Cloud Security Engineer
Listed on 2026-05-30
-
IT/Tech
Cybersecurity, Cloud Computing, Systems Engineer
500M+ downloads. 80M+ monthly users. A decade of building – and we’re still accelerating. Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health. Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down.
With 7M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust , we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better.
We are looking for a Cloud Security Engineer to join Velocity, our Internal Platform team. Your mission is to ensure that every system, pipeline, and tool our engineers rely on is secure by default — so they can ship fast without ever compromising trust.
The Scale of the ChallengeAt Flo we don't just have users, we have a global community. We are the #1 women's health app, and in the last month alone, we saw 8.6M new installs and a 2.8M increase in active users. When millions of people trust you with their most personal health data, security isn't a feature — it's a foundation.
The Mission:Velocity
The Velocity team exists to eliminate friction. We build and own the foundation everything else runs on: cloud infrastructure, developer tooling, and SRE practices.
You will:- Embed Security Into the Platform:
Bake security, compliance, and best practices into the core stack so they're invisible to developers and impossible to skip. - Automate Everything:
Drive security-as-code across infrastructure, CI/CD pipelines, and container life cycles — making manual gates a thing of the past.
- Cloud Security Posture:
Own and continuously strengthen Flo's AWS security posture using tools like Guard Duty, Inspector, Security Hub, and SSM Patch Manager. - Container & Supply Chain Security:
Harden container image security end-to-end — patch vulnerabilities automatically with Copacetic, sign and verify images with Cosign/Sigstore, and enforce policies at admission with Kyverno. - Policy as Code:
Manage CI/CD security across the organisation using policy-as-code tooling (Kyverno, Checkov), ensuring standards are enforced programmatically. - Security Observability:
Build visibility into security performance by measuring and visualising actionable metrics using tools like Databricks Dashboards or Looker. - High-Scale Privacy:
Support the infrastructure for industry-leading privacy features, such as our TIME-recognised "Anonymous Mode." - Culture & Thought Leadership:
Shape Flo's broader security culture through proactive engagement, documentation, and cross-team collaboration.
- Experience:
7+ years in Infrastructure Security, Cloud Security, or Security Engineering roles. - Cloud Native Mastery:
Deep expertise in AWS security services and best practices is essential. - Infrastructure as Code:
Proficient in Terraform and Terragrunt — you run everything as code. - Container Security:
Strong knowledge of Kubernetes security, image hardening, and admission control. - Identity & Access:
Solid understanding of identity management principles — SSO, OAuth, JWT, SAML. - Automation Mindset:
Comfortable scripting in Python, Bash, or similar to automate security workflows. - Network Security:
Understanding of modern network security principles and their practical application. - SSDLC:
Experience building Secure Software Development Lifecycle phases into engineering workflows.
- Experience with security monitoring and event correlation systems (IDS/IPS, SIEM, AWS-native tooling).
- Knowledge of Zero Trust Architecture and its implementations (e.g., Cloudflare).
- Familiarity with secret management processes and tools.
- Experience in multi-cloud environments (AWS and preferably GCP).
- Understanding of business continuity principles (BIA, DRP).
- Professional accreditations such as AWS Security Specialty, CKS, or CISSP.
- High Impact:
Your work directly protects the health data of millions - Flo is rewriting women's health, and you'll make sure it's done securely. - Autonomy:
We hire experts and empower you to…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: