Cloud Security Engineer, Sr
Listed on 2026-06-02
-
IT/Tech
Cybersecurity
Overview
Old National Bank has been serving clients and communities since 1834. With over $70 billion in total assets, we are a regional powerhouse deeply rooted in the communities we serve. As a trusted partner, we thrive on helping our clients achieve their goals and dreams, and we are committed to social responsibility and investing in our communities through volunteering and charitable giving.
We continually seek highly motivated and talented individuals as our people are critical to our success. In return, we offer competitive compensation with our salary and incentive program, in addition to medical, dental, and vision insurance. 401K, continuing education opportunities and an employee assistance program are also included in our benefit suite. Old National also offers a variety of Impact Network Groups led by team members who are passionate about driving engagement, creating awareness of diverse backgrounds and experiences, and building inclusion across the organization.
We offer a unique opportunity to join a growing, community and client-focused company that is firmly rooted in its core values.
Salary Range: $98,400.00 / Yr. – $ / Yr. The base salary indicated for this position reflects the compensation range applicable to all levels of the role across the United States. Actual salary offers within this range may vary based on a number of factors, including the specific responsibilities of the position, the candidate's relevant skills and professional experience, educational qualifications, and geographic location.
KeyAccountabilities
- Cloud Security Architecture & Engineering
- Design, implement, and maintain secure landing zones across AWS and Azure, using preventive guardrails to block deployment of security misconfigurations.
- Leverage cloud-native security services such as AWS: IAM, KMS, Secrets Manager, Service Control Policies, Security Hub, Guard Duty, Cloud Trail, Config, WAF, Inspector, etc. and Azure:
Azure AD, Defender for Cloud, Key Vault, Security Center, Sentinel, Policies, etc. - Develop and enforce cloud security baselines, guardrails, and configuration standards.
- Support the creation and refinement of cloud control narratives that assert the security posture of our cloud landing zones.
- Implement deep observability to unify logs and metrics across multiple services to derive both real-time and historical insights.
- Cloud Identity & Access Management
- Develop, manage, and review complex IAM policies that define cross-account access patterns, ensuring adherence to the Principle of Least Privilege.
- Implement Just-in-Time access workflows that avoid long-lived credentials.
- Support emerging use cases for cloud with bespoke IAM identity and policies that maintain security posture and data privacy.
- Vulnerability & Threat Management
- Utilize enterprise security tools such as Tenable, Qualys, and Snyk to identify, prioritize, and remediate vulnerabilities across cloud workloads.
- Track and report security posture improvements.
- Integrate automated scanning into CI/CD pipelines.
- Secure SDLC & Dev Sec Ops Integration
- Embed security early in the Secure Software Development Lifecycle (SSDLC).
- Partner with development teams to implement automated security testing.
- Integrate SAST, SCA, and IaC scanning tools into CI/CD pipelines.
- Infrastructure as Code & Automation
- Write, review, and maintain Terraform configurations for cloud resource deployment.
- Implement automated security controls and monitoring via IaC.
- Build and maintain secure-by-default Terraform modules that enforce least privilege, encryption, and compliance requirements.
- Monitoring, Detection, & Incident Response
- Develop and fine-tune cloud security monitoring using native and third‑party tools.
- Assist in cloud‑focused incident management/response, log analysis, forensics, and root cause investigations.
- Develop detective, preventive, and proactive controls to identify, prevent, and remediate security misconfigurations and anomalous activity.
- Governance, Risk, & Compliance
- Ensure cloud environments align with frameworks such as NIST, CIS Benchmarks, SOC2, and ISO
27001. - Perform continuous compliance checks using AWS Config, Azure Policies,…
- Ensure cloud environments align with frameworks such as NIST, CIS Benchmarks, SOC2, and ISO
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).