Cloud Security Engineer

Tulip Interfaces•Somerville, MA
•$110,000 - $150,000•Hybrid

About The Position

Tulip, a leader in AI-native frontline operations, is seeking a hands-on Security Engineer to join their Security team. This role will partner closely with Infrastructure and Product Engineering teams, acting as a subject matter expert across various security domains. The engineer will be responsible for improving and expanding cloud security, detection, and vulnerability management to ensure the safety of Tulip's platform and customers. The primary focus will be on AWS, with an emphasis on building and automating security controls as code (Terraform, Lambda/Python) and maturing the security posture of the environment. Tulip is a hybrid work environment, with employees expected in the office 3+ days per week in Somerville, MA. The company is a spinoff from MIT, with a global presence and numerous accolades, including being recognized as a World Economic Forum Global Innovator and a Deloitte Technology Fast award winner.

Requirements

  • 5+ years of experience in security engineering, with hands-on ownership of cloud security work
  • Deep, hands-on experience securing AWS and/or Azure environments, including containerized and Kubernetes (EKS/AKS) workloads
  • Building and managing security controls as code with Terraform and Python, or similar
  • Authoring and tuning detections and SIEM rules, and running vulnerability and container-image scanning in CI
  • Working knowledge of a compliance framework such as FedRAMP, ISO 27001, or SOC 2, and the evidence practices behind it

Nice To Haves

  • Incident response or forensics experience
  • Threat modeling of new services
  • Running internal security exercises

Responsibilities

  • Design, build, and maintain security controls as code across our cloud environments, including posture hardening and account-level guardrails
  • Own vulnerability management end-to-end — triage findings across environments, prioritize to control noise, and drive remediation to closure
  • Own the recurring alert-review workflow: tune detections, cut false positives, and improve coverage over time
  • Build and maintain log-ingestion and SIEM pipelines, and participate in incident response
  • Partner with engineers and product managers on architecture, authentication, and application security reviews, including code review and automated testing
  • Support our FedRAMP program and other compliance efforts — documentation upkeep, alert monitoring, evidence collection, running training exercises, and customer security questionnaires

Benefits

  • Direct impact on product and culture
  • Company equity
  • Competitive benefits package including Health, Dental, Vision, Short-term Disability, Long-term Disability, Life Insurance, AD&D Insurance, Flexible Spending Account (FSA), Commuter Benefits, Parental Leave, and 401(K)
  • Flexible work schedule and unlimited vacation policy
  • Learning & Development program
  • Virtual company events and happy hours
  • Fitness subsidies
  • An inclusive, dog-friendly office
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service