Senior Cloud Security Engineer

Zions BancorporationMidvale, UT
Hybrid

About The Position

Zions Bancorporation is seeking a Senior Cloud Security Engineer to drive the organization's cloud security strategy, governance, and operational excellence across SaaS, IaaS, and PaaS environments. This role involves partnering with various teams to enhance cloud security posture, eliminate Shadow IT, and increase visibility into cloud usage and risk. The engineer will lead the administration and optimization of Broadcom CloudSOC (Symantec CASB) and Palo Alto Prisma Cloud CSPM, providing insights, risk assessments, and reporting. As a subject matter expert, this individual will contribute to strategic roadmap development, security recommendations, and automation opportunities. The role also involves providing expert guidance and consultation for cloud initiatives across the enterprise. The ideal candidate is collaborative, proactive, and experienced in securing cloud ecosystems while balancing risk reduction and business enablement. This role participates in an on-call rotation and requires limited travel.

Requirements

  • 8-10+ years of cybersecurity experience, including 3-5+ years focused on cloud security engineering, cloud governance, CASB, CSPM, or SaaS security.
  • Hands-on experience administering and supporting Broadcom CloudSOC (Symantec CASB).
  • Hands-on experience utilizing Palo Alto Prisma Cloud CSPM to assess cloud posture, identify misconfigurations, evaluate risk, and drive remediation activities.
  • Strong knowledge of AWS and Azure cloud platforms, cloud-native security services, and cloud governance best practices.
  • Experience partnering directly with application owners and business stakeholders to improve visibility, reduce Shadow IT, and strengthen cloud security controls.
  • Experience building strategic roadmaps, security metrics, executive reporting, and continuous improvement initiatives.
  • Strong understanding of Identity and Access Management (IAM), Zero Trust principles, cloud governance, compliance frameworks, and risk management practices.
  • Excellent written and verbal communication skills, including the ability to present technical risks and recommendations to leadership and non-technical stakeholders.
  • Demonstrated ability to influence decisions and drive security outcomes through collaboration and subject matter expertise rather than direct authority.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.

Nice To Haves

  • Experience discovering, governing, and securing SaaS applications, including Shadow IT analysis, application risk assessments, tenant governance, and cloud usage analytics.
  • Experience integrating CASB, CSPM, IAM, SIEM, DLP, and cloud-native security controls to provide end-to-end visibility and risk management.
  • Experience with cloud security automation, workflow orchestration, and API-driven security improvements.
  • Knowledge of data protection technologies, DLP, data classification, encryption, and secure data handling practices.
  • Relevant certifications such as CISSP, CCSP, CCSK, AWS Security Specialty, Azure Security Engineer Associate, Palo Alto Prisma Cloud certifications, or equivalent.

Responsibilities

  • Lead the administration, configuration, and optimization of Broadcom CloudSOC (Symantec CASB) and Palo Alto Prisma Cloud CSPM to improve visibility, governance, compliance, and risk reduction across cloud environments.
  • Partner with application owners and business stakeholders to discover, assess, and eliminate Shadow IT while enabling the secure adoption of approved cloud services and SaaS applications.
  • Collaborate closely with IAM teams to strengthen identity governance, authentication, authorization, privileged access controls, and Zero Trust initiatives across cloud platforms.
  • Serve as the cloud security subject matter expert (SME), providing guidance, recommendations, best practices, and risk-based consultation to application teams, engineering teams, and project stakeholders.
  • Develop and maintain cloud security dashboards, KPIs, KRIs, and executive reporting to communicate cloud risks, security trends, posture improvements, and remediation progress.
  • Drive proactive roadmap planning and continuous improvement initiatives for CASB, CSPM, SaaS security, and cloud governance capabilities.
  • Assess SaaS, IaaS, and PaaS environments against organizational standards, regulatory requirements, and industry security frameworks, providing actionable remediation guidance.
  • Evaluate emerging cloud technologies, SaaS platforms, and security capabilities, identifying risks and recommending controls that support secure business adoption and innovation.
  • Partner with Security Operations, Infrastructure, IAM, Architecture, and Application teams to investigate cloud security findings, remediate risks, and support incident response activities.
  • Participate in an on-call rotation and provide advanced technical support for critical cloud security events, platform issues, and operational escalations.

Benefits

  • Medical, Dental and Vision Insurance - START DAY ONE!
  • Life and Disability Insurance, Paid Parental Leave and Adoption Assistance
  • Health Savings (HSA), Flexible Spending (FSA) and dependent care accounts
  • Paid Training, Paid Time Off (PTO) and 11 Paid Federal Holidays
  • 401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience
  • Mental health benefits including coaching and therapy sessions
  • Tuition Reimbursement for qualifying employees
  • Employee Ambassador preferred banking products
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service