Role in brief
Incode, a provider of identity solutions, is seeking a Senior Cloud Security Engineer II. This role involves designing and implementing cloud security controls across multi-cloud environments, focusing on detecting, preventing, and correcting vulnerabilities. Candidates with experience in public cloud security, Kubernetes, and scripting languages should apply to help build resilient and secure infrastructure.
About the role
This position focuses on enhancing cloud security across various environments, including multi-cloud, hybrid, and private cloud setups. The engineer will identify security challenges and work with different teams to apply solutions. A key part of the role involves building security controls to detect, prevent, and fix vulnerabilities, ensuring the company's infrastructure remains secure against threats.
The role requires architecting infrastructure to support the security team's objectives, with an emphasis on logging, identity, and access controls. This includes deploying and managing security tools for monitoring networks, endpoints, and cloud workloads. The engineer will also maintain and improve infrastructure using technologies like Terraform and Kubernetes, contributing to a reliable and efficient system.
Success in this role means ensuring security is integrated into the cloud infrastructure for applications and customer data. This involves making direct changes to production security infrastructure and platforms, such as configuring AWS security tools or Kubernetes. The engineer is also expected to help colleagues develop their security knowledge and reasoning, fostering a more secure environment overall.
The salary for this position ranges from $112,000 to $188,000 annually.
Skills that matter here
- AWS: This role requires experience with AWS security tools like GuardDuty, AWS Config, and CloudTrail to secure cloud infrastructure.
- Terraform: The engineer will use Terraform to build, maintain, and evolve reliable infrastructure through infrastructure as code.
- Kubernetes: A detailed understanding of Kubernetes components and cloud-native security is necessary, including building and securing clusters.
- Public Cloud: The role involves deploying and securing services on public cloud infrastructure, requiring a deep understanding of its intricacies.
- Programming languages: Fluency in one or more programming or scripting languages is required for building and customizing security tools.
- Cloud Security: The core responsibility is to architect and operationalize cloud security across multi-cloud environments.
Who this role suits
- A person who enjoys identifying security challenges and implementing hands-on solutions across complex cloud environments.
- Someone who is proficient in Linux and comfortable working with modern cloud technologies, including containers and serverless functions.
- An individual who can build, deploy, and customize security tools to address threats and reduce risk.
- A collaborative professional with strong communication skills, capable of guiding peers in security best practices.
From the employer
What You’ll Own & Drive
- Discover the top security challenges we face and partner with teams across the company to be hands-on in implementing your security recommendations.
- Build security controls that detect, prevent, and correct cloud vulnerabilities in our very complex, multi-cloud, hybrid and private cloud environment.
- Architect and design infrastructure to support the security team’s mission and ensure well-architected fundamentals (logging, identity and access controls, etc).
- Build, deploy, and manage production security tools and services to monitor networks, endpoints, and cloud workloads.
- Build, maintain and evolve a reliable and low-touch infrastructure using technologies such as Terraform, Kubernetes, and immutable images.
- Facilitate the security baked into our cloud infrastructure for our applications and customer data.
- Contribute changes to production security infrastructure and platforms (e.g., configure GuardDuty or AWS Config, Kubernetes, VPNs, Secrets Manager, etc).
- Help your peer engineers grow their own security reasoning and knowledge.
Your Background
- 5+ years experience deploying and securing services on public cloud infrastructure.
- Detailed understanding of cloud and network security.
- Detailed understanding of Kubernetes components and cloud-native security.
- Strong Linux expertise - you live and breathe Linux environments.
- Fluency in one or more programming or scripting languages.
- Experience building, deploying, and customizing security tools to address threats and lower risk: CSPM, vulnerability scanners, static analyzers, web application firewalls, IDS/IPS, endpoint security monitoring, etc.
- Knowledge of networking and web protocols (TCP/IP, HTTP, TLS, REST), and the ability to analyze traffic to find anomalies.
- Depth and experience in modern cloud technology components and deployment patterns - virtual machines, containers, Kubernetes (including building and securing clusters from scratch), serverless, and infrastructure as code.
- Depth and experience with at least one common cloud service provider: AWS, GCP, Azure.
- Understanding of security weaknesses, exploits, attacks and mitigations.
- Experience with most of the following: AWS security tools (GuardDuty, AWS Config, CloudTrail), Terraform, Kubernetes, Containers, Open Policy Agent, Secrets Management, SIEM.
- Excellent collaborative skills.
- Outstanding written and verbal communication.
Why Incode?
- Mission with Meaning - Shape how billions of people prove identity - safely, simply, and ethically.
- Rocket-Ship Growth - Join at an inflection point where your strategies will compound in value for years.
- Elite Team & Backing - Work a truly global with top engineers, designers, and investors who share your ambition to dominate a category.
- Ownership & Autonomy - Operate like a founder with the resources of a unicorn.
- Global Impact - Every program you launch will reverberate across industries and continents.
Benefits & Perks:
- Flexible Working Hours & Workplace.
- Open Vacation Policy.
Questions about this role
What is the remote work policy for this role?
This is a remote position with flexible working hours and workplace options.
What level of seniority is expected for this position?
This is a senior-level position, specifically a Senior Cloud Security Engineer II.
What are the key technical skills required for this role?
Key technical skills include AWS, Terraform, Kubernetes, public cloud security, programming/scripting languages, and Linux expertise.