Staff Cloud Security Engineer

🕒 June 1

🇺🇸 United States – Remote

💵 $225k - $275k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Temporal Technologies

Temporal Technologies

51 - 200 employees

Founded 2018

☁️ SaaS

💰 $75M Series B on 2023-02

Software • SaaS • Cloud Computing

Temporal Technologies is a company that provides a platform for durable execution, helping developers build resilient applications by managing failures, network outages, and long-running processes. Their technology abstracts away the complexity of building scalable distributed systems, allowing developers to focus on delivering reliable systems faster. Temporal simplifies code by eliminating recovery logic, callbacks, and timers, making software more durable and fault tolerant. The platform supports a wide variety of applications, from transaction processing to applied AI, and is favored by developers for its ease of use and reliability. Temporal is open-source and offers both self-hosted and managed cloud services in multiple regions, enabling scalable, serverless application development.

📋 Description

• Collaborate with product and engineering teams to integrate security principles into the design and architecture of cloud infrastructure across multiple clouds (AWS, GCP, Azure, and others). • Secure Temporal's core platform components, including the workflow engine, task queue architecture, and worker execution model - identifying attack surfaces unique to durable, stateful distributed systems. • Conduct threat modeling and risk assessments to identify vulnerabilities and potential attack vectors across our multi-cloud environment, with particular focus on workflow execution, task queue integrity, and client-server trust boundaries. • Secure Temporal's gRPC-based communication layer, including mTLS certificate management, service mesh configuration, and API authentication. • Manage cloud security posture using tools such as Wiz, including misconfiguration detection, compliance monitoring, and remediation across all three cloud providers. • Stay current on emerging cloud security standards and guidance (e.g. CSA Cloud Controls Matrix, CIS Benchmarks) and translate these into actionable internal policy. • Able to participate in on-call rotation.

🎯 Requirements

• Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience). • 5+ years in cloud security or a related role. • Proven partnership with engineering teams, bringing security expertise to infrastructure access and security posture. • Kubernetes security posture management and auditing, including workload hardening, RBAC design, and admission control. • Demonstrated experience with multi-tenant security architecture, including data plane isolation, control plane hardening, and cross-tenant data leakage prevention. • Strong opinions on the use of AI in different areas (assessments, threat models, penetration testing, etc). • A deep understanding of application architecture and design principles, ability to effectively identify vulnerabilities across multiple programming languages • Experience with secrets management at scale (e.g. HashiCorp Vault, AWS Secrets Manager) and payload encryption patterns such as codec servers for protecting sensitive workflow data. • Proficiency in Go; familiarity with Python. Go is Temporal's primary server and SDK language. • Strong command of gRPC security, mTLS, and service mesh architectures (Istio, Envoy). • Excellent communication and ability to explain complex security concepts to non-technical stakeholders. • Excellent collaboration and communication skills.

🏖️ Benefits

• Unlimited PTO, 12 Holidays + 2 Floating Holidays • 100% Premiums Coverage for Medical, Dental, and Vision • AD&D, LT & ST Disability, and Life Insurance (Standard & Supplemental Available) • Empower 401K Plan • Additional Perks for Learning & Development, Lifestyle Spending, In-Home Office Setup, Professional Memberships, WFH Meals, Internet Stipend and more!

Apply Now

Similar Jobs

🕒 June 1

Chainguard

51 - 200

🔐 Security

☁️ SaaS

🔒 Cybersecurity

Principal Product Security Researcher leading product security research function at Chainguard. Responsible for mapping threats, shaping strategies, and identifying risks across product portfolio.

🕒 May 31

TruStage

1001 - 5000

💸 Finance

💳 Fintech

IT Manager II managing security infrastructure at TruStage. Leading IT teams to protect enterprise endpoints, data, and workloads from security threats and data loss.

🇺🇸 United States – Remote

💵 $125.1k - $187.7k / year

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

Cloud

ITSM

🕒 May 30

Gainwell Technologies

10,000+ employees

⚕️ Healthcare Insurance

Principal Security Compliance overseeing the development and implementation of security procedures for Gainwell Technologies. Ensuring compliance with corporate and government regulations in a virtual environment.

🇺🇸 United States – Remote

💵 $121.7k - $173.8k / year

💰 Grant on 2023-06

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info

🕒 May 29

BetterHelp

1 - 10

👥 B2C

⚕️ Healthcare Insurance

🧘 Wellness

Head of Security Engineering at BetterHelp, overseeing security strategy and defenses. Leading a team to ensure application and infrastructure security with an emphasis on offensive tactics.

🇺🇸 United States – Remote

💵 $250k - $300k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🕒 May 29

GTT

1001 - 5000

📡 Telecommunications

🔐 Security

Network Security Architect leading the design of secure network infrastructure for a multinational ISP. Overseeing implementation of security systems to protect backbone and data centers.

🇺🇸 United States – Remote

💰 $175M Post-IPO Equity on 2018-03

⏰ Full Time

🟠 Senior

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info