Senior Security Engineer (AWS Cloud)
Summary
Enterprise Security Engineer securing BTSE's AWS cloud and on-premise infrastructure—managing IAM, vulnerability lifecycles, threat detection, hardening standards, and security automation across cloud and data center environments.
Responsibilities
- Proactively identify security gaps, risks, and inefficiencies across cloud and on-premise environments, and independently lead security initiatives and projects — from proposing solutions through execution — coordinating with stakeholders across Cloud, DevOps, and other functions
- Own and manage cloud-native security monitoring, threat detection, and posture management, with equivalent coverage extended to on-premise/data center environments
- Own and manage a centralized identity and access management platform, including permission structures, session policies, and organization-level policy guardrails, following least-privilege principles
- Design and enforce encryption policies for data at rest and in transit, and conduct periodic access reviews and recertification across cloud and on-premise resources
- Own the end-to-end vulnerability management lifecycle — scanning, identification, prioritization, remediation coordination, verification, and reporting — for both cloud and on-premise infrastructure
- Define and enforce server hardening standards and security baselines across cloud and on-premise environments, and secure containerized environments including image vulnerability scanning, runtime security, and network policies
- Develop and maintain automation scripts, tools, and frameworks to streamline security processes
- Participate in incident response activities, investigate security incidents, and conduct root cause analysis
Requirements:
- 5+ years of experience in cloud security, with working knowledge of on-premise/data center security
- Strong hands-on experience with AWS as your primary cloud platform
- Experience with infrastructure & cloud architecture, development, support, and troubleshooting
- Demonstrated ability to work independently with strong ownership — identifying problems, proposing solutions, and driving initiatives with minimal supervision
- Strong cross-functional collaboration skills, particularly with infrastructure, DevOps, and engineering teams
- Hands-on experience with identity and access management platforms, including access governance
- Experience with security posture management and assessment tools
- Understanding of compliance frameworks (ISO 27001, SOC 2, PCI-DSS)
- Solid understanding of server operating systems (Linux, Windows), including hardening, patching, and baseline implementation
- Strong analytical and problem-solving skills, with excellent cross-functional communication
Nice to haves:
- Experience with additional cloud platforms (Azure, GCP)
- Familiarity with container orchestration security (network policies, access controls, policy enforcement)
- Proficiency in scripting and automation languages
- Experience with secrets management solutions
- Knowledge of Zero Trust architecture and conditional access / risk-based authentication
- Familiarity with emerging technologies (e.g. web3/blockchain)
- Relevant security certifications (e.g. CISSP, CEH, cloud security certifications) or equivalent experience
Skills
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, Twitter URL, GitHub URL, Portfolio URL, Other website