Cloud Security Engineer
The Cloud Security Engineer will ensure the security and resilience of Hex's cloud infrastructure and cloud-native applications. The role covers AWS and Kubernetes security, infrastructure-as-code, security assessments, threat modeling, incident response, compliance, CI/CD security, and mentoring.
Responsibilities
- Design, implement, and manage security solutions for AWS environments and Kubernetes clusters.
- Build, deploy, and maintain secure infrastructure-as-code with Terraform.
- Conduct security assessments, threat modeling, and audits.
- Embed security best practices into CI/CD pipelines.
- Monitor and respond to cloud security incidents and recommend remediation.
- Provide expertise on cloud security compliance requirements.
- Mentor engineers and advocate for cloud security across the organization.
Requirements
- 5+ years of cloud security engineering experience with extensive AWS expertise.
- Proficiency with Kubernetes security, including cluster hardening, RBAC, network policies, and container vulnerability management.
- Expert-level Terraform knowledge and hands-on experience.
- Familiarity with AWS security services including IAM, GuardDuty, Security Hub, CloudTrail, and WAF.
- Familiarity with CNAPP solutions such as Wiz and SIEM solutions such as Panther.
- Understanding of secure software development lifecycle, CI/CD security, and DevSecOps.
- Relevant AWS, Kubernetes, Terraform, SANS, or OffSec certifications are desirable.
- Excellent problem-solving, communication, and leadership skills.
Benefits
- Market-benched salary and equity
- Comprehensive health benefits
- Flexible paid time off