Security Engineer Cloud

Enterprise AI platform for financial institutions, providing agentic research, analysis, workflow automation, and client-ready deliverables.

New York, NY, United States
About Rogo

Rogo builds bespoke, enterprise-grade AI systems for financial workflows, including research, analysis, modeling, reporting, and deal work. Its platform emphasizes financial-domain models, integrated firm and market data, auditability, governance, and security.

View jobs by Rogo

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will lead the design and implementation of cloud security architecture across AWS and GCP. You will build secure infrastructure foundations, write and review Terraform, shape identity and network architecture, and embed security controls into the platform. You will automate security across CI/CD and cloud environments, secure Kubernetes workloads, develop detection pipelines, perform threat modeling, and mentor engineers through technical reviews.

Requirements

  • Experience building cloud security platforms or foundational infrastructure in AWS and GCP
  • Fluency in Terraform, including state management, module design, and rollout strategies
  • Expertise in cloud IAM and networking design
  • Ability to define long-term technical direction in ambiguous environments
  • Ability to influence architecture through technical depth
  • Experience with automation, code, and security guardrails

Responsibilities

  • Architect and implement cloud security foundations across AWS and GCP
  • Author reusable Terraform modules, policy enforcement, guardrails, and secure infrastructure defaults
  • Design and operate cloud identity systems, including workload identity, service accounts, role assumption, and cross-cloud access
  • Lead cloud-network security design, including VPC architecture, private connectivity, egress control, firewalling, and isolation boundaries
  • Build and maintain security automation across CI/CD and cloud environments
  • Own Kubernetes and container security for GKE and EKS production workloads
  • Define and implement cloud-security logging, monitoring, and detection pipelines
  • Perform threat modeling and architectural reviews for infrastructure and platform changes
  • Review critical infrastructure changes, mentor engineers, and improve security practices

Benefits

  • Equity
  • Comprehensive medical coverage
  • Dental coverage
  • Vision coverage
  • Paid time off