Source Job

$104,000–$166,000/yr
US

  • Design and implement security architecture for AWS workloads aligned with FedRAMP Moderate baseline controls.
  • Build and maintain security guardrails using AWS-native services (IAM, GuardDuty, Security Hub, Config, CloudTrail, KMS, WAF, Macie, Inspector).
  • Support ATO activities, continuous monitoring, vulnerability scanning, and incident response.

AWS Security Engineering FedRAMP Terraform IAM

20 jobs similar to AWS Cloud Security Engineer

Jobs ranked by similarity.

$150,000–$160,000/yr
US Unlimited PTO

  • Implement and maintain AWS security configurations across development, staging, and production environments.
  • Operate SAST, DAST, and SCA tools integrated into CI/CD pipelines to remediate vulnerabilities.
  • Support compliance efforts such as SOC 2 Type II and ISO 27001 audits and improve security processes.

Pacvue is a leading software suite for eCommerce advertising, sales, and intelligence, helping brands grow on Amazon, Walmart, Instacart, and other marketplaces. The team is energetic, passionate, and focused on innovation, with a mission to help brands and sellers succeed.

$135,000–$155,000/yr
US

  • Design and enforce cloud security controls and IAM policies across multi-account AWS environments.
  • Embed automated security tools into CI/CD pipelines to catch vulnerabilities pre-deployment.
  • Develop automated detection and remediation workflows using Python, Bash, or Go and IaC tools.

The Tripadvisor Group connects people to experiences worth sharing, aiming to be the world's most trusted source for travel and experiences. It is a publicly traded company with a global portfolio of travel brands, fostering a culture of collaboration, agility, and traveler-first mindset.

US

  • Own security of the software build and release pipeline, cloud environments, and AWS identity and access.
  • Operationalize a 15-domain cloud security framework and CrowdStrike CSPM across all AWS estates.
  • Mentor a junior cloud security engineer and build paved-road patterns for engineering teams.

Vermont Information Processing is a leading beverage industry technology provider trusted by over 1,600 suppliers for 50+ years. Backed by Warburg Pincus, VIP is investing in security with executive sponsorship and a funded roadmap.

Canada

  • Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization.
  • Partner with DevOps and CI/CD engineers to embed shift-left security practices throughout the software development lifecycle.
  • Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements.

LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, they blend strong security with everyday simplicity in a remote-first, collaborative culture.

US Unlimited PTO

  • Support cloud security consulting engagements, including assessments and architecture reviews.
  • Assist with AWS security configurations and documentation under senior guidance.
  • Participate in client meetings and contribute to deliverable preparation.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services to help organizations make better decisions and minimize risk. With over 1,300 employees, it is a rapidly growing, privately-held company known for its collaborative culture and mentorship.

US

  • Develop playbooks and address security-related tasks in AWS serverless environments.
  • Drive improvements in security posture, including application, endpoint, and access management.
  • Collaborate with product engineering teams to raise the bar for security in CI/CD, dependency management, and secure design reviews.

Stedi is building a new healthcare clearinghouse and RCM engine, accessible via API. With $142 million in funding and a lean, passionate team, they ship products weekly and prioritize automation and eliminating toil.

$120,000–$150,000/yr
US

  • Fix vulnerabilities across the stack by writing pull requests in application repositories and Terraform.
  • Build and tune SIEM detections, mapping coverage to MITRE ATT&CK and reducing false positives.
  • Lead incident response, harden AWS estate, and automate security workflows with code.

Cloudbeds is a hospitality management platform powering hotels across 150 countries, processing billions in bookings annually. The company is a remote-first team of 650+ across 40+ countries, recognized for innovation and an inclusive culture.

$120,000–$155,000/yr
US Unlimited PTO

  • Deploy and automate CI/CD pipelines and establish IaC using modern DevSecOps techniques including serverless and Zero Trust patterns.
  • Own the POAM process end to end, develop plans of action with target dates, track progress, and close findings proactively.
  • Conduct Security Impact Analyses (SIAs) to achieve and maintain ATO, and maintain a live dashboard for all security findings.

Oddball brings quality software to the federal space, aiming to improve the daily lives of millions. It is a small company that values learning, growth, and making a big impact.

US

  • Design, build, and optimize secure CI/CD pipelines within GitLab, enforcing DevSecOps principles through automated vulnerability scanning and compliance gates.
  • Manage and scale AWS infrastructure, optimizing workloads on EKS, EC2, S3, and RDS.
  • Establish comprehensive monitoring, logging, and alerting systems across EKS and EC2 nodes to ensure maximum uptime.

LMI is a digital solutions provider that accelerates government impact with innovation and speed, offering commercial-grade platforms and mission-ready AI to federal agencies. Headquartered in Tysons, Virginia, the company serves defense, space, healthcare, and energy sectors, focusing on agility and collaboration.

$120,000–$150,000/yr
US

  • Protect cloud infrastructure, applications, and customer data across a modern technology environment.
  • Identify and remediate vulnerabilities directly in application repositories and infrastructure code.
  • Build and tune SIEM detections, strengthen AWS security controls, and lead incident response.

Cloudbeds is a hospitality technology company providing cloud-based management solutions for lodging businesses. It operates as a remote-first organization with a globally distributed team across 40+ countries and a small, senior security team.

