Search...

Cloud Security Engineer

Coins.ph logo
Coins.ph

Digital wallet and cryptocurrency exchange platform enabling Filipinos to buy, sell and manage crypto assets with integrated payment services.

Distributed
About Coins.ph

Coins.ph serves as a regulated crypto platform for over 18 million Filipino users, offering cryptocurrency trading, bill payments, and remittance services. The platform integrates QR payments and mobile load purchases with crypto services, making digital assets accessible to Filipinos.

View jobs by Coins.ph

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You lead security architecture assessments and hardening for cloud platforms, primarily AWS. You maintain cloud security baselines and monitor IAM, networking, storage, and compute security posture. You drive vulnerability remediation, improve monitoring and automated detection, participate in incident response, produce root cause analyses, and communicate cloud risk posture to management.

Requirements

  • 5+ years of experience in cloud security or information security
  • At least 3 years of experience focused on AWS environments
  • Strong command of AWS IAM, VPC, S3, EC2, KMS, CloudTrail, GuardDuty, and Security Hub
  • Vulnerability identification and risk assessment
  • Familiarity with CIS Benchmark, NIST, and MITRE ATT&CK for Cloud
  • Experience driving remediation efforts across teams
  • Familiarity with a CSPM or CNAPP tool
  • Scripting or automation skills in Python, Terraform, or CloudFormation

Responsibilities

  • Lead security architecture assessments and hardening for AWS cloud platforms
  • Define and maintain cloud security baselines, policies, and standards
  • Monitor the security posture of IAM, networking, storage, and compute environments
  • Identify and assess security vulnerabilities and configuration risks
  • Define remediation plans and priorities
  • Drive engineering and operations teams to complete fixes
  • Track and verify remediation outcomes
  • Build and improve cloud security monitoring, alerting, and automated detection mechanisms
  • Participate in security incident response
  • Produce root cause analyses and improvement recommendations
  • Produce security assessment reports
  • Communicate cloud risk posture to management