About The Position

Engine is seeking a highly-skilled and motivated Staff Cloud Security Engineer to join our team. In this role, you will be a foundational member of Engine’s dedicated Cloud Security function, helping secure and scale our cloud environments across AWS and GCP. You will be responsible for hardening cloud infrastructure, reducing systemic cloud risk, improving visibility and response for cloud-originated threats, and partnering closely with infrastructure, platform, engineering, and security teams. This role requires deep technical cloud security expertise, strong architectural judgment, and the ability to influence security decisions across a fast-moving engineering organization. As Engine’s cloud footprint expands, including increased use of AWS, GCP, Terraform, and AI-enabled workloads, you will help ensure our cloud environments are secure, resilient, well-monitored, and built to scale.

Requirements

  • Deep hands-on experience securing modern cloud environments, especially AWS, with strong knowledge of cloud-native security controls, services, risks, and remediation patterns.
  • Experience with GCP security or the ability to quickly ramp in a multi-cloud environment spanning AWS and GCP.
  • Strong understanding of cloud IAM, privilege reduction, identity boundaries, service permissions, key management, and common access-control failure modes.
  • Ability to evaluate architecture decisions, identify systemic risk, and recommend scalable security patterns that balance risk reduction with engineering velocity.
  • Experience with cloud security platforms such as Orca, Wiz, Prisma Cloud, Lacework, or similar tools, including triage, prioritization, remediation tracking, and reduction of alert noise.
  • Hands-on experience reviewing and securing Terraform or other infrastructure-as-code configurations.
  • Experience investigating cloud security alerts and improving telemetry, logging, monitoring, and detection logic across cloud environments.
  • Proven ability to earn credibility with infrastructure, platform, and engineering teams through practical recommendations, clear communication, and strong technical depth.
  • Ability to assess complex, ambiguous cloud security issues, identify root causes, prioritize risk, and make sound decisions with incomplete information.
  • Experience building or improving cloud security standards, guardrails, operating rhythms, remediation processes, or security review practices.
  • Understanding of how AI workloads can expand cloud attack surface through sensitive data usage, elevated permissions, new integrations, and infrastructure complexity.
  • Familiarity with cloud security concepts as they relate to compliance frameworks such as SOC 2, PCI, or similar standards.

Responsibilities

  • Lead security hardening across AWS and GCP environments, including identity and access management, network segmentation, logging, monitoring, configuration hygiene, and secure cloud architecture patterns. You will help define standards that scale across teams and cloud platforms.
  • Own and mature Engine’s approach to identifying, prioritizing, and remediating cloud security risks. You will assess systemic risk, separate high-priority issues from low-value noise, and drive practical remediation in partnership with infrastructure and engineering teams.
  • Own the end-to-end lifecycle of Orca findings, including monitoring new alerts, triaging severity, identifying root cause, tracking remediation, and driving findings to closure with the appropriate technical owners.
  • Serve as a primary responder for cloud-specific security alerts. You will help improve detection quality, reduce response time, and ensure cloud-originated threats are investigated and addressed effectively.
  • Partner with teams using Terraform and related infrastructure-as-code workflows to review, improve, and harden cloud configurations before risk reaches production.
  • Help secure Engine’s expanding AI-related cloud footprint by identifying risks related to sensitive data, elevated IAM permissions, new service integrations, model/data access patterns, and infrastructure configurations.
  • Partner closely with infrastructure, platform, engineering, SecOps, and security leadership to move security work forward. You will adapt your messaging across audiences, build trust with technical teams, and influence decisions without relying on direct authority.
  • Collaborate with SecOps to improve cloud telemetry, cloud-specific detection logic, SIEM signal quality, and response workflows for threats such as credential abuse, lateral movement, misconfigured storage, and data exfiltration.
  • Build clear, actionable cloud security guidelines, guardrails, and best practices for engineering teams. You will help create the paved paths that allow Engine to move quickly while reducing cloud security risk.

Benefits

  • Competitive base pay tied to role and experience, with opportunities for bonuses, commissions, and equity.
  • Check out our full list at engine.com/culture.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service