About The Position

We’re looking for a hands-on Cloud Security Engineer to help design, implement and own the integration of security tooling across large-scale, multi-cloud environments. This role sits at the intersection of cloud engineering and security enablement. You’ll work deeply with public cloud platforms (AWS, GCP, Azure), Infrastructure as Code, and cloud security tooling to ensure security controls are implemented correctly, scaled consistently, and understood by the teams that rely on them. You’ll also act as a translator between security stakeholders and engineering teams, helping to interpret security findings, assess their real-world impact, and guide effective remediation without slowing down delivery. You will not be responsible for SOC operations or incident response, but you will play a critical role in ensuring security teams have accurate visibility and actionable context.

Requirements

  • Strong hands-on experience in at least one public cloud (AWS, GCP, or Azure)
  • Strong hands-on Terraform experience in public cloud environments, including writing and maintaining modules, managing environments, and reviewing infrastructure changes via PRs.
  • Solid understanding of cloud IAM concepts (roles, policies, least privilege, cross-account access)
  • Experience working with Git-based workflows and PR-driven change management
  • Comfort operating in CI/CD environments and reviewing infrastructure changes via PRs.
  • Working understanding of Kubernetes from a security and infrastructure perspective (e.g. cluster access, workload identity, network exposure, and visibility)
  • Working understanding of core security concepts: Risk vs threat vs vulnerability
  • Security posture and coverage gaps
  • Impact and prioritisation
  • Experience implementing or supporting cloud security tooling, such as: CSPM / CNAPP platforms (e.g. Wiz)
  • Cloud-native security services (e.g. GuardDuty, Security Hub, Defender)
  • Ability to articulate security findings clearly: What matters
  • What doesn’t
  • What needs action now vs later

Nice To Haves

  • Wiz certification, cloud security certifications (AWS/GCP/Azure Security).

Responsibilities

  • Implement and support cloud security tooling integrations across AWS, GCP, and Azure using Infrastructure as Code.
  • Configure permissions, integrations, and coverage for security platforms (e.g. Wiz)
  • Work closely with security stakeholders (CSOC, Threat & Vulnerability Management, central security teams) to: Interpret findings
  • Assess real-world risk
  • Prioritise remediation
  • Translate security concepts into clear, actionable guidance for engineering teams
  • Participate in infrastructure and application PR reviews as a security-minded cloud SME
  • Help standardise secure-by-default patterns that scale across hundreds of teams

Benefits

  • Health Benefits
  • Generous time away
  • Maternity and Paternity leave
  • Educational resources and reimbursements
  • 401(k) plan with a company contribution
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service