$100,000–$166,000/yr
US

  • Design, build, and maintain CI/CD pipelines for secure application delivery.
  • Automate infrastructure provisioning and deploy cloud services using AWS and Terraform.
  • Integrate security controls and enforce cybersecurity standards in development and deployment.

LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed. Headquartered in Tysons, Virginia, LMI serves the defense, space, healthcare, and energy sectors, helping agencies navigate complexity.

$115,000–$140,000/yr
US

  • Perform systems administration, patching, vulnerability scanning, and remediation for AWS and GCP cloud workloads.
  • Configure and maintain security tools for endpoint protection, log collection, vulnerability scanning, and compliance monitoring.
  • Support 24x7 on-call rotation and collaborate with security analysts to deliver secure solutions for FedRAMP and FISMA customers.

Quantum Sky is a technology company that engineers solutions for cyber, networks, software, and quantum for mission-driven clients. They foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role.

US

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies.
  • Build automation, policy-as-code, and security tooling that enables development teams to 'shift left' and integrate end-to-end security into their workflows.
  • Drive vulnerability management and remediation efforts, prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production.

Wiz is redefining security for the AI era, enabling teams to secure cloud and AI applications by connecting code, cloud, and runtime into a single shared context. As one of the fastest-growing startups ever, we are trusted by over 65% of the Fortune 100 and scan over 230 billion files daily, with a culture that values world-class talent and is now powered by Google.

$154,000–$207,000/yr
US 3w PTO

  • Design and implement cybersecurity controls for satellite software, ground systems, and mission infrastructure.
  • Develop secure software practices including threat modeling, code reviews, and vulnerability management.
  • Monitor networks for cyber threats, lead incident response, and support compliance with NIST 800-171 and CMMC.

Muon Space is an end-to-end Space Systems Provider that designs, builds, and operates LEO satellite constellations delivering mission-critical data. Founded in 2021, the company is based in Silicon Valley and offers a comprehensive benefits package including equity, medical, dental, vision, 401k, paid vacation, and parental leave.

$135,000–$155,000/yr
US

  • Establish and enforce a unified security posture across GCP and OCI, including guardrails, IAM policies, and centralized monitoring.
  • Validate cloud deployments meet FedRAMP High, FISMA, and NIST 800-53 requirements, working with governance and audit teams.
  • Identify vulnerabilities, policy deviations, and architectural risks, and drive remediation.

Latitude is a growing Service-Disabled Veteran Owned company within the Federal Sector, working with various federal clients across multiple agencies. They foster a remote work-from-home culture, invest in employee growth, and strive for innovation to break through technology and government barriers.

$110,095–$156,603/yr
US

  • Design and oversee cloud computing strategy, including adoption plans, application architecture, and system management.
  • Lead cloud implementation projects on IaaS and PaaS, collaborating with Cloud Service Providers like CloudOne and DAF CloudWorks.
  • Optimize cloud performance, enforce security compliance, and serve as a customer liaison for technical requirements.

Defense technology platform delivering high-impact technologies, technology-enabled services, and advanced manufacturing to U.S. national security customers. Backed by Falfurrias Management Partners, it combines deep domain expertise across military programs into a scalable aerospace and defense enterprise.

$120,000–$135,000/yr
US

  • Implement and validate OCI security posture across IAM policies, network security groups, data encryption, and monitoring.
  • Design, build, and automate OCI-native security controls including Cloud Guard, Security Zones, and Security Advisor.
  • Integrate OCI logs into SIEM and build key management for encryption at rest.

Latitude is a growing Service-Disabled Veteran Owned (SDVOSB) Company serving federal clients across multiple agencies. They foster a remote work-from-home culture and invest in employee growth, focusing on innovation and automation.

Europe

  • Own cloud and product security across AWS and GCP, setting baselines for IAM, networking, data protection, and workload configuration.
  • Partner with platform, SRE, and product teams to embed practical security controls into developer workflows and automate guardrails in delivery pipelines.
  • Perform security architecture reviews, threat modeling, and incident response, and drive systemic improvements with meaningful security metrics.

We create intelligent software development tools used by more than 15 million users and 300,000 companies, including 88 of the Fortune Global Top 100. Our mission is to make development teams more productive and AI adoptable at scale, and we foster an open and inclusive workplace.

Latin America

  • Design and maintain AWS infrastructure using Terraform and ECS/Fargate, ensuring high availability and security.
  • Implement and manage CI/CD pipelines with automated deployment and rollback processes.
  • Collaborate with teams for monitoring, incident response, and security compliance.

Bluelight is a leading software consultancy that designs and develops innovative technology to enhance users' lives. The company is expanding across the United States and Central/South America, fostering a collaborative and enriching work environment where team members can grow and thrive.

United States

  • Design and build security for future infrastructure, partnering with engineering and compliance teams.
  • Lead AI-native security initiatives, designing autonomous agents for threat detection and incident response.
  • Devise defense-in-depth frameworks, research threats, and maintain KPIs for a healthy cloud security program.

WeightWatchers is a global digital health company that blends science and community to help millions build sustainable healthy habits. The engineering team drives transformative change through technology, with a culture that thrives on urgency, collaboration, and passion for impactful work.