Senior Cloud Security Engineer
2 days ago
Senior Cloud Security Engineer
Clearance: Must have ability to obtain a Public Trust Clearance (US Citizenship required)
Location: Washington DC Metro area preferred, remote
As a Senior Cloud Security Engineer at Finch AI, you'll play a pivotal role in maintaining and enhancing our security posture across AWS cloud environments. This position is ideal for security practitioners with a broad range of experience in operational security, governance, cloud security, and automation who thrive in dynamic, agile teams.
Responsibilities:
Security & Compliance
- Ensure adherence to cloud security requirements and best practices (FISMA, RMF, NIST, ISO 27000 series).
- Perform monitoring, intrusion detection, incident investigation, and corrective actions within AWS environments.
- Conduct security assessments, enforce policies, and report on vulnerability remediation.
- Lead cloud security initiatives, including risk assessments, remediation, and compliance efforts.
- Develop and implement advanced cloud security strategies, policies, and procedures.
Cloud Infrastructure & Automation
- Deploy, configure, and automate security guardrails using AWS native tools such as AWS Control Tower, AWS Security Hub, AWS Config, AWS CloudTrail, AWS GuardDuty, and AWS Macie.
- Integrate and manage logging, monitoring, and security tools such as CrowdStrike, Darktrace, and Splunk.
- Develop hardened AWS AMIs and automate infrastructure deployments.
- Ensure systems remain patched, updated, and secure by managing patch deployments and vulnerability remediation efforts using AWS Systems Manager Patch Manager.
- Familiarity with containerization and orchestration tools (e.g., Docker, Kubernetes, AWS ECS) is a plus.
Firewall & Networking
- Configure and maintain AWS Network Firewalls, AWS Security Groups, AWS NACLs, and other cloud-native security controls.
- Optimize AWS networking/security services such as AWS Shield, AWS WAF, AWS GuardDuty, and AWS Inspector.
- Secure the environment using AWS Control Tower, Service Control Policies (SCPs), IAM policies, NACLs, and security groups to enforce least privilege access and proper network segmentation.
- Managing Palo Alto Firewalls and VPN connectivity between cloud resources.
- Administration of Palo Alto Firewalls
- Collaborate with stakeholders to gather security requirements and maintain secure cloud operations.
Incident Response & Continuity
- Conduct proactive troubleshooting and incident response to resolve complex issues with minimal downtime.
- Participate in weekly IT meetings, manage patch deployments, and handle vulnerability remediation.
- Conduct root cause analyses and provide detailed documentation for security incidents.
- Support IT Service Continuity drills and ensure reliable system operations within AWS environments.
Strategic Leadership
- Ability to provide thought leadership and help define strategic and tactical vision to improve mission efficiency and effectiveness.
- Collaborate with cross-functional teams to advance security initiatives, streamline operations, and achieve business objectives.
Required Skills & Qualifications
Technical Expertise
- Strong scripting skills (Terraform, AWS CloudFormation, Bash, Python).
- Extensive hands-on experience configuring, optimizing, and securing AWS Firewalls and networking tools.
- Advanced administration of AWS networking/security services (e.g., AWS Shield, AWS WAF, AWS GuardDuty, AWS Security Hub, AWS Macie, AWS Config, AWS CloudTrail).
- 8+ years of hands-on security experience, including 4+ years in AWS cloud security and 2+ years in systems automation.
- Hands-on experience with CrowdStrike and developing SOAR playbooks.
Certifications (Preferred)
- AWS Security Specialty, AWS Solutions Architect, or AWS SysOps Administrator.
- Security+ CE, SSCP, CCNA-Security, GSEC, or PCNSE.
Knowledge Base
- In-depth understanding of security principles, best practices, and compliance frameworks.
- Familiarity with networking, databases, web operations, and securing AWS cloud workloads.
- Excellent problem-solving, analytical, and communication skills.
Education
- BS/BA in Computer Science or a related field, or 5 years of equivalent work experience.
Why Join Finch AI
- Innovation: Work with cutting-edge technologies and solve complex, real-time data challenges.
- Collaboration: Be part of a supportive, high-performing team that excels in both virtual and co-located settings.
- Growth: Take ownership of impactful security projects and expand your expertise in AWS cloud security and automation.
- Culture: Enjoy an agile, problem-solving environment where your contributions directly drive success
About FINCH AI
Finch AI is a fast-growing, fast-paced software development organization; our mission is to build new ways of interacting with information. We do that by leveraging game-changing intellectual property, cloud infrastructure expertise, and a staff that is second to none. Together, we build and support products that address complex, real-time data and analytics needs in the enterprise.
Our teams are comprised of successful people that enjoy solving problems, engaging in substantive technical discussions and have passion for their work. We have very high expectations in terms of skill, motivation, self-organization, and productivity. We look for people who excel working in groups, virtual and collocated, as well as those who are comfortable with fast paced agile development.
Finch AI is an equal opportunity employer.
-
Senior Cloud Security Engineer
2 days ago
Remote, Oregon, United States TherapyNotes Full time $120,000 - $150,000 per yearAbout UsTherapyNotes is the go-to superhero for behavioral health Practice Management and EHR software Our top-notch SaaS solution handles scheduling, billing, documenting, telehealth, and more so clinicians can focus on awesome patient care.We're a dynamic team of pros who love to innovate and push the envelope, keeping our software cutting-edge. Join us,...
-
Remote, Oregon, United States GuidePoint Security Full time $120,000 - $180,000 per yearGuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...
-
Senior Cloud Engineer
2 days ago
Remote, Oregon, United States Fenix24 Full time $120,000 - $180,000 per yearFenix24 is an industry-leading cyber disaster recovery and restoration company. Battling threat actors as The World's First Civilian Cybersecurity Force, Fenix24 delivers cybersecurity services through its four battalions: Fenix24 for ransomware recovery and restoration; Athena7 for IT security assessments, strategy and planning; Grypho5 for ongoing...
-
Senior Cloud Engineer
3 hours ago
Remote, Oregon, United States LMI Full time $131,328 per yearOverview:Overview:LMI is seeking an experienced Senior Cloud Engineer to support the U.S. Army Training Information System (ATIS) program. ATIS is a major Army initiative to modernize and consolidate Army training systems into a single, cloud-native, enterprise-level capability. As part of an Agile Release Train (ART) operating under the Scaled Agile...
-
Cloud Security Engineer
2 weeks ago
Remote, Oregon, United States Stefanini Full time $120,000 - $150,000 per yearWe are looking for a Remote Cloud Security Engineer for an Education Company in Chicago, ILJob Details:6-12 month contractCST work hours, 8am-5pmW2, with PTO and benefits packagesPayrate negotiable upon interviewJob Summary:We are seeking an experienced Cloud Security Engineer with expertise in Cloudflare Web Application Firewall (WAF), Bot Management,...
-
Cloud Engineer
3 days ago
Remote, Oregon, United States GenuineXs LLC Full time $200,000 - $250,000 per yearRole OverviewWe're seeking a highly skilled Senior Multi-Cloud Engineer to architect, automate, and secure cloud infrastructure across AWS, Azure, and GCP. This role demands deep expertise in cloud-native services, infrastructure-as-code, and cross-platform governance. You'll lead cloud migrations, optimize performance, and ensure compliance across hybrid...
-
Senior Cloud Infrastructure Engineer
20 hours ago
Remote, Oregon, United States DISA Global Solutions, Inc. Full time $130,000 - $150,000DISA Global Solutions is an industry-leading safety and compliance solutions provider with customers across the Globe since 1986 and more than 1,200+ Team members across more than 30 locations. When you join the DISA Team, you join an industry leader that more than 30% of fortune 500 companies use. With a rich history of IT innovation, we have more than...
-
Senior Application Security Engineer
3 days ago
Remote, Oregon, United States Abnormal Full time $200,000 - $250,000 per yearAbout the RoleAbnormal AI is looking for a Senior Application Security Engineer to help build the next generation of secure AI-powered cybersecurity applications at scale. This is a senior IC-level role that blends deep application security expertise with strong engineering fundamentals. You'll focus on integrating security into every phase of our software...
-
Senior Cloud Infrastructure Engineer
21 hours ago
Remote, Oregon, United States Resourznet Consulting Full timeJob Description:Need expertise in Kubernetes.Requirements:Build cutting edge cloud native infrastructure on top of the public cloud.Deliver frameworks and platforms that are secure, efficient, mature and highly available that abstract away infrastructure complexity.Optimize existing systems/services to improve performance and efficiency.Systematically...
-
Cloud Security Specialist III
2 days ago
Remote, Oregon, United States Gama-1 Technologies Full time $120,000 - $180,000 per yearSummaryGAMA-1 Technologies, LLC seeks an experienced Cloud Security Specialist III to provide advanced technical expertise in securing cloud-based systems and ensuring compliance with federal cybersecurity frameworks in remote environment. The candidate serves as a subject matter expert for cloud security architecture, risk assessment, and continuous...