Cloud Security Operations Engineer – GCP/AWS
Location
Alaska + 1 moreAll locations: Alaska | Hawaii
Posted
8 days ago
Salary
0
Seniority
Senior
Job Description
Cloud Security Operations Engineer – GCP/AWS
Medable
• Work cross-functionally with Information Security Operations and Infrastructure/DevOps teams, to administer and optimize security posture across multi-cloud (GCP/AWS) infrastructure, including native security services, IAM, logging, and threat detection • Triage and respond to cloud security alerts and vulnerabilities; implement timely mitigations, configuration changes, and patches • Own configuration and hygiene for cloud security consoles (examples: GCP Security Command Center, Cloud Logging, Cloud Armor, KMS, IAM , etc.) • Partner with DevOps to implement secure baseline configurations and guardrails (network segmentation, least privilege, encryption, key management, secrets handling, egress controls), in alignment with industry standard frameworks such as CIS, NIST 800-53, OWASP Top 10, etc. • Run day-to-day vulnerability workflows: detection, prioritization, remediation, and validation across cloud services, hosts, containers, and third-party dependencies • Manage and harden security configurations for Kubernetes Engine environments, including: Cluster and node security settings, RBAC, pod security controls, network policies, admission controls, and runtime security, Image vulnerability scanning, container supply-chain controls, patch cadence and version lifecycle management for clusters/nodes and supporting components • Support secure implementations/integrations of AI within cloud infrastructure, including: Data protection controls (PII/PHI handling, encryption, retention, audit logging) • Network controls (private connectivity where feasible, egress restrictions, proxying, allowlists) • Usage monitoring, abuse prevention, and security reviews for AI-driven features/workflows • Contributing to internal AI security standards (prompt/data handling guidance, logging strategy, third-party risk considerations) • Work cross-functionally with IS Risk and Compliance team to produce evidence and reporting to support internal security requirements and external compliance obligations (e.g., SOC 2 / ISO-aligned controls, healthcare and privacy expectations) • Participate in security incident response for cloud-related events, including containment and recovery actions • Other duties as assigned
Job Requirements
- 4+ years of hands-on experience in cloud security, DevSecOps, cloud engineering with security focus, or security operations in cloud environments or a combination of education and experience
- Experience in healthcare technology and/or regulated environments (privacy, audit evidence, security control documentation)
- Practical experience administering security controls in GCP and AWS (IAM, logging, encryption/KMS, network security, cloud security services)
- Experience securing Kubernetes environments, including RBAC, cluster hardening, workload controls, and patch/version management
- Strong vulnerability management experience (triage, remediation coordination, patching workflows, validation)
- Experience supporting secure integrations of LLM/AI services (e.g., ChatGPT/Grok) in production systems, including data governance and key management
Benefits
- Flexible Work Remote from the start, we believe in a flexible employee experience
- Competitive base salaries
- Annual performance-based bonus
- Stock options for employees, aligning personal achievements to Medable's success
- Comprehensive medical, dental, and vision insurance coverage
- Carrot Fertility Program
- Health Saving Accounts (HSA) and Flexible Spending Accounts (FSA)
- Wellness program (Mental, Physical and Financial)
- Peer-to-peer recognition program, celebrating achievements and milestones
- Volunteer time off to support causes you care about
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
• Work with the technical lead on cybersecurity project scopes • Work with Team to develop strategy and timeline to meet project’s milestones and deliverables • Participate in network design, security architecture, and diagrams • Participate in hardware, software, and communications media specification • Participate in device configurations and hardening for security compliance and Risk Management • Work with Team to ensure timely delivery of high-quality cybersecurity documentation including security policies and procedures, RMF artifacts, configuration guides, testing reports, and training materials • Participate in cybersecurity assessments including vulnerability and compliance scanning and reporting • Participate in S&C’s Information Security program as it applies to customer facing services • Must be able to work independently in a fully remote environment • Ability to relay technical information to non-technical audiences • Function effectively within a global teams environment and under minimal supervision • Ability to travel internationally and out of state on average 4-5 times per year for 1-3 weeks per trip • Maintains regular and punctual attendance. • Attends in-person or virtual meetings as requested or required. • Communicates effectively and respectfully with others. • Other responsibilities as assigned.
Analista SOC – Pleno
ASAASSimplificamos o recebimento de cobranças para pessoa física, MEIs e grandes empresas.
