Search...

Staff Cloud Security Engineer

Forgepoint Capital logo
Forgepoint Capital

Stealth

Distributed
View jobs by Forgepoint Capital

Skills

About the Role

You will secure cloud-native infrastructure supporting a SaaS platform and internal processes. You will design and implement secure cloud architectures, embed security in infrastructure-as-code workflows, assess threats, manage vulnerabilities, respond to incidents, and own cloud security controls from design through remediation.

Requirements

  • Experience working at a B2B SaaS company providing cloud-hosted services to customers.
  • Experience working in a fast-paced SaaS company.
  • Experience with Terraform, Spacelift, CircleCI, and Git.
  • Ability to read cloud configurations and understand architecture from code.
  • Proficiency with a scripting language such as Python or Go.
  • Extensive knowledge of AWS and/or Azure and other cloud platforms.
  • Expertise designing secure cloud, application, and system architectures.
  • Knowledge of cloud-native security tooling, logging, identity management, and security policy.
  • Knowledge of incident response processes, strategies, computer forensic tools, and methods.
  • Familiarity with query languages such as jQL, SQL, or Splunk.
  • Ability to collaborate and communicate in a distributed, asynchronous work environment.

Responsibilities

  • Drive security detection and response across the production platform.
  • Design, evaluate, and implement security standards for AWS, Azure, and PaaS platforms.
  • Assess new and modified technologies for security alignment.
  • Partner with DevOps and Platform teams to embed security throughout the infrastructure-as-code lifecycle.
  • Review infrastructure-as-code configurations and pull requests.
  • Review architecture and product development proposals using threat modeling and security-by-design principles.
  • Manage cloud vulnerability management, including triaging high-severity alerts and coordinating remediation.
  • Develop incident response and recovery strategies for platform security incidents.
  • Implement runtime and build-level controls for threat detection and prevention.
  • Own cloud security controls end-to-end, including design, monitoring, and remediation of control failures.

Benefits

  • 100% remote work environment.
  • Paid time off, including vacation, sick time, and paid holidays.
  • 12 weeks of paid parental leave.
  • Medical, dental, and vision benefits.
  • 401(k) with a 5% contribution regardless of employee contribution.
  • Life and disability insurance.
  • Stock options for full-time employees.
  • One-time $500 home-office reimbursement.
  • Annual education and professional development assistance allowance.
  • $75 USD monthly digital reimbursement.
  • Access to the BetterUp coaching platform.