Security Engineer, Cloud Security
Listed on 2026-07-26
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Cloud Computing: Infrastructure & Operations, Security Management & Operations
Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms.
Job OverviewSecurity at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer for our Cloud Security team to own the continuous security posture of the cloud that runs an autonomous fleet across both commercial AWS and AWS Gov Cloud and to build the guardrails that let every team ship fast with security baked in from the start.
You’ll design the secure-by-default patterns teams reach for on their own, treating repeat findings as a signal to build a control rather than re-answer a ticket, and prioritizing by real attack path rather than alert count.
You’ll work alongside Product Security, Infrastructure, Software, Information Technology, Enterprise Technology, and Internal Applications to keep a multi-account cloud environment secure, compliant, and auditable across its full lifecycle.
This is an opportunity to own cloud security posture across commercial and Gov Cloud, build guardrails that speed engineering up rather than slow it down, turn compliance into automated and continuous evidence, and work with strong engineers in a high-trust, low-ego environment.
ResponsibilitiesPosture & Compliance: Own continuous cloud security posture management (CSPM) across all cloud accounts, detect misconfigurations and drift, and drive remediation with the teams that own the resources. Map technical controls to both government and commercial frameworks (CMMC, NIST SP 800-171, FedRAMP/IL baselines) and keep controls evidence current and audit-ready.
Cloud Vulnerability Management: Run cloud vulnerability management at scale, find issues, prioritize them by real attack path and exposure rather than raw CVSS, and drive remediation to closure. Use tooling such as Prowler and a CNAPP, and automate remediation wherever possible.
Guardrails & Secure-by-Default: Build reusable Terraform modules, Service Control Policies, permission boundaries, and policy-as-code that make the secure path the easy path, so whole classes of misconfiguration disappear before they reach production. Replace manual security gates with automated, self-service guardrails.
Identity, Secrets & Data Protection: Design least-privilege IAM across accounts and workloads, hunt privilege-escalation and cross-account trust paths, govern secrets management, and standardize encryption and key-management patterns.
Detection, Response & SOC Support: Build and tune cloud-native detections (Cloud Trail, Guard Duty, Config, Security Hub) and automated remediation, and support the Security Operations team as they investigate, triage, and remediate cloud-related cases across our infrastructure, including credential compromise, exposed resources, and data exfiltration, reconstructing activity from logs and automating containment. Feed every incident back into new guardrails and detections.
3+ years of hands‑on cloud security, infrastructure security, or Dev Sec Ops experience, or an equivalent combination of experience and demonstrated ability
Depth in AWS security services and architecture (IAM, Organizations/SCPs, Cloud Trail, Config, Guard Duty, Security Hub, KMS, VPC)
Strong infrastructure‑as‑code (Terraform) and policy‑as‑code experience
Hands‑on cloud vulnerability management and CSPM tooling (e.g., Prowler), with a track record of driving cloud findings to remediation
A track record of building guardrails or patterns that other teams adopted without friction
Proficiency in scripting for security automation
Ability to obtain and maintain a U.S. security clearance
Prolonged periods of sitting at a desk and working on a computer
Occasional standing and walking within the office
Manual dexterity to operate a computer keyboard, mouse, and other office equipment
Visual acuity to read screens, documents, and reports
Occasional reaching, bending, or stooping to access file drawers, cabinets, or office supplies
Lifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages)
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).