Skip to content

Open nowPosted 11 hours ago

Senior Cloud Platform Security Engineer

Jobgether4,270 open roles

Where
US
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Cloud Platform Security EngineerJobgether · US
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Jobgether's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. Jobgether postings stay open a median of 5 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.5%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.1%30 days
This job: posted 11 hours ago

Jobgether median: 5 days open

The posting

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Cloud Platform Security Engineer based in United States.

As a Senior Cloud Platform Security Engineer, you will be the primary technical owner of a large-scale Azure platform, cloud security controls, and infrastructure operations. You’ll play a hands-on role in keeping cloud environments secure, reliable, scalable, compliant, and operationally efficient. The position spans cloud architecture, identity and access management, security operations, infrastructure automation, compliance, disaster recovery, and cost optimization. You’ll also help enable secure data, AI, and agent-based workloads across a growing technology environment. Working as a senior individual contributor, you’ll collaborate closely with Technology, Engineering, Data & AI, Compliance, business stakeholders, auditors, vendors, and external partners. This is an opportunity to shape cloud standards, automate critical processes, strengthen security posture, and directly influence the resilience of an evolving technology platform.

Accountabilities:

  • Own the Azure platform: Design, configure, operate, and continuously improve Azure subscriptions, management groups, networking, compute, storage, platform services, and shared infrastructure while establishing standards for environment separation, naming, tagging, approved services, secure configurations, and change management.
  • Strengthen cloud identity and security: Design and maintain Microsoft Entra ID, MFA, Conditional Access, PIM, RBAC, managed identities, access reviews, emergency-access procedures, least-privilege controls, separation of duties, network segmentation, private connectivity, firewalls, DNS security, secure ingress and egress, and secrets management.
  • Improve security operations and incident readiness: Operate cloud-security posture management, vulnerability remediation, configuration monitoring, logging, detection, and threat-response capabilities while developing actionable alerts, dashboards, escalation paths, and runbooks for security incidents.
  • Build reliable infrastructure through automation: Develop and maintain infrastructure using Terraform, Bicep, ARM templates, or comparable technologies, establishing reusable modules, peer-review practices, automated testing, deployment controls, and configuration-drift management.
  • Support compliance and technology risk: Translate requirements such as the GLBA Safeguards Rule, SOC 2, NIST Cybersecurity Framework, customer commitments, and internal policies into practical technical controls, documentation, evidence, and measurable outcomes while supporting audits and remediation activities.
  • Enable secure Data & AI operations: Partner with Data & AI teams to implement data governance and security controls covering discovery, classification, lineage, retention, DLP, access governance, and approved AI services, while securing AI, machine-learning, LLM, and agent-based workloads through appropriate data boundaries, privileged-action controls, logging, monitoring, human approval, and incident-response measures.
  • Drive reliability, recovery, and operational excellence: Maintain at least 99.9% availability for critical platform services within your operational control, support agreed Sev-1/2 response expectations, validate disaster recovery at least twice annually, and ensure critical services have effective monitoring, alerting, escalation paths, and documented recovery procedures.
  • Improve infrastructure-as-code adoption: Drive toward at least 95% of production infrastructure being managed through infrastructure as code while reducing configuration drift and improving deployment consistency.
  • Manage cloud costs and efficiency: Own cloud budgets, alerts, tagging standards, forecasting inputs, and recurring optimization recommendations, maintaining at least 98% resource-tagging compliance and evaluating Azure-native and third-party solutions based on effectiveness, maintenance effort, licensing cost, and architectural fit.
  • Collaborate across technical and business functions: Work effectively with engineering teams, executives, auditors, managed-service providers, technology vendors, and distributed stakeholders while documenting architecture, standards, risk statements, runbooks, and executive-level updates.
  • Cloud and security experience: 7+ years of hands-on cloud infrastructure or security engineering experience, including ownership of production Azure environments and demonstrated senior-level responsibility.
  • Azure expertise: Strong experience with Azure subscriptions and management groups, networking, Microsoft Entra ID, RBAC, Azure Policy, monitoring, backup and recovery, security controls, and cloud cost management.
  • Infrastructure as code: Demonstrated experience with Terraform, Bicep, ARM templates, or comparable infrastructure-as-code technologies, including source control, peer review, automated testing, and deployment practices.
  • Security operations: Practical experience with cloud security operations, vulnerability remediation, logging and detection, incident response, access governance, configuration monitoring, and disaster-recovery testing.
  • Data governance: Working knowledge of Microsoft Purview or comparable data-governance platforms, including classification, lineage, retention, DLP, and access controls.
  • Compliance and risk: Experience translating regulatory, customer, or internal control requirements into technical designs, operating procedures, audit evidence, and measurable results; experience in financial services or another regulated environment is preferred.
  • AI security: Experience securing AI, machine-learning, large-language-model, or agent-based workloads in production is preferred.
  • Technical toolkit: Experience with Azure Monitor, Log Analytics, Microsoft Defender for Cloud, Microsoft Sentinel or comparable SIEM platforms, Azure DevOps pipelines, Azure Policy, Azure Key Vault, backup and recovery technologies, cloud networking, segmentation, firewalls, DNS security, zero-trust architectures, certificate and key management, and FinOps practices.
  • Platform security: Experience with Databricks platform security, Microsoft 365 security, and SaaS identity integrations where applicable.
  • Certifications: Relevant Microsoft certifications such as Azure Security Engineer Associate, Cybersecurity Architect Expert, Security Operations Analyst Associate, or Azure Solutions Architect Expert are preferred.
  • Documentation and communication: Strong documentation skills across runbooks, architecture diagrams, standards, risk statements, and executive updates, with the ability to communicate clearly with technical teams, business stakeholders, executives, auditors, vendors, and external partners.
  • Problem-solving and judgment: Strong independent judgment, risk-based decision-making, analytical thinking, and the ability to investigate complex systems, identify root causes, and continuously improve technology operations.
  • Collaboration and adaptability: Comfortable balancing security, reliability, compliance, cost, and business priorities while managing multiple initiatives in a fast-moving environment and working effectively across distributed teams.
  • Growth mindset: Naturally curious and proactive, with a demonstrated interest in automation, simplification, process improvement, and emerging cloud and security technologies.
  • Competitive Compensation: $190,000–$220,000.
  • Remote Work: Fully remote within the United States, with Eastern Time working hours.
  • Flexible PTO: Flexible paid time off designed to give you the opportunity to recharge and maintain sustainable performance.
  • Health Coverage: Comprehensive health, dental, and vision benefits.
  • Collaborative Environment: Work alongside experienced, supportive teammates in a culture centered on commitment, communication, teamwork, service, and integrity.
  • Technical Impact: Own critical cloud infrastructure and security initiatives with broad responsibility across reliability, compliance, automation, data, AI, and operational efficiency.
  • Senior Individual Contributor Scope: Operate with significant technical ownership and influence while partnering directly with leadership and cross-functional teams.

How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Jobgether's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Jobgether's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Jobgether's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.