Principal Cloud Security Engineer securing LastPass’s browser-based access platform. Defining cloud security architecture and reducing risk across AWS and Kubernetes workloads.
Responsibilities
Partner with DevOps, CI/CD engineers, Cloud Architects, and cross-functional engineering teams to embed security best practices across cloud infrastructure
Define and drive cloud security principles, standards, and reference architectures across the organization
Help engineers build and securely operate products and services from the ground up
Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements
Perform proactive research to identify new threats and attack vectors
Embed shift-left security practices throughout the software development lifecycle
Implement and manage cloud and Kubernetes security posture management tooling to continuously monitor and reduce risk across containerized workloads
Collaborate with Trust & Security and Platform teams to drive secure-by-design outcomes
Requirements
Proven experience working with AWS and AWS security services in a secure production environment, including IAM, Config, KMS, Secrets Manager, CloudWatch, CloudTrail, and GuardDuty
Proven experience working closely with engineering teams and supporting them on their path to shifting security left
Background with infrastructure as code (AWS CDK, CloudFormation, or Terraform), version control, and CI tools such as GitLab and GitLab CI
Hands-on experience with Kubernetes (AWS EKS), containers (Docker, AWS ECS), K8s admission controllers, and Supply Chain Security
Solid understanding of internet and computer network protocols, including TCP/IP, TLS, and VPN
Good written and verbal communication skills in English
Collaborative team player with a hands-on, can-do approach to problem solving
Benefits
Remote-first culture
Competitive compensation
Flexible Paid Time Off policies, including Quarterly Self-Care Days (4 extra paid days off annually) and Volunteer Days
Parental leave
Comprehensive health coverage, including dependents
Home office setup support
LastPass Families free account for up to 5 members
Continuous learning and development opportunities, including an annual learning stipend
Peer-to-peer recognition through Motivosity
Employee Assistance Program for well-being support
Remote work stipend
Short-Term or Remote-Centric Work Arrangements for added flexibility
Head of Information Security leading OpenZeppelin’s enterprise security, privacy, IT, and AI governance programs. Securing open - source infrastructure used across onchain finance and digital assets.
Red Team Security Engineer evaluating Motive's fleet - management platform and cloud environments. Executing adversary simulations, validating detection coverage, and driving remediation of security issues.
Information Systems Security Manager securing RideCo’s cloud - based on - demand transit platform. Leading compliance, risk management, incident response, and security operations.
Senior Security Specialist securing RBC’s cloud banking environments across AWS, Azure, and Google Cloud. Executing red/purple team exercises and refining offensive security tooling.
Senior Security Specialist operating BloodHound Enterprise for RBC, a Canadian bank. Mapping identity attack paths and prioritizing remediation across cloud, AD, DevOps, and PAM environments.
Staff Security Researcher conducting vulnerability research and penetration testing for GitLab’s AI - powered DevSecOps platform. Developing attack methodologies, tooling, and security improvements.
Principal Security Researcher securing GitLab’s AI - powered DevSecOps platform. Leading vulnerability research, AI attack analysis, penetration testing, and remediation across GitLab’s codebase.
Senior security advisor strengthening Desjardins's security posture across governance, data protection, and fraud prevention. Leading complex strategic initiatives for the Desjardins financial services organization.