Cloud Security Engineer

Tulip Interfaces•Somerville, MA
•$110,000 - $150,000•Hybrid

About The Position

Tulip, a leader in AI-native frontline operations, is seeking a hands-on Security Engineer to join their Security team. This role will partner closely with Infrastructure and Product Engineering teams, acting as a subject matter expert across various security domains. The engineer will be responsible for improving and expanding cloud security, detection, and vulnerability management to ensure the safety of the platform and its customers. The primary focus will be on AWS, with an emphasis on building and automating security controls as code (Terraform, Lambda/Python) and maturing the overall security posture of the environment. Tulip is a cloud-native, no-code platform company, a spinoff from MIT, headquartered in Somerville, MA, with a global presence. The company has received several accolades, including being recognized as a World Economic Forum Global Innovator and a Deloitte Technology Fast award winner.

Requirements

  • 5+ years of experience in security engineering, with hands-on ownership of cloud security work
  • Deep, hands-on experience securing AWS and/or Azure environments, including containerized and Kubernetes (EKS/AKS) workloads
  • Building and managing security controls as code with Terraform and Python, or similar
  • Authoring and tuning detections and SIEM rules, and running vulnerability and container-image scanning in CI
  • Working knowledge of a compliance framework such as FedRAMP, ISO 27001, or SOC 2, and the evidence practices behind it
  • Bachelor's degree in a technical field, or equivalent working experience

Nice To Haves

  • incident response or forensics experience
  • threat modeling of new services
  • running internal security exercises

Responsibilities

  • Design, build, and maintain security controls as code across our cloud environments, including posture hardening and account-level guardrails
  • Own vulnerability management end-to-end — triage findings across environments, prioritize to control noise, and drive remediation to closure
  • Own the recurring alert-review workflow: tune detections, cut false positives, and improve coverage over time
  • Build and maintain log-ingestion and SIEM pipelines, and participate in incident response
  • Partner with engineers and product managers on architecture, authentication, and application security reviews, including code review and automated testing
  • Support our FedRAMP program and other compliance efforts — documentation upkeep, alert monitoring, evidence collection, running training exercises, and customer security questionnaires

Benefits

  • Company equity
  • Competitive benefits package including Health, Dental, Vision, Short-term Disability, Long-term Disability, Life Insurance, AD&D Insurance, Flexible Spending Account (FSA), Commuter Benefits, Parental Leave, and 401(K)
  • Flexible work schedule
  • Unlimited vacation policy
  • Learning & Development program
  • Virtual company events and happy hours
  • Fitness subsidies
  • An inclusive, dog-friendly office
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service