Celonis-posted 3 months ago
$161,000 - $218,000/Yr
Full-time • Senior
Hybrid • New York, NY
1,001-5,000 employees
Publishing Industries

We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us. The Team: Within our InfoSec organization, Our global security engineering team is responsible for designing, building, and enhancing the underlying security components that help with securing the Celonis Application and Platforms stacks. We think about both offensively and defensively. We continuously monitor our global security posture and are always adapting to the ever-changing threat landscape. The security engineering team is always looking for talented subject matter experts in application, platform and offensive security. The Role: The Senior Cloud Security Engineer is a hands-on technical role focused on safeguarding Celonis' cloud infrastructure across AWS, Azure, and GCP. In this role, you will design and implement cutting-edge security measures to protect a large-scale SaaS platform. You'll collaborate with cross-functional teams to ensure security is embedded in our cloud services and automate security processes for efficiency and consistency. This role is ideal for a seasoned security engineer who enjoys solving complex cloud security challenges and wants to have a direct impact on the security posture of a fast-growing tech company.

  • Implement and uphold cloud security best practices across multi-cloud environments.
  • Harden cloud infrastructure by leveraging native security features and ensuring proper configuration of network controls, encryption, and logging.
  • Secure Celonis' use of containerized applications and Kubernetes.
  • Develop and maintain automation scripts and Infrastructure-as-Code to embed security into the deployment pipeline.
  • Enhance cloud security monitoring by tuning and extending CSPM tools and cloud-native monitoring.
  • Continuously improve cloud IAM configurations to enforce least-privilege access.
  • Work with vulnerability scanning tools to regularly scan cloud assets and container images.
  • Serve as a security subject matter expert for cloud projects and collaborate with developers, DevOps, and SRE teams.
  • 5+ years of hands-on experience in security engineering with a strong focus on cloud (AWS, Azure, and GCP).
  • Strong experience securing containerized applications and Kubernetes clusters.
  • Proficiency in Infrastructure-as-Code and scripting.
  • Hands-on experience with Cloud Security Posture Management (CSPM) solutions.
  • In-depth understanding of cloud IAM and access control mechanisms.
  • Experience with vulnerability scanning tools and interpreting their output.
  • A track record of securing real cloud deployments and solving security incidents or challenges in production.
  • Experience with Teleport or similar identity-based access proxies.
  • Working knowledge of CI/CD pipelines and how to integrate security testing into them.
  • Prior experience in a SaaS or cloud-native product company.
  • Passion for staying up-to-date with the latest cloud security threats, tools, and best practices.
  • Excellent communication skills to articulate complex security issues.
  • Generous PTO
  • Hybrid working options
  • Company equity (RSUs)
  • Comprehensive benefits
  • Extensive parental leave
  • Dedicated volunteer days
  • Access to resources such as gym subsidies, counseling, and well-being programs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service