Managed endpoint protection, detection and response for the 99% who need it most.
Staff Cloud Security Engineer
Location
United States
Posted
30 days ago
Salary
$165K - $193K / year
Seniority
Mid Level
Job Description
Staff Cloud Security Engineer
Huntress
Reports to: Senior Manager, Internal Security Location: Remote US Compensation Range: $165,000 to $193,000 base plus bonus and equity What We Do: Cybercrime is growing, and more businesses are getting hit by threats that used to target only the biggest organizations. That pushes defenders like us to operate at the highest level, and it deepens our need for good people who want to make a meaningful impact. Founded in 2015 by former NSA cyber operators, Huntress is a remote-first team working to make enterprise-grade cybersecurity accessible to businesses of all sizes. We work closely with security teams and service providers protecting complex environments, often without the time or headcount to handle it all. That’s why we build our technology in-house and back it with a 24/7 human-led Security Operations Center (SOC). As a result, our platform is never disconnected from the experts who manage it, ensuring our customers' protection. Huntress now secures more than 5M endpoints and 11M identities worldwide. Those numbers keep growing because more businesses rely on us to help carry the load and operate with more confidence. Every day, you can see that commitment in how we stand with our customers and how we show up for each other. What You’ll Do: Huntress is looking for a highly skilled Staff Cloud Security Engineer to join our fully remote team. You will take on the critical responsibility of securing the cloud-native infrastructure that powers our SaaS platform and internal processes. This role is perfect for a hands-on engineer who is passionate about designing, building, and defending highly scalable and secure cloud environments. You will be a key player in ensuring our platform remains secure and resilient, enabling us to confidently protect the environments of our rapidly growing customer base. Responsibilities: - Product Security: Huntress is a B2B SaaS company providing a range of cybersecurity services to our partners and customers. You will be a key member of the internal product security team and help drive effective security detection and response across our production platform. A requirement for this role is having worked at a B2B SaaS company that provides cloud-hosted services to customers. You are right at home interacting with developers who work in SaaS production environments. - Secure Cloud Architecture: You will design, evaluate, and implement architectural security standards for our AWS, Azure, and PaaS cloud platforms. You’ll be a key stakeholder when we onboard new technologies or modify existing ones to meet business goals and objectives. - DevSecOps Collaboration: Partner directly with internal DevOps and Platform teams to build security into every stage of the infrastructure-as-code lifecycle. You are comfortable engaging via PRs and reviewing IaC/HCL/DSL configurations. - Threat Modeling: You are comfortable reviewing architecture and product development pitches, leveraging your extensive security knowledge to ensure security and privacy by design. - Platform Vulnerability and Risk Management: You'll manage a robust vulnerability management program specifically tailored to our cloud environments. This entails triaging high-severity alerts and coordinating with internal teams to drive mitigations or remediations. - Threat Detection & Response: You will develop strategies to respond to and recover from security incidents affecting the Huntress platform. You'll also implement tools, including runtime and build-level controls, to assist in threat detection and prevention. - Own Security Compliance: This role will have the primary responsibility of owning cloud security controls end-to-end, including the design, monitoring, and remediation of control failures. What You Bring To The Team: - Flexible Security Mindset: You approach security as a business enabler, with a passion for striking the right balance between security, usability, and agility. You bring a measured, risk-based approach to solving security risks and challenges. - SaaS Background: You have experience working within a fast-paced SaaS company and understand the unique security challenges of a cloud-first environment. - Value Documentation: You recognize documentation as a critical tool for showing impact and value. You effectively detail security recommendations, process improvements, architectural decisions, and innovative ideas to ensure clarity and organizational buy-in. - A Security-as-Code / Infrastructure-as-Code Mindset: You are comfortable with IaC tools such as Terraform / Spacelift, as well as other engineering tools such as CircleCI and Git. You are comfortable reading cloud configurations and understanding architecture from the code up. - Proficiency with Scripting: You are comfortable with a scripting language in order to get things done. Whether that is Python or Go, or something else entirely, you leverage scripting to parse data or comb through logs efficiently. - Team Player: You are an effective collaborator and communicator both cross-functionally and functionally. - Deep Cloud Expertise: You possess extensive knowledge of AWS and/or Azure and other cloud platforms, with demonstrated expertise in designing secure cloud, application, and system architectures. You are intimately familiar with cloud-native security tooling, logging, identity management, and security policy. - Incident Response