Principal Cloud Security Engineer

Posted 2 days ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Principal Cloud Security Engineer securing Pax8’s cloud marketplace, infrastructure, and AI-enabled platforms. Establishing cloud, Kubernetes, identity, and software-delivery security standards across USA and Canada.

Responsibilities

  • Create and evolve security baselines for cloud infrastructure, container platforms, platform tooling, and third-party services
  • Define least-privilege approaches across cloud identities, service accounts, platform access models, and containerized workloads
  • Lead security governance across build and deployment platforms
  • Evaluate network segmentation, cloud connectivity, workload isolation, and platform architecture decisions
  • Create security posture reporting and translate technical findings into business context
  • Develop reference architectures, engineering standards, and decision records
  • Partner with DevOps, Site Reliability Engineering, and Platform Engineering teams
  • Embed security expertise into architecture reviews, operational planning, and strategic initiatives
  • Shape platform security practices across Pax8’s cloud marketplace

Requirements

  • Extensive experience securing modern cloud and infrastructure platforms
  • Deep practical expertise across Amazon Web Services services including identity, networking, encryption, logging, secrets management, containers, and data services
  • Demonstrated success creating security standards, architectural guidance, and governance frameworks
  • Proven ability to influence technical decisions without reporting-line authority
  • Advanced knowledge of Kubernetes security, workload isolation, access controls, network controls, and container governance
  • Strong understanding of software delivery security, platform automation, and modern deployment pipelines
  • Hands-on experience reviewing infrastructure as code and embedding security controls into engineering workflows
  • Experience assessing SaaS and platform technologies through threat modelling and security architecture reviews
  • Familiarity with cloud security posture management and platform governance tooling
  • Knowledge of security considerations for emerging AI and agent-based workloads
  • Experience operating within multi-tenant environments where scale, availability, and data isolation are critical
  • Ability to balance pragmatism and risk management while advising engineering teams
  • Must hold valid right to work in USA or Canada
  • Successful candidates must complete pre-employment checks, including ID verification, references, and qualification checks

Benefits

  • 401(k) with Company Match
  • Medical, Dental & Vision Coverage
  • Employee Assistance Program (EAP)
  • Employer-Paid Life, AD&D, Short-Term Disability & Long-Term Disability Insurance
  • Flexible Open PTO
  • Paid Sick Leave
  • Paid Parental Leave
  • RTD EcoPass (eligible Colorado-based employees)
  • Internal development hub
  • Learning & Development trainers
  • AI powered tools
  • Mentors
  • Cross continent collaboration
  • Career growth opportunities

Job type

Full Time

Experience level

Lead

Salary

$170,000 - $193,000 per year

Degree requirement

No Education Requirement

Tech skills

AWSCloudKubernetes

Location requirements

RemoteUnited States

Report this job

Found something wrong with the page? Please let us know by submitting a report below.