×
Register Here to Apply for Jobs or Post Jobs. X

Cloud Security Engineer

Job in Richmond Hill, Ontario, Canada
Listing for: Paymentus
Full Time position
Listed on 2026-08-22
Job specializations:
  • IT/Tech
    Cybersecurity, Cloud Computing: Infrastructure & Operations, Systems Engineer
Salary/Wage Range or Industry Benchmark: 110000 - 150000 CAD Yearly CAD 110000.00 150000.00 YEAR
Job Description & How to Apply Below

Cloud Security Engineer is responsible for helping secure the cloud-native infrastructure, platforms, services, and deployment patterns that support the Paymentus SaaS platform. This role reports to the Manager of Security Engineering and works closely with Engineering, Cloud Infrastructure, Dev Ops, Platform Engineering, Product, Compliance, Security Operations, and Application Security teams.

This is a hands‑on technical role focused on securing Paymentus infrastructure across public cloud, Kubernetes, containers, serverless technologies, CI/CD pipelines, infrastructure as code, cloud identity, network controls, secrets management, logging, monitoring, and cloud‑native security tooling.

The successful candidate must have deep practical knowledge of cloud security across AWS, GCP, and Azure
, with strong experience securing modern SaaS platforms, web applications, RESTful APIs, microservices, and distributed systems. The role requires the ability to assess cloud architecture, identify insecure patterns, build scalable security controls, automate cloud security checks, and partner directly with engineering teams to remediate risk without unnecessarily slowing delivery.

Education and Experience
  • Bachelor’s Degree in Engineering, Computer Science, Software Engineering, Information Security, or a related technical field, or equivalent practical experience.
  • 5+ years of experience in cloud security, infrastructure security, platform security, Dev Sec Ops , security engineering, cloud engineering, site reliability engineering, or a closely related technical role.
  • Hands‑on experience securing workloads in one or more major public cloud platforms, with strong preference for practical experience across AWS, GCP, and Azure
    .
  • Strong understanding of cloud‑native architecture, SaaS platforms, microservices, distributed systems, RESTful APIs, authentication, authorization, encryption, logging, monitoring, and service‑to‑service communication.
  • Deep knowledge of cloud identity and access management, including least privilege, role‑based access, service accounts, workload identity, cross‑account access, privileged access, federation, and access governance.
  • Hands‑on experience with Kubernetes security, including RBAC, cluster hardening, admission control, network policies, pod security controls, secrets management, workload isolation, and runtime security.
  • Hands‑on experience with container security, including image scanning, base image hardening, container registries, image signing or provenance, runtime controls, and containerized application deployment patterns.
  • Experience securing serverless technologies, including function permissions, event‑driven architectures, secrets handling, logging, monitoring, and abuse‑prevention patterns.
  • Experience with infrastructure as code and policy‑as‑code technologies such as Terraform, Cloud Formation, or similar tools.
  • Experience securing CI/CD pipelines, source control systems, build systems, artifact repositories, container registries, deployment workflows, and release automation.
  • Experience with cloud security tools and practices such as CSPM, CNAPP, CWPP, CIEM, cloud vulnerability management, cloud asset inventory, cloud detection engineering, IaC scanning, container scanning, and secrets scanning.
  • Strong knowledge of cloud networking and perimeter controls, including segmentation, routing, firewall rules, private endpoints, load balancers, TLS, DNS, ingress/egress controls, API gateways, and exposure management.
  • Familiarity with CDN, WAF, bot mitigation, rate limiting, edge security, and origin protection using platforms such as Cloudflare and Fastly
    .
  • Familiarity with application servers, web servers, and reverse proxy technologies such as Tomcat, JBoss, nginx
    , or similar platforms.
  • Good understanding of modern application security guidelines, including OWASP Top 10
    , OWASP API Security Top 10
    , and OWASP Top 10 for Large Language Model Applications
    .
  • Ability to analyze cloud security findings, determine exploitability, identify root cause, and recommend practical remediation steps.
  • Ability to work independently, manage multiple priorities, and deliver high‑quality results in a…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary