×
Register Here to Apply for Jobs or Post Jobs. X

Cloud Security Operations Engineer

Job in San Jose, Santa Clara County, California, 95199, USA
Listing for: Cadence Design Systems
Full Time position
Listed on 2026-07-25
Job specializations:
  • IT/Tech
    Cybersecurity, Cloud Computing: Infrastructure & Operations, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 78523 - 146025 USD Yearly USD 78523.00 146025.00 YEAR
Job Description & How to Apply Below

Job Overview

Cadence is hiring a Cloud Security Operations Engineer. The role focuses on designing and maintaining robust security controls across AWS, Azure, GCP, and IBM Cloud. The engineer will enhance the cloud security posture with emphasis on data protection and incident management and report to the Senior Cloud Security Architect.

Job Responsibilities
  • Secure Architecture and Engineering Design: deploy secure reference architectures across multi‑cloud environments, integrate security into Infrastructure-as-Code (IaC) using Terraform, Cloud Formation, and ARM Templates, implement cloud-native security controls (VPCs, WAFs, DDoS, endpoint protections), ensure data protection via encryption, KMS/HSM and DLP policies.
  • Identity and Access Management: design, implement, and audit IAM policies, roles, service accounts, and federation models with least‑privilege principles, configure MFA, SSO, and PAM solutions for secure cloud access.
  • Monitoring, Detection, and Response: configure and maintain cloud-native security tools (AWS Security Hub, Microsoft Defender for Cloud, Google Security Command Center), integrate logs with SIEM systems, lead incident response efforts, continuously monitor through CSPM and CNAPP tools to remediate misconfigurations, manage findings via remediation workflows, partner with other teams for remediation, conduct root‑cause analysis, and recommend preventive controls and automation improvements.
  • Cloud Data Loss Prevention (DLP) Management: triage and investigate DLP alerts, distinguish policy violations, insider threats, and false positives, serve as SME for DLP tools (Microsoft Purview, Google DLP, CASB solutions), tune policies and rules, generate compliance reports, collaborate with GRC teams for data classification alignment.
  • Automation and Dev Sec Ops : develop automation scripts in Python, Power Shell, Bash and serverless functions (AWS Lambda, Azure Functions, Google Cloud Run).
  • Cloud Security Posture Management & Compliance: continuously assess AWS, Azure and GCP with CSPM platforms, develop and enforce cloud security baselines, perform periodic assessments using CIS Benchmarks, CSA CCM, NIST, NIST, etc., drive remediation, support internal and external audits with evidence and reporting.
  • Secure Access and Network Security Controls: enforce least‑privilege network segmentation, private endpoints (AWS Private Link, Azure Private Endpoints, Google Private Service Connect), eliminate unnecessary public exposure, design firewall controls.
  • Cloud Workload Security and Hardening: maintain secure OS baselines using CIS Benchmarks, perform periodic reviews, collaborate on hardened images and golden image standards, remediate deviations.
  • Job Qualifications

    Technical Expertise
    : deep knowledge of at least one cloud platform (AWS, Azure, or GCP); proficiency in Python, Power Shell, Unix shell scripting; strong networking and cloud‑native security understanding; experience with CSPM/CNAPP platforms; knowledge of CIS Benchmarks, CCM, NIST and industry best practices; familiarity with securing OS and container environments; experience with secure network architectures and zero‑trust principles; support for cloud compliance and audits.

    Education & Certification
    :
    Bachelor’s degree in computer science, information security or related field (or equivalent experience).

    • AWS Certified Solutions Architect – Associate
    • AWS Certified Security – Specialty
    • Microsoft Certified:
      Azure Administrator Associate
    • Microsoft Certified:
      Azure Security Engineer Associate
    • Google Cloud:
      Associate Cloud Engineer
    • Google Cloud:
      Professional Cloud Security Engineer
    • ISC² Certified Cloud Security Professional (CCSP)
    • ISC² Certified Information Systems Security Professional (CISSP)

    Soft Skills
    : strong analytical and problem‑solving abilities; excellent communication and collaboration skills with Dev Ops and engineering teams.

    Compensation & Benefits

    Hourly range for California: $57.21 to $106.25. Additional incentive compensation may include bonus, equity, and benefits. Benefits include paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, medical, dental and vision plans, and more.

    Equal Employment Opportunity

    Cadence is committed to equal employment opportunity and employment equity throughout all levels of the organization. We strive to attract a qualified and diverse candidate pool and encourage diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, basis of disability, or any other protected class.

    #J-18808-Ljbffr
    To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
    (If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)
    0
    200
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary