Source Job

India

  • Own security architecture across Azure and AWS, covering tenant design, network segmentation, and workload isolation.
  • Raise the engineering bar with hardened infrastructure-as-code modules, secure defaults, and policy-as-code signals at commit time.
  • Own vulnerability and exposure management end to end, delivering findings as pull requests, not tickets.

Azure AWS Cloud Security Infrastructure As Code Kubernetes

20 jobs similar to Principal Security Engineer Cloud and Infrastructure Security

Jobs ranked by similarity.

US

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
  • Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.

Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.

UK

  • Lead and grow a team of security engineers focused on protecting cloud-native environments and CI/CD pipelines.
  • Drive technical strategy, threat modeling, and security automation across multi-cloud infrastructure.
  • Partner with engineering and DevOps teams to embed secure-by-design principles and manage vulnerability and supply chain security.

Wiz is a cybersecurity company that provides a cloud security platform connecting code, cloud, and runtime to secure cloud and AI applications. It is one of the fastest-growing startups, trusted by over 65% of the Fortune 100, and now powered by Google, with a culture that values world-class talent.

US

  • Get hands-on with our Go codebase, AWS and Kubernetes environment, SIEM, and security services, contributing security feedback to design docs and shipping your first fix or detection.
  • Own a security domain end to end, such as cloud hardening or detection engineering, and ship reusable Go security middleware adopted by service teams.
  • Drive multi-quarter initiatives like default-deny networking, expand Kubernetes security, and automate compliance evidence for audits.

Bastion provides regulated infrastructure for businesses to hold, move, and issue stablecoins, combining custodial wallets, payment orchestration, and issuance. As a 40-person startup, we operate through our own regulated entities with built-in compliance and risk controls.

France 4w paternity

  • Bridge security and platform engineering to make infrastructure secure by design and provable at audit.
  • Own infrastructure vulnerability management and automate security guardrails on Azure and Kubernetes.
  • Build detection as code, widen SIEM coverage, and eliminate long-lived credentials.

360Learning is a collaborative learning platform for turning internal experts into champions for employee, customer, and partner growth. Founded in 2013, it has 400+ employees across North America and EMEA with an inclusive Convexity culture.

$135,000–$155,000/yr
US

  • Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
  • Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
  • Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.

The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.

US

  • Provide technical advisory and architecture leadership for enterprise Azure environments.
  • Lead design and governance of Azure networking, identity, security, and infrastructure.
  • Drive automation, modernization, and operational excellence for managed customers.

Quisitive is a global Microsoft partner specializing in cloud transformation, enterprise data strategy, cybersecurity, and agentic AI. The company has experienced significant growth since 2016, expanding across the United States, Canada, and India, and fosters a culture of innovation, craftsmanship, and collaboration.

$98,000–$116,000/yr
US

  • Integrate AppSec tools into CI/CD pipelines and manage application security vulnerabilities.
  • Monitor and respond to security incidents, tuning WAF policies and security rulesets.
  • Collaborate with IT partners to perform security reviews and remediate findings across cloud platforms.

EMCOR Group, Inc. is a Fortune 500 leader in mechanical and electrical construction, industrial and energy infrastructure, and building services. As a large company with a diverse portfolio, it emphasizes a culture of security and collaboration.

$160,000–$180,000/yr
US

  • Lead and mature cybersecurity compliance programs including SOC 2 Type 2 and ISO 27001 readiness.
  • Drive cloud and application security across AWS and Azure, integrating secure SDLC and DevSecOps practices.
  • Manage corporate IT operations, identity and access, and build the cybersecurity team as the organization grows.

Genea is a leader in property technology, providing cloud-based physical security, submeter billing, and on-demand HVAC solutions to over 1 million users across 39 countries. It has been recognized as a Top Workplace from 2021-2025 with a 4.3 Glassdoor rating, fostering a team-oriented and transparent culture.

US Unlimited PTO

  • Lead the technical vision for platform hardening across AWS and GCP, including tier-0 access and secrets services.
  • Own the hardening roadmap for critical cloud infrastructure and drive operational excellence with rigorous on-call practices.
  • Mentor a global team of engineers and partner cross-functionally to build secure-by-default controls.

DoorDash is a technology and logistics company building the most reliable delivery network for consumers, merchants, and dashers. The company is growing rapidly and fosters a culture of learning, customer obsession, and inclusive leadership.

$140,000–$160,000/yr
US

  • Design and maintain secure architectures across AWS, Azure, and GCP with infrastructure-as-code and policy-as-code enforcement.
  • Secure AI/ML pipelines and LLM applications, addressing OWASP Top 10 for LLMs and implementing guardrails and content-filtering controls.
  • Drive security operations, including SIEM monitoring, incident response, and supporting HIPAA/HITRUST/SOC 2 compliance.

Reveleer delivers a unified platform for risk adjustment, quality improvement, clinical intelligence, and member management for health plans and provider organizations in value-based care. Trusted by 80+ customer organizations nationwide, the company fosters a collaborative, compliance-focused culture with transparent, human-in-the-loop AI at its core.

  • Design and implement security-focused tooling and guardrails for infrastructure.
  • Collaborate with security, SRE, and platform teams to integrate trust principles.
  • Build internal automation to reduce developer cognitive load while enforcing security standards.

BlueCloud is a Snowflake Elite Partner that helps enterprises migrate to AI-ready data platforms. With 450+ consultants and 200+ successful transformations, they combine expertise with AI accelerators to deliver results 40-50% faster.

$150,000–$160,000/yr
US Unlimited PTO

  • Implement and maintain AWS security configurations across development, staging, and production environments.
  • Operate SAST, DAST, and SCA tools integrated into CI/CD pipelines to remediate vulnerabilities.
  • Support compliance efforts such as SOC 2 Type II and ISO 27001 audits and improve security processes.

Pacvue is a leading software suite for eCommerce advertising, sales, and intelligence, helping brands grow on Amazon, Walmart, Instacart, and other marketplaces. The team is energetic, passionate, and focused on innovation, with a mission to help brands and sellers succeed.

$120,000–$150,000/yr
US

  • Fix vulnerabilities across the stack by writing pull requests in application repositories and Terraform.
  • Build and tune SIEM detections, mapping coverage to MITRE ATT&CK and reducing false positives.
  • Lead incident response, harden AWS estate, and automate security workflows with code.

Cloudbeds is a hospitality management platform powering hotels across 150 countries, processing billions in bookings annually. The company is a remote-first team of 650+ across 40+ countries, recognized for innovation and an inclusive culture.

Europe

  • Own cloud and product security across AWS and GCP, setting baselines for IAM, networking, data protection, and workload configuration.
  • Partner with platform, SRE, and product teams to embed practical security controls into developer workflows and automate guardrails in delivery pipelines.
  • Perform security architecture reviews, threat modeling, and incident response, and drive systemic improvements with meaningful security metrics.

We create intelligent software development tools used by more than 15 million users and 300,000 companies, including 88 of the Fortune Global Top 100. Our mission is to make development teams more productive and AI adoptable at scale, and we foster an open and inclusive workplace.

$116,019–$145,024/yr
US 4w PTO 4w maternity 4w paternity

  • Design, deploy, and manage cloud security solutions to protect AWS and Azure environments.
  • Perform security assessments, vulnerability remediation, and lead key security programs.
  • Automate security processes and integrate DevSec practices into the software development lifecycle.

Navitus is a pharmacy benefit manager (PBM) alternative that aims to make medications more affordable by removing cost from the drug supply chain. The company fosters a diverse, creative, and growth-oriented culture.

Europe 16w maternity 16w paternity

  • Own identity, SSO, and device management across Google Workspace and macOS, automating joiner and leaver flows from day one.
  • Secure cloud and SaaS environments by managing IAM, cloud guardrails, and vulnerability management end to end.
  • Bring a security perspective to incidents and audits, using AI-assisted workflows to reduce manual work.

Maze is a user research platform that helps product teams build the right products faster by making user insights accessible. With less than 150 team members and a global remote workforce, Maze fosters a culture of transparency and inclusion.

LATAM

  • Own the technical vision and architecture for shared multi-tenant platforms.
  • Design and validate Azure solutions, breaking down complex initiatives into scoped work.
  • Partner with stakeholders to ensure deliverables map to real client and operational needs.

Atmosera empowers businesses with modern technology and human expertise across Azure, data & AI, DevOps, and security. As a Microsoft Partner with nine specializations, they deliver integrated solutions and value humility, hunger, and mindfulness.

Global

  • Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
  • Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
  • Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.

Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.

US Unlimited PTO

  • Design, harden, and defend containerized application infrastructure across edge and cloud environments.
  • Lead threat modeling, vulnerability management, and security reviews to support mission-critical systems.
  • Own provisioning, secrets management, and security controls for systems operating in denied or disconnected environments.

CX2 is a next-generation defense technology company building AI-enabled hardware and software platforms to detect, disrupt, and defend the electromagnetic spectrum. Backed by leading defense investors and led by founders from Meta, SpaceX, Epirus, and the DoD, the company values high responsibility and autonomy.

US

  • Develop playbooks and address security-related tasks in AWS serverless environments.
  • Drive improvements in security posture, including application, endpoint, and access management.
  • Collaborate with product engineering teams to raise the bar for security in CI/CD, dependency management, and secure design reviews.

Stedi is building a new healthcare clearinghouse and RCM engine, accessible via API. With $142 million in funding and a lean, passionate team, they ship products weekly and prioritize automation and eliminating toil.