Senior Cloud Security Engineer
Listed on 2026-10-02
-
IT/Tech
Cybersecurity, AWS, Cloud Computing: Infrastructure & Operations
Senior Cloud Security Engineer
Remote
Direct Hire
Salary - 120-150k
Our client is a growing healthcare technology company that provides digital solutions designed to modernize and streamline administrative processes across the healthcare industry. The organization is in a major transformation phase, modernizing legacy systems, building new products, and automating traditionally manual workflows. The environment handles sensitive healthcare data and operates under regulatory and security frameworks including HIPAA, HITRUST, and SOC 2.
Job DescriptionWe are looking for a Senior Cloud Security Engineer to design, implement, and maintain security controls across a highly regulated AWS cloud environment. This person will take a hands‑on role in securing applications, infrastructure, and workloads containing Protected Health Information (PHI), while establishing cloud security guardrails, automation, detection capabilities, and secure‑by‑default infrastructure standards. The Senior Cloud Security Engineer will partner closely with application development, cloud operations, GRC, managed security providers, and other engineering teams while also serving as a technical leader and escalation point within Security Operations.
RequiredSkills
- 5-7+ years of experience in cybersecurity, infrastructure engineering, Dev Ops, or related areas
- 3+ years of hands‑on AWS security engineering experience in compliance-driven environments
- Deep experience with AWS services including VPC, IAM, EC2, S3, RDS, Lambda, and EKS
- Experience designing secure multi‑account AWS environments using AWS Organizations, organizational units, guardrails, IAM policies, and Service Control Policies
- Strong experience protecting sensitive data and PHI using encryption, AWS KMS, least‑privilege access controls, and secure cloud architecture
- Production‑level experience with Terraform and/or AWS Cloud Formation
- Experience implementing policy‑as‑code using tools such as OPA, Checkov, or Rego
- Experience embedding security controls, vulnerability scanning, container scanning, and secrets management into CI/CD pipelines
- Strong understanding of HIPAA, HITRUST CSF, SOC 2, or similar compliance frameworks
- Experience with cloud security incident response, investigation, containment, and root cause analysis
- Hands‑on experience with AWS Cloud Trail, Cloud Watch, SIEM platforms, and cloud detection engineering
- Experience with SAST, DAST, CSPM, vulnerability management, and remediation
- Strong Linux security and hardening experience, including access controls, logging, patching, and benchmark‑based configuration
- Scripting and automation experience using Python/Boto3, Power Shell, or similar technologies
- AWS Certified Security - Specialty
- CISSP or CCSP certification
- HITRUST Certified CSF Practitioner (CCSFP)
- Experience with Windows, Microsoft 365, Entra , and Active Directory security
- Experience securing physical or hybrid infrastructure and networks
- Healthcare technology experience
- Familiarity with DICOM, PACS, HL7, or FHIR
- Experience integrating and securing environments following mergers, acquisitions, or platform integrations
We champion equality and inclusivity, proudly supporting an Equal Opportunity Employer policy. We welcome applicants regardless of Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other status protected by law.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).