Sr Cloud Security Engineer ; Remote
Los Angeles, Los Angeles County, California, 90079, USA
Listed on 2026-10-02
-
IT/Tech
Cybersecurity, Cloud Computing: Infrastructure & Operations
American Specialty Health Incorporated (ASH) is seeking a Senior Cloud Security Engineer I to join our Information Security department.
Our Senior Cloud Security Engineer ensures proper configuration standards are met and sustained in compliance with security policy, procedures, standards, and industry requirements/best practices. You will have the opportunity to implement and maintain technical security controls including CSPM, CWP, CASB, next generation firewalls, container security and automated compliance tools. Additionally, you will perform cybersecurity monitoring of the cloud environments, ensuring proper monitoring coverage that correlates with internal security operations and processes.
To be successful in this role, you should have a proven understanding of the CSA Cloud Controls Matrix as well as other security standards and regulations such as HITRUST, NIST, ISO, PCI. You will also want to have a deep understanding of Microsoft Azure cloud architecture.
Salary Range
American Specialty Health complies with state and federal wage and hour laws and compensation depends upon candidate’s qualifications, education, skill set, years of experience, and internal equity. $ to $ Full-Time Annual Salary range.
Remote Worker Guidelines- Remote Worker Guidelines:
This position will be trained remotely and must be able to work from home (WFH) in a designated work area with company-provided technology equipment. This WFH position requires you have a stable connection to your Internet Service Provider with the ability to participate by video in online meetings over a reliable and consistent network. The internet connection must have a consistent 50 down/10 up Mbps minimum internet speed.
100 down/20 up is recommended to support higher quality video meetings.
- Work closely with Cloud team to architect, implement and maintain security cloud solutions.
- Implement, monitor, and support security software/systems that will help ensure compliance with HITRUST and CSA Cloud Controls Matrix in cloud environment.
- Make recommendations to management on enhancements to existing and new security software or related tools.
- Assist in evaluating, planning and implementation of new/existing security applications/tools that integrate with current tool sets.
- Help implement and maintain next-generation enterprise control tools and detection technologies.
- Ensure security standard methodologies are identified and integrated into all facets of projects including network, system designs/configuration, applications and implementations.
- Identify and recommend potential areas where existing data security policies and procedures require change, or where a supplement is required to mitigate key security risks.
- Partner with various business units to enhance security policies/procedures.
- Create and maintain security documentation, policies, and procedures.
- Direct hands-on experience designing and implementing security within Azure for both IaaS and PaaS offerings.
- Performs other duties as assigned.
- Complies with all policies and standards.
- Bachelor’s Degree or equivalent work experience required. If equivalent experience, High School Diploma required.
- 5 years of enterprise cloud (IaaS, PaaS, SaaS) experience, IT cloud security experience preferred.
- Experience with cloud security posture management (CSPM) and cloud workload protection (CWP) tools, such as Microsoft Defender for Cloud, AWS Security Hub / Config.
- In-depth understanding of Azure Policy and/or AWS Service Control Policies.
- Working experience with infrastructure as code (IaC) technologies such as Terraform or Azure Bicep (preferred).
- Deep knowledge regarding cloud networking, such as routing, traffic filtering (firewalls), load balancing, etc.
- Experience with cloud hosted container security.
- Experience with Dev Ops and CI/CD tooling.
- Experience in hardening AWS/Azure services.
- Strong ability to critically think and solve problems.
- Develop cloud security strategy with a focus on compliance.
- Advise stakeholders and translate business requirements into secure, scalable, and reliable cloud solutions.
- Complete hardening guideline reviews and assessments with developers, operations, and infrastructure teams.
- Partner with system engineering / Dev Ops to assess and reduce cloud security risks.
- Assist with documentation of organizational cloud security standards, processes, and governance model.
- Knowledgeable with CSA CCM security framework and CIS Benchmarks for Cloud.
- Knowledge of host hardening,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).