The Cloud Security Engineer II is responsible for supporting and maintaining the organization’s Cloud Security Standard across all cloud service providers, ensuring consistent implementation, operational effectiveness, and lifecycle management. This role sits within the Security Architecture and Engineering organization and focuses on strengthening cloud security posture through standards governance, logging and monitoring integration, and hands-on management of Cloud Security Posture Management (CSPM) capabilities. The role requires practical experience working across AWS, Azure, and GCP environments, with a strong emphasis on ensuring cloud-native and third-party logging is consistently integrated into centralized log management and SIEM platforms to support security monitoring, detection, and incident response. The key responsibilities of this role are as described below: Cloud Security Standards & Governance Supporting the Cloud Security Architect, maintain and support the Cloud Security Standard across all iterations and lifecycle phases, ensuring it remains current, actionable, and aligned with: Cloud provider capabilities (AWS, Azure, GCP) Organizational security requirements Industry best practices and threat landscape changes Partner with other teams to ensure standards are: Technically feasible Consistently implemented Clearly documented and communicated Support reviews and updates to the standard as cloud services, architectures, and risks evolve. Cloud Logging, Monitoring & SIEM Integration Ensure cloud logging is consistently enabled, configured, and maintained across AWS, Azure, and GCP environments. Work with Security Operations and Platform teams to ensure logs are: Reliably ingested into centralized log management and SIEM platforms Structured and normalized to support detection, investigation, and audit needs Validate coverage for critical log sources, including: Identity and access activity Network and perimeter events Resource configuration and management activity Support troubleshooting of log gaps, ingestion failures, and data quality issues. Cloud Security Posture Management (CSPM) Operate and maintain CSPM capabilities across AWS, Azure, and GCP environments. Monitor CSPM findings to identify: Misconfigurations Policy violations Security control gaps Partner with engineering teams to drive remediation of CSPM findings, ensuring: Clear ownership Risk-based prioritization Sustainable fixes Support tuning of CSPM policies and rules to reduce noise and improve signal quality. Collaborate with the Risk Operations team to ensure CSPM findings that are not automatically remediated are tracked as Risk Issues. Security Operations & Risk Enablement Collaborate with Cyber Defense, Incident Response, and the Integrated Risk Management team to ensure cloud security controls support operational and risk objectives. Provide input into cloud-related risk assessments, audits, and security reviews. Assist with security investigations and incident response activities involving cloud environments.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level