Associate Director for Cloud Security Engineering responsible for integrating security controls across cloud environments. Collaborating with Cloud, DevOps, and IT Risk Management teams to strengthen security posture.
Responsibilities
Lead the design, engineering, and scaling of enterprise product security platforms.
Ensure cloud‑native security patterns are deeply integrated across AWS, Azure, etc environments.
Conduct technology research to evaluate emerging threats, vulnerabilities, and cloud provider risks.
Establish and maintain secure architecture standards, configuration baselines, and best practices for cloud and product security platforms.
Drive modernization and automation of security workflows with a DevSecOps mindset.
Translate enterprise security strategy and policy into actionable architecture, platform capabilities, and engineering implementations.
Define security requirements and enable collaborative development of scalable system and service architectures.
Collaborate on cloud security governance, data protection strategy, and secure adoption frameworks.
Guide platform teams and developers to close gaps in cloud posture, application security, and data protection maturity.
Perform Security Assessments using frameworks such as CSA, NIST, PCI, and internal controls.
Ensure compliance with enterprise risk standards, policies, regulatory expectations, and audit requirements.
Write code, scripts, and automation to enhance security tooling, dashboards, integrations, and workflows.
Mentor team members and serve as an escalation point on complex or unusual issues.
Requirements
Bachelor's degree in computer science, Engineering, Information Systems Security, or equivalent professional experience.
8+ years in Information Security, Cybersecurity, or IT roles with increasing complexity and accountability.
Experience integrating security into CI/CD pipelines and cloud environments.
Strong business acumen in risk management, operations, and emerging technology trends.
Extensive security engineering experience across IaaS, PaaS, and SaaS environments.
Knowledge of data protection for structured and unstructured data using classification‑based controls.
Experience in vulnerability management, configuration assessment, and threat analysis.
Familiarity with adversary tactics, indicators of compromise, and emerging cyber threat research.
Background with automation, patch management, secure configuration, and applying security standards across many platforms.
Experience designing cloud‑native architectures and security patterns for large enterprises.
Strong understanding of networking infrastructure, firewalls, anti‑malware, and endpoint security.
Experience building security architectures aligned to enterprise frameworks (NIST CSF, CSA, ISO27001, etc.).
Benefits
medical, dental, vision healthcare and other insurance benefits (for employee and family)
retirement benefits, including 401(k)
paid holidays, vacation, and compassionate and sick days
Security Architect leading AI trust and governance strategies for Fortune 500 with Salesforce. Empowering organizations with cutting - edge security solutions in a collaborative environment.
Cloud Security Architect at Cayuse overseeing secure architecture design, implementation, and governance for cloud - native, microservices, and AI - enabled systems. Collaborating with stakeholders to ensure compliance and security practices.
Information Security Manager responsible for ensuring security of data, systems, and networks at Cayuse. Leading development and monitoring of security policies, practices, and controls.
Cyber Security Engineer II safeguarding systems at MSK, involved with complex technologies in cancer care security. Lead threat investigations and apply technical knowledge for security improvements.
Principal Security Engineer working on network security lifecycle and threat management for Verizon’s 4G/5G Cloud Networks. Collaborating with multiple teams to enhance cybersecurity posture.
Cybersecurity Engineer at Verizon responsible for security lifecycle and effectiveness across networks. Leading incident response and vulnerability management in a hybrid work role.
Director of Security and Compliance safeguarding digital assets and data with a focus on cybersecurity and compliance. Leading risk management, stakeholder engagement, and team leadership initiatives.
Information Security Risk & Compliance Analyst supporting the maintenance of ISO 27001 standards. Contributing to risk assessments and compliance across AAB’s Business Protection Team.
Information Security Risk & Compliance Analyst at AAB focusing on ISO 27001 compliance and information security management. Collaborating across teams to ensure robust risk and compliance frameworks.
Information Security Risk & Compliance Analyst at AAB managing compliance with ISO 27001, supporting enterprise risk assessments and enhancing information security systems.