Senior Associate Security Engineer (Cloud Security)
Job Description
The Senior Associate Security Engineer (Cloud Security) will implement advanced cybersecurity capabilities across the software development lifecycle, with a focus on cloud security engineering for Azure, AWS, and on-premises environments.
Location and Employment Details
- Location: Charlotte, NC (onsite)
- Employment type: Regular
- Schedule: 1st shift (United States of America)
- Work arrangement: Onsite
- Type: Full-time
- Language: English (Required)
Summary
This role supports security architecture reviews, assessments, testing, controls, remediation, and knowledge sharing. The position implements cloud security engineering capabilities across Azure, AWS, and on-premises environments, aligning security work with defined security strategies, patterns, and guidance.
Responsibilities
- Implement cybersecurity solutions to protect critical assets across Azure, AWS, and on-premises, contributing to cloud design and configuration decisions while following established security strategies and guidance.
- Support cloud security architecture reviews and perform security configuration assessments, threat modeling, and security testing for assigned platforms and services using defined methods to identify and remediate vulnerabilities and misconfigurations.
- Integrate and configure information security technologies in Azure and AWS test and production environments, applying approved configuration patterns, infrastructure-as-code, automation, and required handoff steps for assigned systems.
- Implement and maintain cloud security controls, including identity and access management, least-privilege access, network security, encryption, logging and monitoring, vulnerability management, and secure configuration baselines.
- Use Azure and AWS native security services and approved enterprise cloud security tools to assess security posture, investigate findings, validate remediation, and improve preventive and detective controls.
- Analyze cloud security findings, determine applicable risk and remediation actions, collaborate with engineering teams, and validate that security issues are resolved.
- Investigate security issues escalated within the team for in-scope services, perform root-cause analysis, and implement practical fixes to prevent recurrence.
- Review relevant cloud threats, tools, architecture options, and shared-responsibility considerations, providing input to support technical plans and priorities for the job area.
- Collaborate with product, platform, application, DevOps, and engineering teammates to apply security guidelines, secure-by-design practices, cloud governance requirements, and policy-as-code controls in day-to-day delivery activities.
- Implement and maintain approved Azure and AWS security baselines, guardrails, and governance controls for assigned cloud services and environments, including AWS organizational guardrails and Azure policy controls within the assigned area of responsibility.
- Support incident response and forensic analysis for assigned cloud services by following established playbooks and using approved Azure and AWS logging, monitoring, and security capabilities.
- Share cloud security knowledge and best practices with technical teammates through informal guidance and support during code reviews, architecture discussions, design reviews, and pairing sessions.
- Plan and manage own work to meet defined objectives and milestones, seeking feedback, pursuing self-development, and adjusting approaches to improve quality and effectiveness.
Required Qualifications
- Bachelor’s degree or equivalent education, training, and work-related experience.
- Minimum 3 years of experience in security engineering or related cybersecurity roles.
- Developing knowledge of cybersecurity principles, theories, and concepts.
- Experience in software development lifecycle security practices.
- Proficiency in implementing and managing information security technologies.
Preferred Qualifications
- Minimum of 3 years of experience in security engineering, cloud security engineering, or related cybersecurity roles.
- Developing knowledge of cybersecurity principles, theories, concepts, and cloud shared-responsibility models.
- Hands-on experience implementing or assessing security controls for workloads, services, or platforms in Microsoft Azure and/or Amazon Web Services (AWS).
- Experience with cloud identity and access management, network security, encryption, logging and monitoring, vulnerability management, and secure configuration practices.
- Experience using scripting, APIs, infrastructure-as-code, CI/CD pipelines, or automation to implement, assess, and maintain cloud security controls.
- Proficiency implementing and managing information security technologies and analyzing cloud security findings through native or enterprise security tools.
Technologies and Skills
- Azure
- AWS
- Infrastructure-as-code
- Automation
- Identity and access management
- Least-privilege access
- Network security
- Encryption
- Logging and monitoring
- Vulnerability management
- Secure configuration baselines
- Policy-as-code controls
- CI/CD pipelines
- DevOps
- AWS organizational guardrails
- Azure policy controls
Benefits
- Medical, dental, vision, life insurance, disability, accidental death and dismemberment
- Tax-preferred savings accounts
- 401k plan
- No less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during the first year of employment
- 10 sick days (also prorated)
- Paid holidays
- Defined benefit pension plan (depending on position and division)
- Restricted stock units (depending on position and division)
- Deferred compensation plan (depending on position and division)
Similar Jobs
S