Knowledge: You have a working knowledge of incident response processes and strategies and are familiar with computer forensic tools and methods. You are familiar with a query language (jQL, SQL, Splunk, etc.) and are comfortable combing through datasets during an incident. - Remote-First Collaboration: You are an excellent communicator, capable of thriving and driving initiatives in a distributed, asynchronous work environment. What We Offer: - 100% remote work environment - since our founding in 2015 - Generous paid time off policy, including vacation, sick time, and paid holidays - 12 weeks of paid parental leave - Highly competitive and comprehensive medical, dental, and vision benefits plans - 401(k) with a 5% contribution regardless of employee contribution - Life and Disability insurance plans - Stock options for all full-time employees - One-time $500 reimbursement for building/upgrading home office - Annual allowance for education and professional development assistance - $75 USD/month digital reimbursement - Access to the BetterUp platform for coaching, personal, and professional growth Huntress is committed to creating a culture of inclusivity where every single member of our team is valued, has a voice, and is empowered to come to work every day just as they are. We do not discriminate based on race, ethnicity, color, ancestry, national origin, religion, sex, sexual orientation, gender identity, disability, veteran status, genetic information, marital status, or any other legally protected status. We do discriminate against hackers who try to exploit businesses of all sizes. Accommodations: If you require reasonable accommodation to complete this application, interview, or pre-employment testing or participate in the employee selection process, please direct your inquiries to accommodations@huntresslabs.com. Please note that non-accommodation requests to this inbox will not receive a response. Huntress uses artificial intelligence tools to assist in reviewing and evaluating job applications, including resume screening, skills assessment, and candidate matching and comparisons. These AI tools support our human recruiters in the initial review process, but do not make final hiring decisions without human involvement. By submitting your application, you acknowledge this use of AI in our recruitment process. Please review our Candidate Privacy Notice for more details on our practices and your data privacy rights. #BI-Remote
Benefits
- 401(K) matching, Company equity, Continuing education stipend, Dedicated diversity and inclusion staff, Dental insurance, Disability insurance, Family medical leave, Flexible Spending Account (FSA), Flexible work schedule, Generous parental leave, Generous PTO, Health insurance, Job training & conferences, Open door policy, Life insurance, Online course subscriptions available, Paid holidays, Paid industry certifications, Pair programming, Paid sick days, Performance bonus, Promote from within, Lunch and learns, Remote work program, Team based strategic planning, OKR operational model, Continuing education available during work hours, Tuition reimbursement, Vision insurance, Wellness programs, Mental health benefits, Home-office stipend for remote employees, Hiring practices that promote diversity, Floating holidays
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• This position will be fully remote and can be hired anywhere in the continental U.S. • Our consultants are skilled technical and consultative resources expected to be strong in both technical and soft skills. • A Consultant must be a proven self-starter with the ability to problem-solve, communicate, participate in diverse project teams from a technical perspective, and interface effectively with customers, vendor partners, and colleagues. • Establish & maintain productive and respectful relationships with the delivery team, practice management, and client management team. • You will actively contribute to improving operational efficiency on projects and internal initiatives. • Deliver timely engagements and work closely with Practice Directors to drive training and education, career development, performance development, and collaboration across the team. • In line with Optiv’s commitment to quality, you will confirm that work is of the highest quality as per Optiv’s quality standards, by reviewing the work provided by other members. • Able to solo deliver or act as "point" for complex projects. • Acts as technical escalation point to assist other consultants. • Lead in capacity planning and HW specification recommendation efforts. • Lead in all Technology deployment activities, connector configuration, custom rule development, workflow configuration and development, and third-party system integration. • Lead in Business Continuity, Cyber Resilience and Disaster Recovery efforts. • Lead User Acceptance Testing and bug-related engineering efforts. • Design, implement and educate on specific technology build processes, code migration, and source control use. • Provide knowledge transfer and post production support activities as necessary. • Effective team communicator. • Maintain professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks; participating in professional associations such as ISSA. • Obtain and maintain top tier vendor certification. • Complete administrative project tasks like time and expense entry, status reporting, and project completion reporting. • Acts as contributor in Optiv communities for solutions of focus.
Senior Security Engineer
ClouderaAt Cloudera, we believe that data can make what is impossible today, possible tomorrow.
