Peloton Interactive, Inc. seeks a Staff Cloud Security Engineer in New York City, NY. This role involves driving organization-wide cloud security strategy by partnering with product and platform engineering teams to deliver mission-critical initiatives protecting end-user data. The engineer will serve as the primary escalation point for complex cloud security risks, architectural decisions, and high-risk findings, ensuring timely and effective remediation. Responsibilities include architecting, implementing, and enforcing cloud security controls across the full SDLC, defining and evolving standards, reference architectures, and guardrails covering identity and access management, network segmentation, encryption, logging, and secrets management. The role also entails leading secure cloud migration and modernization efforts, operationalizing multi-cloud hardening in AWS (Security Reference Architecture, Guard Duty, AWS Organizations, KMS CMK lifecycle) and GCP (Workload Identity Federation, VPC Service Controls), and ensuring the security posture of Kubernetes/EKS clusters through Pod Security Standards, fine-grained RBAC with OIDC short-lived tokens, default-deny Network Policies, and Service Mesh enforcement (Istio). Additionally, the engineer will implement real-time runtime defense using eBPF-based monitoring of syscalls, processes, and network connections at the kernel level. The position requires driving continuous monitoring, threat detection, incident response, and forensic investigations. The Staff Cloud Security Engineer will also serve as a technical mentor and thought leader, influencing the long-term cloud security roadmap while balancing security, reliability, developer experience, and operational scalability. Part-time telecommuting is an option, with a hybrid work arrangement from the Peloton office in New York, NY.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior