ServiceTitan
Senior Cloud Security Engineer
Remote Cloud Security role with clear candidate location fit.
PostedJun 19, 2026
Eligible countries1 accepted country
Seniority signalSenior
Work settingRemote
Accepted candidate locations
USA
Role overview
Senior Cloud Security Engineer
Requirements and responsibilities
Readable role content extracted into sections for faster review.
DevSecOps and Automation
- Pipeline Integration: Integrate robust security controls directly into CI/CD platforms such as GitHub, GitLab, Jenkins, or Azure DevOps.
- Automated Scanning: Evaluate and implement pipeline-based security Infrastructure as Code (IaC) scanning. Manage and configure IaC scanning tools to surface true risk.
- Developer Feedback Loops: Build and optimize developer feedback loops and automated remediation workflows to ensure software is secure by default. Develop automated scripts using Python, Bash, or PowerShell to streamline security processes.
Identity and Access Management (IAM)
- Cloud Identity Controls: Build and maintain IAM security controls across cloud platforms, assessing policies to enforce the principle of least privilege.
- Non-Human Identity Management: Standardize management, security controls, and lifecycle expectations with regard to non-human identity.
- Secrets Management: Govern the secure use of cloud identities, Application Programming Interfaces (APIs), and secrets management.
Infrastructure Security and Hardening
- Cloud Posture: Develop and implement secure infrastructure baselines, vulnerability management processes, and hardening standards across AWS, Azure, or GCP environments.
- Infrastructure as Code (IaC): Validate security configurations and leverage IaC tools like Terraform, CloudFormation, or Bicep to ensure repeatable, auditable, and secure infrastructure provisioning.
- Network Security: Tackle high-impact infrastructure projects such as multi-cloud network isolation, secure multi-tenant use, and continuous remediation of discovered misconfigurations.
Workload Security
- Cloud-Native Architectures: Guide engineering teams on secure architecture design for cloud apps, microservices, serverless services, and PaaS workloads.
- Container Security: Advance container and Kubernetes security by implementing runtime controls, supply-chain security, and configuration assessments.
- AI & Emerging Tech: Secure in-house and public AI/ML systems against cyber threats, adversarial attacks, and unauthorized access, ensuring models and data pipelines are protected throughout the solution lifecycle.
Data Security and Privacy
- Data Protection: Ensure that sensitive cloud and AI data is properly encrypted, anonymized, and securely stored.
- Encryption Standards: Assess and implement strong encryption configurations, checkpoint encryption, and tokenization to protect data at rest and in transit.
- Compliance Alignment: Develop and enforce policies to align data security and privacy measures with industry regulations, ethical standards, and organizational governance requirements.
Monitoring, Detection, and Response
- Telemetry & Visibility: Partner with Security Operations to improve cloud application telemetry, logging, and observability. Help expand monitoring capabilities by onboarding log sources and building detection rules for cloud-based threats.
- Threat Detection: Monitor and analyze security events using SIEM, Cloud Security Posture Management (CSPM), and Cloud Workload Protection Platforms (CWPP).
- Incident Response: Support the triage, investigation, and forensic analysis of cloud-based application or pipeline security incidents, working collaboratively to contain and mitigate threats.
What You’ll Bring:
- Experience: 7-10+ years of hands-on experience in cloud security, application security, DevSecOps, or related engineering roles.
- Cloud Expertise: Deep hands-on experience with Azure and/or AWS security services, including the design and maintenance of multi-cloud application controls.
- Technical Skills: Proficiency in scripting (Python, Bash, PowerShell) to automate security tasks. Strong understanding of container security (Docker, Kubernetes) and IaC security (Terraform, ARM).
- Certifications: Industry certifications such as CCSP, CISSP, AWS Security Specialty, Azure Security Engineer, GCSA, or OSCP are highly preferred.
Why this role?
- Transformative Impact: You will have a proactive, "builder" mindset with a passion for improving processes and reducing risk, directly driving scalable solutions across our real-world infrastructure.
- Cross-Functional Collaboration: You will work closely with diverse engineering, DevOps, and product teams to ensure secure solution delivery, translating complex security concepts for both technical and non-technical stakeholders.
- Continuous Growth: Join a dynamic team where you will continuously adapt to evolving challenges, stay ahead of emerging cloud threats, and explore the secure integration of frontier AI workloads.
What We Offer:
- Flextime, recognition, and support for autonomous work: Flexible time off with ample learning and development opportunities to continue growing your career. We offer a comprehensive onboarding program, leadership training for Titans at all levels, and other programs and events. Great work is rewarded through Bonusly, peer-nominated awards, and more.
- Holistic health and wellness benefits: Company-paid medical, dental, and vision (with 100% employer paid options and 90% coverage for dependents), FSA and HSA, 401k match, and telehealth options including memberships to One Medical.
- Support for Titans at all stages of life: Parental leave and support, up to $20k in fertility services (i.e. IUI and IVF), surrogacy, and adoption reimbursement, on demand maternity support through Maven Maternity, free breast milk shipping through Maven Milk, pet insurance, legal advisory services, financial planning tools, and more.
Similar roles
Keep a backup shortlist.
AWS, Kubernetes 1 accepted country
Senior Backend Engineer (AdTech)Leap ToolsView role AWS, Kubernetes 1 accepted country
Senior Backend EngineerLeap ToolsView role CI/CD, Python 8 accepted countries
Application Security EngineerMorgan StanleyView role AWS, Azure 8 accepted countries
Senior DevOps EngineerFionetView role Stack
Use these tags to compare similar remote roles.
Location eligibility
Candidates should apply only when their profile country is listed here.
Your profileCountry not setSign in to check your country against this role.
Hiring flow
WithMira shows the role, then sends candidates to the company application.
1Check role fit, stack, and location eligibility in WithMira.
2Open the company application page from the tracked apply link.
3Save the role or subscribe for similar opportunities before leaving.