Principal Security Lead- Cloud
This position is no longer accepting applications(closed Aug 17, 2026).
This role is pivotal in shaping our cloud security strategy and safeguarding data privacy. As our Principal Security Engineer - Cloud, you will be a key leader in our cloud security journey, working closely with the Kubernetes security team. Your expertise in mTLS, RBAC, and zero-trust networking will be instrumental in designing and implementing secure cloud solutions. You will play a vital role in maintaining data privacy, ensuring GDPR compliance, and mentoring junior engineers to create a knowledge-sharing culture. Your leadership will be crucial in driving our cloud security vision and keeping our systems resilient and future-ready.
- Lead the design and implementation of secure cloud architectures, prioritizing data privacy and GDPR compliance.
- Collaborate with the Kubernetes team to enhance security primitives and strengthen cloud infrastructure.
- Implement and manage mTLS, RBAC, and zero-trust networking principles for robust and reliable security.
- Develop and maintain audit logging practices for operator-grade compliance, ensuring a proactive and responsive security posture.
- Conduct regular security assessments (red-team/ penetration-testing) and audits to identify and address potential risks and vulnerabilities/CVE proactively.
- Develop detailed threat models and defend security architecture
- Stay abreast of cloud security trends, drive innovation, and share insights with the team to foster continuous improvement.
- Mentor and guide junior engineers, providing technical expertise and creating a collaborative and inclusive work environment.
- Engage with cross-functional teams to align cloud security strategies with business objectives and ensure seamless integration.
- Document and communicate security best practices, ensuring consistency, clarity, and effectiveness across the organization.
- Foster a culture of continuous learning and knowledge sharing, promoting a proactive and collaborative security mindset.
- Extensive experience in cloud security engineering, with a proven track record of designing and implementing secure cloud solutions.
- In-depth understanding and practical expertise in mTLS, RBAC, and zero-trust networking principles, particularly in cloud environments.
- Proficiency in Kubernetes security primitives, including NetworkPolicy, PodSecurity, and OPA/Gatekeeper, is essential.
- Strong knowledge of data privacy regulations, especially GDPR, and the ability to implement prompt privacy measures and ensure compliance.
- Must be hands on with various public cloud technologies and managed services
- Must be familiar with on-prem equivalent technologies to cloud managed services
- Experience with audit logging and compliance practices for operator-grade environments, with a focus on maintaining robust security.
- Leadership skills to mentor, guide, and inspire a team, creating a collaborative, innovative, and inclusive work culture.
- Excellent communication and interpersonal skills for effective collaboration with cross-functional teams and stakeholders.
- Analytical mindset, problem-solving abilities, and a passion for staying updated with the latest security trends and best practices.
- Bachelor's degree in Computer Science, Information Security, or a related field; an advanced degree is highly preferred.
- A proactive and solution-oriented approach to security challenges, with a track record of successful security implementations.