• Deploy and tune security controls across on-premises and cloud environments (IaaS, PaaS, SaaS) • Ensure that security architectures designed by leadership are effectively integrated • Identify, assess, and track security vulnerabilities across infrastructure, cloud environments, endpoints, and applications • Perform risk-based analysis to prioritize remediation, partner with IT and Engineering teams to drive fixes, and validate remediation effectiveness • Maintain and monitor security configurations across cloud providers • Manage and troubleshoot on-premises security controls, including firewalls, endpoint protection (EDR), and virtualization security • Administer and enforce IAM policies, including SSO integration, MFA rollout, and the management of Privileged Access Management (PAM) tools • Serve as a core technical responder during security incidents, assisting with investigation, containment, and documentation of post-incident findings • Maintain security tooling and develop scripts (e.g., Python, Terraform) to automate repetitive security tasks and improve operational efficiency • Assist in gathering evidence for audits and ensuring our controls meet industry standards like ISO 27001, SOC 2, or PCI DSS
Information Security Engineer
Gainwell TechnologiesGainwell Technologies is an award-winning digital health technology company that supports the administration of healthcare and human services programs. In past flexible hiring, the
• Implement and support federated authentication and authorization integrations using OpenID Connect, OAuth 2.1, and SAML 2.0. • Configure and maintain identity integrations for web, mobile, and API-based applications, including client registrations and trust relationships, token claims, scopes, and attribute mappings, certificates, signing keys, and rotation processes. • Support application modernization efforts by migrating legacy authentication mechanisms to standards-based federation. • Enable token-based access for APIs and distributed services. • Support decoupled identity patterns for modern application architecture. • Build and maintain CI/CD pipelines for identity configurations and integrations, including source control of identity artifacts, automated deployment and promotion between environments, validation and rollback of identity changes. • Apply infrastructure-as-code or configuration-as-code principles to identity platforms where possible. • Collaborate with application teams to implement identity integrations according to established patterns and standards. • Troubleshoot complex authentication and authorization issues using logs, HTTP traces, and token inspection. • Support operational identity activities such as incident response, certificate renewal, and configuration maintenance. • Strong contribution to technical documentation, runbooks, and implementation guides.
Security Coordinator I
ALDI CorporateALDI Corporate is a nationwide grocer that serves more than 50 million customers every month. The company has been recognized various times for its success as a
Title: Security Coordinator I Location: 1245 Corporate Blvd, Aurora, IL 60505, USA Full-time Hybrid Department: Security Job Description: First and foremost, our Security team is focused on protecting our employees, customers, and preserving our company’s profits. Whether it’s providing technical support, conducting audits, making sure our stores, warehouses and offices are secured or managing loss prevention, as part of this team, you’ll be responsible for protecting and preserving the ALDI brand. If you’re an analytical thinker and have a passion for security solutions, apply to join our dynamic team today! Position Type: Full-Time Starting Wage: $36.00 per hour Wage Increases: Year 2 - $37.50 | Year 3 - $39.00 | Year 4 - $40.50 Work Location: Aurora, IL This role is eligible to participate in ALDI’s Hybrid Work Program, which allows remote work up to 3 days per week (i.e., work remotely up to 3 days per week; work in-office at least 2 days per week). Duties and Responsibilities: Must be able to perform duties with or without reasonable accommodation. • Serves as a security subject matter expert for all U.S. locations including stores, distribution centers and national offices. • Recommends process improvements for area of responsibility to direct leader. • Develops customized reports for business partners and stakeholders that identify trends and opportunities as directed. • Provides insight and awareness material based on security trends and available data. • Performs daily/weekly/monthly tasks within Asset Protection programs as assigned to their role and responsibility by direct leader. • Supports security process changes, policy creation or revision and capital improvement projects. • Supports security vendor relationships. • Performs both internal and external reviews to ensure current assigned security programs are functioning and meeting business requirements and industry standards as directed. • Assesses risk to business operations. • Contributes to training team members in security and safety procedures. • Contributes to security and business projects and programs and drives related tasks. • Collaborates with team members and communicates relevant information to direct leader. • Complies with ALDI privacy and security requirements and policies if job responsibilities include possible access to confidential and/or sensitive information. • Other duties as assigned. Job-specific Competencies: Knowledge/Skills/Abilities • Consistently demonstrates the Mindsets, ALDI Acts Competencies and Professional Skills (M.A.P.) as outlined for the role. • Gives attention to detail and follows instruction. • Ability to stay organized and multi-task efficiently. • Ability to work both independently and within a team environment. • Establishes goals and works toward achievement. • Effective time management; maximizes productivity. • Proficient in Microsoft Office Suite • Ability to interpret and apply company policies and procedures. • Knowledge of accepted industry standards and practices. • Excellent verbal and written communication skills. • Skill in reviewing files to determine accuracy and audience. • Develops and maintains positive relationships with internal and external parties. • Ability to analyze and present complex data. Education and Experience: • Bachelor's Degree in Security Management, Criminal Justice or Business Management or a related field required. • A minimum of 2 years of relevant experience required. • Or, a combination of education and experience providing equivalent knowledge. • Experience in management or oversite of enterprise physical security systems and projects including access control, IP video, intrusion, and fire systems preferred. Physical Requirements: • Work may be performed in an office, remote office or a combination of both where a computer and office equipment may be used as needed to perform duties. • Regularly required to sit, reach, grasp, stand and move from one area to another. • Constantly and repeatedly use keyboard/mouse. • Occasionally required to push, pull, bend, lift and move up to 25 lbs. Travel: • Minimal travel required as needed for job related duties such as training, project work and administrative tasks.




