Cloud Security Engineer- Hybrid

Hybrid in Bollingbrook, IL, US • Posted 2 days ago • Updated 3 hours ago
Full Time
On-site
$120-130K
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • FOCUS
  • Workflow
  • IaaS
  • DevOps
  • Hardening
  • Virtual Private Cloud
  • Cloud Storage
  • SQL
  • Data Security
  • Operational Efficiency
  • Security Controls
  • Vulnerability Scanning
  • Root Cause Analysis
  • Regulatory Compliance
  • Risk Management
  • Continuous Improvement
  • Auditing
  • Documentation
  • Data Storage
  • Network
  • Continuous Integration
  • Continuous Delivery
  • Collaboration
  • Application Development
  • Cloud Architecture
  • Identity Management
  • Software Development Methodology
  • Technical Writing
  • Cyber Security
  • DevSecOps
  • Google Cloud
  • Google Cloud Platform
  • Incident Management
  • Encryption
  • Vulnerability Management
  • Management
  • Cloud Security
  • Microsoft Azure
  • Security+
  • Kubernetes
  • Supply Chain Management
  • Software Security
  • SCA
  • Code Review
  • NIST 800-53
  • PCI DSS
  • ISO/IEC 27001:2005
  • Scripting
  • Python
  • Windows PowerShell
  • Bash
  • Analytical Skill
  • Attention To Detail
  • Cloud Computing
  • Supervision
  • Communication
  • Accountability

Summary

Client is seeking a Cloud Security Engineer with hands-on, technical experience in securing our cloud platforms and modern application environments. This role will focus on implementing and improving cloud security controls, monitoring and responding to security findings, supporting compliance initiatives, and partnering with engineering and project teams to integrate security into cloud and application workflows.
Environment is primarily based within Google Cloud Platform (Google Cloud Platform), with a smaller Azure footprint supporting a subset of applications.
The ideal candidate is a hands-on engineer who can solve technical security challenges across Cloud Infrastructure, IAM, data and workload protection, and DevOps (CI/CD) processes.
Success in this role requires strong collaboration and communication skills, as you will work closely with infrastructure, platform, and application teams to improve security while enabling business objectives.

YOU'LL ACCOMPLISH THESE GOALS BY:

Cloud Security Implementation

Implement and maintain cloud security controls across Google Cloud Platform and Azure environments, including projects, subscriptions, and organizational structures.
Assist in the design, deployment, and continuous improvement of cloud security guardrails, baseline configurations, and policy enforcement mechanisms.
Support Identity and Access Management (IAM) initiatives and operational activities, including least-privilege access, privileged account/identity management, service account governance, and identity federation in the cloud, always following zero-trust principles.
Secure cloud services, workloads, and data platforms through configuration reviews, hardening activities, and security best practices; including but not limited to VPC Service

Controls, NSGs, Cloud Storage, GKE, BigQuery, Cloud SQL, Pub/Sub, Cloud Functions, and Cloud Run.

Support container and workload security initiatives, including hardened container image adoption, image scanning for CVEs, and secure deployment practices (DevSecOps).
Support defining and implementing encryption, key management, and data protection practices and controls across cloud environments.
Contribute to security automation efforts using Infrastructure as Code (IaC), scripting, and cloud-native tooling to improve operational efficiency and reduce manual processes.
Integrate and maintain cloud-native and third-party security tools to improve visibility, posture management, and threat detection to improve overall security posture.
Support the implementation of security controls within CI/CD pipelines, including vulnerability scanning, secrets detection, and policy validation (DevSecOps).
Assist development teams with secure cloud architecture patterns and application deployment practices.

Monitoring & Incident Response

Monitor and tune cloud security alerts, vulnerabilities, and findings from cloud-native and third-party CSPM and CNAPP tools
Investigate suspicious activity, misconfigurations, exposed secrets, and potential security incidents within cloud environments.
Support incident response activities involving cloud resources, identities, workloads, applications, and data.
Perform root cause analysis and recommend remediation actions following security events.
Validate remediation efforts and help improve monitoring coverage based on lessons learned from incidents and investigations

Compliance & Risk Management

Support cloud security assessments and control reviews against established security frameworks and organizational standards (CIS, NIST 800-53, PCI-DSS).
Assist with vulnerability management activities, including identification, prioritization, remediation tracking, and validation.
Participate in cloud security posture reviews and continuous improvement initiatives using CNAPP and CSPM technologies.
Support audit requests, evidence collection, and documentation activities related to cloud security controls
Execute security assessments on cloud workloads, data storage, network segmentation, and CI/CD processes.

Collaboration & Support

Partner with infrastructure, platform, application development, and security teams to promote secure cloud adoption and DevSecOps best practices.
Provide guidance on secure cloud architecture, infrastructure-as-code, identity management, and cloud-native services.
Assist development teams in identifying and remediating cloud and application security issues throughout the SDLC.
Contribute to the development of cloud security standards, procedures, technical documentation, and operational runbooks.

ESSENTIALS FOR SUCCESS:
3+ years of experience in cloud security, cybersecurity, cloud engineering, DevSecOps, or a related technical field.
Hands-on experience with Google Cloud Platform (Google Cloud Platform) security services and concepts.
Experience securing cloud workloads, identities, applications, and data services.
Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
Understanding of security fundamentals including IAM, encryption, logging, threat detection, vulnerability management, and secure application deployment practices.
Familiarity with application security concepts such as secrets management, dependency scanning, vulnerability remediation, or secure coding principles.
Strong analytical, troubleshooting, and communication skills, as well as working effectively with technical and non-technical stakeholders.

PREFERRED QUALIFICATIONS:
Relevant cloud or security certifications such as Google Professional Cloud Security Engineer, Azure Security Engineer Associate (AZ-500), Security+, or equivalent.
Familiarity with CNAPP and CSPM tools
Experience with container security, Kubernetes security, and secure software supply chain practices.
Exposure to application security tools and processes such as SAST, DAST, dependency scanning, secrets detection, software composition analysis (SCA), or secure code review.
Familiarity with security frameworks such as CIS Benchmarks, NIST 800-53, PCI-DSS, or ISO 27001.
Experience with scripting or automation using Python, PowerShell, Bash, or similar languages.
Strong troubleshooting and analytical mindset with attention to detail.
Comfortable working in fast-moving cloud environments with minimal supervision.
Strong communication skills with both technical and non-technical teams.
Accountable and proactive - able to identify risks before failures occur.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxbcsi
  • Position Id: Job45056
  • Posted 2 days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Hybrid in Bolingbrook, Illinois

•

5d ago

Easy Apply

Full-time

Depends on Experience

Chicago, Illinois

•

4d ago

Full-time

USD 114,500.00 - 194,700.00 per year

Chicago, Illinois

•

Today

Full-time

USD 149,000.00 - 235,000.00 per year

Chicago, Illinois

•

Today

Full-time

USD 145,000.00 - 195,000.00 per year

Search all similar jobs