Cloud Security Engineer
Atlanta, Fulton County, Georgia, 30383, USA
Listed on 2026-05-27
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations
Senior IT Security Specialist (Remote)
Location preference:
Windsor, CT;
Boston, MA; or Atlanta, GA. Remote work with the expectation to be based near one of these sites.
We are seeking a Senior IT Security Specialist to strengthen our SaaS Security Posture Management (SSPM), Cloud Security Posture Management (CSPM), and container security capabilities across a rapidly evolving hybrid cloud and SaaS ecosystem. The role partners closely with Cloud, Dev Sec Ops , Application Security, and Platform Engineering teams to identify, assess, and remediate security risks across SaaS platforms, public cloud infrastructure, and containerized workloads.
SaaS& Cloud Security Posture Management
- Support and mature SSPM/CSPM initiatives across enterprise SaaS platforms.
- Configure, operate, and tune SSPM/CSPM tools to identify misconfigurations, excessive permissions, and risky integrations.
- Support CSPM capabilities across AWS and Azure, including continuous monitoring and risk prioritization.
- Partner with application owners to drive remediation of SaaS and cloud security findings.
- Secure cloud-native workloads across AWS and Azure using native and third‐party security controls.
- Support container and Kubernetes security, including image scanning, runtime protections, and policy enforcement.
- Collaborate with Dev Sec Ops teams to embed security controls into CI/CD pipelines.
- Develop and maintain security automation using scripting languages (Python, Power Shell, Bash).
- Implement and review Infrastructure‑as‑Code (Terraform, ARM, Cloud Formation) with a security‑first mindset.
- Design and enforce Policy‑as‑Code (OPA, Sentinel, native cloud policies) to prevent insecure deployments.
- Enable shift‑left security by integrating controls early in the development lifecycle.
- Contribute to emerging AI Security Posture Management (AI‑SPM) efforts.
- Partner with platform and data teams to assess and secure MLOps pipelines, models, and supporting infrastructure.
- Help define guardrails for AI usage, data access, and model governance.
- Translate technical findings into actionable risk insights for remediation.
- Support audits, risk assessments, and regulatory inquiries related to cloud and SaaS security.
- Stay current on emerging threats, SaaS attack patterns, cloud security trends, and AI security risks.
- Mentor junior team members and influence secure‑by‑design practices across the organization.
- 5+ years of experience in information security, with a strong focus on cloud and SaaS security.
- Hands‑on experience with CSPM in AWS and/or Azure.
- Experience with SSPM tools such as Crowd Strike Falcon Shield, Palo Alto Prisma, or similar platforms.
- Strong understanding of container security and Kubernetes environments.
- Proficiency in scripting and automation (Python, Power Shell, Bash).
- Practical experience with Infrastructure‑as‑Code (IaC) and Policy‑as‑Code (PaC).
- Solid understanding of IAM, identity federation, least‑privilege access, and SaaS permissions models.
- Ability to work cross‑functionally with cloud, Dev Ops, App Sec, and platform teams.
- Experience securing MLOps pipelines and AI‑enabled platforms.
- Familiarity with AI‑SPM concepts and tooling.
- Experience integrating security into CI/CD pipelines.
- Knowledge of cloud‑native security services (AWS Security Hub, Guard Duty, Azure Defender, etc.).
- Security certifications such as CISSP, CCSP, AWS/Azure Security certifications.
- Improved visibility and risk reduction across Voya’s SaaS and cloud environments.
- Measurable reduction in high‑risk misconfigurations and over‑privileged access.
- Increased automation and policy‑driven enforcement of security controls.
- Strong partnership with engineering teams, enabling security without slowing delivery.
- Forward‑looking contributions to AI and MLOps security strategy.
Annual base salary range: $114,480 – $130,000. In addition to base salary, Voya offers incentive opportunities based on performance. Compensation is finalized at the time of offer and may…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).