• Monitorar, triar e enriquecer alertas de segurança de baixa, média e alta complexidade gerado pelo SIEM; • Analisar logs provenientes de múltiplas fontes: ZTNA, EDR/XDR, Cloud, Banco de Dados, DLP, WAF e CSPM; • Conduzir análises detalhadas de alertas e eventos de segurança, correlacionando múltiplos indicadores antes de concluir uma investigação; • Investigar e responder a incidentes cibernéticos, propondo ações corretivas e preventivas; • Gerenciar o fluxo de tickets, garantindo registro adequado, acompanhamento e escalação quando necessário; • Desenvolver, revisar e aprimorar Playbooks, Runbooks e Procedimentos Operacionais Padrão (POPs); • Fornecer feedbacks estruturados à Engenharia de Detecção sobre casos de uso que necessita, de tuning de regras; • Identificar lacunas de monitoramento e propor ativamente novos casos de uso para o SIEM, com base no framework MITRE ATT&CK, em TTPs relevantes ao negócio,ativos críticos e ameaças emergentes do setor; • Contribuir ativamente em atividades de Cyber Threat Intelligence (CTI) e Threat Hunting; • Impulsionar a melhora contínua do SOC por meio de automação e otimização de processos; • Produzir relatórios técnicos e gerenciais sobre o status da segurança e incidentes tratados; • Apoiar a conformidade com normas e regulamentos: PCI-DSS, ISO 27001, LGPD e normativas BACEM; • Suportar auditorias internas fornecendo evidências e documentação técnica.
Staff SecOps Engineer
Lunar EnergyBuilding the world’s best clean energy products to deliver home electrification at scale.
Role Description Lunar Energy is currently seeking a Staff SecOps Engineer to join our talented team of engineers, dedicated to delivering a more sustainable future. You will play a pivotal role in ensuring end-to-end platform security and have the opportunity to strongly influence and contribute to the team’s future. Lunar Energy empowers you to explore multiple facets of our technology stack, aligned with your personal interests and abilities. We have a strong tradition of leveraging functional programming and type systems to craft pragmatic and flexible systems that align with business requirements. Key Responsibilities: - Incident response and detection - Architect and evolve the SecOps platform - Run hypothesis-driven hunts and operationalize threat intelligence - Reason about cloud infrastructure strategy to help ensure that solutions are the best fit for requirements - Develop and evangelise security best practices amongst the wider Software Engineering team, automating secure software development processes where possible. Qualifications - Bachelor's or Master's degree in a technical field, or equivalent practical experience - A minimum of 8 years’ of combined experience in DevOps, SecOps, Platform Engineering or SRE roles, with at least 4 years of specific focus on SecOps. - Offensive background: red team, pentest, or purple team experience - Experience using infrastructure as code - Strong understanding of networking and network security - Strong background in Linux operating systems - Strong expertise in Cloud security in AWS - Proficiency in one or more scripting programming languages (Python, Ruby, Bash, etc.) Requirements - Fluency in compliance frameworks such as SOC2 or ISO27001 - Systems programming in Go or Rust - Experience with serverless technologies - Experience with Typescript - Interest in the IoT and renewable energy industry Benefits We’re dedicated to creating a remarkable employee experience. At Lunar, competitive base pay is one part of our total compensation package. Lunar employees also have the opportunity to become Lunar shareholders by getting equity in a fast-growing company and participating in our employee stock program. - Competitive salary and stock options package - Private Medical Insurance scheme through BUPA (medical history disregarded) - A wellbeing and lifestyle benefits plan through Medicash - 5% employer contributions pension matching - A budget for work related training of £1,000 per financial year and an allowance of 4 training days - Cycle To Work scheme and Workplace Nursery benefit - Access to Spill - Mental Health Support platform - Enhanced Maternity + Paternity Pay - 25 days annual holiday entitlement + 8 Bank Holidays - Flexible start and finish times, fully remote working or hybrid depending on preferences Company Description Lunar Energy was founded to transition homes to 100% clean energy—making our electricity greener, our air cleaner and our energy more safe, secure and reliable for all. We’re a fast-growing, global company building the world’s best clean energy products to electrify all homes and connect communities to form clean, resilient virtual power plants.
SOC Engineer – Incident Response
BinanceThe World’s Leading Blockchain Ecosystem and Digital Asset Exchange
• Design, deploy, and optimize DLP solutions across network, endpoint, and cloud. • Build and refine data classification schemes for sensitive assets (wallets, trading algorithms, customer PII). • Configure DLP policies to prevent data exfiltration while minimizing false positives. • Monitor, analyze, and tune alerts and incidents for continuous improvement. • Lead investigations of DLP incidents and insider threats. • Conduct threat hunting and forensic analysis of data exfiltration attempts. • Integrate DLP monitoring into broader SOC workflows and incident response playbooks. • Build custom DLP tools and integrations (e.g., macOS Swift endpoint protection, Unix socket monitoring). • Develop automation scripts, APIs, regexes and integrations to enhance detection and response. • Explore AI/LLM-driven methods for anomaly detection and response efficiency. • Ensure controls align with crypto and financial regulations (AML, KYC, GDPR, CCPA). • Support audits and regulatory reviews related to data protection. • Assess and mitigate data loss risks across trading platforms, onboarding systems, and blockchain infrastructure.



