confirmado pelas informações fornecidas. Mais detalhes públicos seriam necessários para ser mais específico.

Descrição

• Design and implement secure cloud architecture across AWS and Azure, including identity, network security, encryption, and key management • Implement cloud-native logging, monitoring, and threat detection to improve visibility and incident response • Build Infrastructure-as-Code, Policy-as-Code, and automated compliance controls • Implement and enhance CSPM, CWPP, and CNAPP capabilities • Conduct threat modeling, security architecture reviews, and risk assessments for cloud services and applications • Design and secure AI/ML environments, including MLOps pipelines, model security, inference endpoints, and AI governance • Assess and mitigate AI-specific threats, including prompt injection, model poisoning, adversarial attacks, and data leakage • Partner with engineering and data science teams to implement secure-by-design and privacy-preserving controls for regulated data • Develop automated detections, SOAR playbooks, and AI-driven threat hunting capabilities • Lead technical response to cloud and AI security incidents, including forensic analysis and remediation • Design and implement security controls supporting HIPAA, HITRUST, PCI DSS, SOC 2, NIST CSF, and NIST AI RMF requirements • Support technical readiness, evidence collection, and remediation activities for security audits and compliance assessments • Develop and maintain cloud security standards, technical guidance, and AI governance documentation • Support enterprise risk management and vendor security assessments • Integrate security throughout the DevSecOps lifecycle, including application, container, and secrets management • Develop security metrics, communicate technical risks to stakeholders, and recommend continuous security improvements • Mentor junior engineers and champion security best practices across engineering teams • Use, protect, and disclose patients’ protected health information only in accordance with HIPAA standards • Understand and comply with Information Security and HIPAA policies and procedures • Limit viewing of PHI to the absolute minimum necessary to perform assigned duties

🎯 Requisitos

• High school diploma or equivalent required • 6+ years of experience in information security, with at least 4 years focused on cloud security engineering • Deep hands-on expertise in AWS and Microsoft Azure, including AWS GuardDuty, Security Hub, IAM Identity Center, Microsoft Defender for Cloud, Sentinel, and Entra ID • Strong knowledge of IAM, zero trust architecture, network security, encryption, and secrets management in cloud environments • Practical experience securing AI/ML systems or LLM-based applications, or demonstrable working knowledge of OWASP LLM Top 10, MITRE ATLAS, and NIST AI RMF • Proficiency in at least one scripting/programming language, with Python preferred, and infrastructure-as-code tooling • Experience with container and orchestration security, including Docker, Kubernetes, EKS, and AKS • Solid understanding of DevSecOps practices and CI/CD security integration • Hands-on experience supporting HIPAA, HITRUST CSF, PCI DSS, and SOC 2 compliance programs in cloud environments, including audit evidence and control implementation • Proficiency in Microsoft Office Suite • Strong interpersonal skills and ability to communicate well at all levels of the organization • Strong problem-solving and creative skills, with sound judgment and ability to make decisions based on accurate and timely analyses • High level of integrity and dependability, with a strong sense of urgency and results orientation • Excellent written and verbal communication skills required • Travel may be required for training and conferences • Must possess a smartphone or electronic device capable of downloading applications for multifactor authentication and security purposes • Experience with GCP in addition to AWS and Azure • Experience deploying or securing MLOps platforms such as SageMaker, Vertex AI, Azure ML, Databricks, or Kubeflow • Familiarity with AI-driven security platforms and custom detections using ML techniques • Relevant certifications such as CISSP, CCSP, HCISPP, CCSFP, AWS Security Specialty, AZ-500, GCP Professional Cloud Security Engineer, or GIAC certifications • Prior experience in healthcare, health tech, or revenue cycle management environments handling PHI at scale • Experience with red teaming or adversarial testing of AI systems • Knowledge of data privacy regulations for AI training data and model outputs, including HIPAA de-identification standards • Contributions to security communities, open-source tooling, or published research • Ability to perform the stated physical and mental job demands

🏖️ Benefícios

• Travel may be required for training, conferences, etc. • Multifactor authentication and security purposes supported through a smartphone or electronic device capable of downloading applications

Candidatar-se

Vagas Similares

🕒 Agosto 5

GXO Logistics, Inc.

10.000+ funcionários

📦 Logística

🚗 Transporte

🤝 B2B

Safety and security manager leading compliance, investigations, training, and risk reduction. Supporting GXO’s technology-enabled supply chain operations across the United States.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Agosto 4

Kami

51 - 200

📚 Educação

☁️ SaaS

🤖 Inteligência Artificial

Security Engineer fixing code-level vulnerabilities across Kami’s digital classroom platform. Hardening cloud infrastructure, integrating secure SDLC guardrails, and automating incident response.

🗣️🇺🇸🇬🇧 Inglês obrigatório

Cloud

Firewalls

🕒 Agosto 4

Optiv

1001 - 5000

Cybersecurity Advisor designing threat-management programs for Optiv, a cyber-risk consulting company. Partnering with sales and clients on scalable security solutions, roadmaps, proposals, and technology evaluations.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Agosto 4

Optiv

1001 - 5000

Cybersecurity Advisor designing Identity and Access Management solutions for Optiv’s cyber-risk consulting clients. Driving security sales, advisory relationships, and scalable programs across client environments.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Agosto 4

Riveron

1001 - 5000

💼 Consultoria

🤝 B2B

💸 Finanças

Cybersecurity advisory senior associate helping Riveron clients implement GRC and compliance programs. Leading IT risk assessments, audits, remediation, and client engagement delivery.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $84.000 - $117.000 / ano

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório