CybersecurityJobs.io
← Back to all jobs

Job Description

Benefits, hybrid flexibility, and strong growth focus are built into this Cloud Security Engineer role at Screen Engine/ASI. The position is hybrid, with primary remote work in the Greater Los Angeles area and bi-weekly on-site presence at the Valley Village office for in-person collaboration, meetings, project work, and on-site coverage when needed. You will also help drive continuous improvement across AWS security, identity governance, monitoring, auditing, and security operations.

Responsibilities

  • Administer and secure AWS cloud infrastructure across IAM, VPC, EC2, RDS, CloudWatch, and VPN, including routing and CIDR/IP range management.
  • Manage AWS IAM policies, roles, and groups, supporting least-privilege access controls and permission governance.
  • Support identity governance activities such as access reviews, permission cleanup, role alignment, and SSO and MFA integrations with related identity security controls.
  • Participate in cloud security monitoring, alert triage, vulnerability follow-up, and incident response activities.
  • Help enforce cloud security standards through secure configuration baselines and least-privilege practices.
  • Support regular security audits across cloud infrastructure, identity systems, endpoints, and SaaS platforms.
  • Document audit findings, control gaps, remediation actions, and maintain audit evidence and security documentation.
  • Track remediation efforts and align security controls with established frameworks including SOC 2, NIST CSF, ISO 27001, and CCPA.
  • Improve operational visibility using CloudWatch dashboards, alerts, and notifications.
  • Support AWS billing review, cost visibility, and cost optimization tracking.
  • Assist with infrastructure configuration and automation using Terraform and AWS Systems Manager (SSM).
  • Provide Tier 2/3 technical support for cloud systems, identity platforms, remote access, and security issues escalated from frontline support.
  • Troubleshoot service interruptions, coordinate follow-up actions, and communicate updates to stakeholders while partnering with frontline support.
  • Work on escalated tickets and larger cloud or security initiatives such as IAM redesign, audit remediation, and security tooling rollouts.
  • Collaborate with help desk and frontline support to support efficient handoff between Tier 1 and Tier 2/3 needs.
  • Support continuous improvement of enterprise security controls across cloud, identity, endpoint, collaboration, and SaaS environments.
  • Contribute to organization-wide security initiatives including policy implementation, security reviews, risk reduction efforts, and remediation tracking.
  • Help assess security posture across business systems and contribute recommendations to strengthen enterprise resilience.
  • Serve as an on-site backup to the IT Director for critical in-office needs at the Valley Village location when physical presence is required (such as hardware access, vendor visits, and office-specific troubleshooting).
  • Maintain accurate documentation for AWS configurations, IAM policies, audit records, and security procedures.
  • Collaborate with cross-functional teams and provide clear communication and knowledge sharing with internal stakeholders.

Requirements

  • 2–5 years of experience in cloud infrastructure, cloud security, systems administration, or a related IT/security role.
  • Hands-on experience with AWS, especially IAM, VPC, EC2, CloudWatch, VPN, routing, and identity-related administration.
  • Experience with IAM configuration, access control, permission reviews, security auditing, and cloud security responsibilities.
  • Familiarity with security documentation, audit preparation, control validation, and remediation tracking.
  • Working knowledge of SSO, MFA, least-privilege access, and identity governance concepts.
  • Familiarity with Terraform, AWS Systems Manager (SSM), or other infrastructure automation tools.
  • TCP/IP, DNS, VPN, and general networking fundamentals.
  • Ability to troubleshoot and provide hands-on Tier 2/3 operational support when needed.

Technologies

AWS, IAM, VPC, EC2, RDS, CloudWatch, VPN, Terraform, AWS Systems Manager (SSM), SSO, MFA, PowerShell, Python, Bash, plus familiarity with SOC 2, NIST CSF, ISO 27001, and CCPA.

Growth goals

  • Develop toward broader DevOps capabilities, including infrastructure automation, deployment support, systems reliability, and operational efficiency in cloud environments.
  • Evaluate practical AI-driven tools that can improve security operations, access reviews, audit preparation, reporting, and IT workflow efficiency.
  • Identify responsible uses of AI for automation, analysis, and operational productivity within cloud and security functions.
  • Stay current with emerging AI capabilities relevant to cloud security and provide recommendations for safe adoption.
  • Over time, build capability to back up the IT Director in administering core productivity and collaboration environments during planned absences.

Pay and location

Pay: $100,000.00 - $120,000.00 per year
Work location: Hybrid remote in Valley Village, CA 91607

Benefits

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Retirement plan
  • Tuition reimbursement
  • Vision insurance

Preferred qualifications

  • AWS certifications preferred, especially AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or AWS Certified SysOps Administrator – Associate.
  • Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
  • Exposure to compliance or security frameworks such as SOC 2, NIST CSF, ISO 27001, or CCPA.
  • Experience with enterprise security initiatives across SaaS, endpoint, identity, or collaboration environments.
  • Interest in evaluating AI-driven tools for security and IT operations.
  • Scripting and automation experience (PowerShell, Python, or Bash).

Similar Jobs