远程工作雷达

云安全工程师

Cloud Security Engineer

开发工程限定地区(需当地身份)
公司Workstreet
薪资未公开
工作地点India
地域资格限定地区(需当地身份)
时区要求日间重叠约 6 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 India 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

关于Workstreet

在Workstreet,我们正踏上一段激动人心的旅程,通过设计和实施前沿的安全和合规方案,帮助企业在安全的前提下实现业务扩展。作为一家快速发展的初创公司,我们专注于广泛的GRC(治理、风险和合规)服务,支持SOC 2、ISO 27001、GDPR、CMMC、NIST 800-171、NIST 800-53和FedRAMP等框架。我们赋能企业从第一天起就满足监管要求并提升其网络安全态势。

了解安全服务团队

我们是将复杂的安全需求和合规框架转化为实际可行的基础设施和服务的团队。我们快速行动,真正承担端到端的责任,团队涵盖三个核心职能:云安全工程,我们设计加固的AWS、Azure和GCP环境,编写Terraform基线,并修复不符合框架(如SOC 2、ISO 27001、CMMC和FedRAMP)的控制项;渗透测试,我们在网络、应用、云和AI/LLM系统上进行有纪律的进攻性评估,以在攻击者之前发现漏洞;漏洞管理,我们持续优先处理、修补并验证客户范围内的风险降低。我们不会躲在流程后面或仅仅指出差距。我们会主动介入,构建解决方案,并在最小干扰的情况下交付真正的安全态势改进。

让这个团队特别的不仅是我们的技术深度,还有我们如何互相支持。我们最优秀的工程师和评估人员会构建可重用模块,编写自定义工具,跳入频道帮助同事解除障碍,并在无需被要求的情况下进行指导。从早期初创公司到受监管的企业,你将直接与客户合作,早期承担真实的责任,并被一群希望看到你成长的人所围绕。如果你喜欢解决复杂的安全问题,并希望成为一支既能快速行动又足够成熟以正确完成任务的团队的一员,那么你在这里会很合适。

机会介绍

我们正在寻找一位具备Oracle Cloud Infrastructure (OCI)经验(包括计算、网络、存储和IAM)的云安全工程师,帮助客户设计、实施和维护符合合规和安全要求的安全控制。该职位适合在云安全工程、合规框架和基于云的安全最佳实践方面有实战经验的专业人士。你将与客户紧密合作,

查看英文原文

About Workstreet

At Workstreet, we’re on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in a wide range of GRC (governance, risk, and compliance) services that support frameworks across SOC 2, ISO 27001, GDPR, CMMC, NIST 800-171, NIST 800-53, and FedRAMP. We empower companies to meet regulatory requirements and enhance their cybersecurity posture from day one.

Get to Know the Security Services Team

We are the team that turns complex security requirements and compliance frameworks into infrastructure and services that actually work. Moving fast and taking true end-to-end ownership, our team spans three core functions: Cloud Security Engineering, where we design hardened AWS, Azure, and GCP environments, write Terraform baselines, and fix failing controls to meet frameworks like SOC 2, ISO 27001, CMMC, and FedRAMP; Penetration Testing, where we run disciplined offensive assessments across networks, apps, cloud, and AI/LLM systems to catch vulnerabilities before adversaries do; and Vulnerability Management, where we continuously prioritize, patch, and validate risk reduction across the client footprint. We do not hide behind process or just point out gaps. We step in, build solutions, and deliver real security posture improvements with minimal disruption.

What makes this team special isn't just our technical depth; it is how we back each other up. Our strongest engineers and assessors are the ones building reusable modules, writing custom tools, jumping into channels to unblock teammates, and mentoring without being asked. From early-stage startups to regulated enterprises, you will work directly with clients, take on real ownership early, and be surrounded by people who want to see you get good. If you enjoy solving tough security problems and want to be part of a team that is scrappy enough to move fast but seasoned enough to get it right, you will be in good company here.

The Opportunity

We are seeking a Cloud Security Engineer with Oracle Cloud Infrastructure (OCI), including compute, networking, storage, and IAM experience, to help clients design, implement, and maintain security controls that meet compliance and security requirements. This role is ideal for professionals with hands-on experience in cloud security engineering, compliance frameworks, and cloud-based security best practices. You’ll work closely with clients and internal teams to strengthen their cloud security posture and automate security operations across AWS, GCP, and Azure environments.

What You'll Do

  • Deploy and maintain robust cloud security controls across AWS, GCP, Azure, and OCI to eliminate misconfigurations and preserve strict regulatory compliance alignment.
  • Execute deep-dive architectural risk assessments to surface cloud system vulnerabilities, evaluate asset exposures, and engineer targeted technical remediation blueprints.
  • Configure and manage enterprise security tool suites, including SIEM solutions, log analytics platforms, identity management layers, IDS/IPS tools, and vulnerability management engines.
  • Own the client relationship lifecycle as the primary trusted advisor for an assigned portfolio, establishing project milestones, managing communication pathways, and handling technical escalations with calm professionalism.
  • Programmatically enforce security controls by engineering automated, repeatable IaC deployment playbooks and security testing infrastructure.
  • Embed continuous security guardrails into CI/CD pipelines and containerized environments to intercept system vulnerabilities early in the software development lifecycle.
  • Investigate and contain cloud-related security incidents, rapidly executing forensic logic and remediation steps to restore system integrity and minimize blast radiuses.
  • Support continuous audit readiness within GRC platforms like Vanta by systematically gathering, testing, and validating cloud configuration evidence.

Who You Are

  • Proven multi-cloud security engineer - Command direct operational ownership securing distributed cloud infrastructure, with hands-on validation across AWS, GCP, Azure, and Oracle Cloud Infrastructure (OCI) environments.
  • Cloud security architecture expert - Mastered advanced identity and access management (IAM) strategies, cloud network zoning, payload encryption standards, and systemic risk mitigation workflows.
  • Advanced security automation developer - Highly proficient utilizing Infrastructure as Code (IaC) architectures, specifically building and deploying automated guardrails through Terraform, AWS CloudFormation, Python, and Bash.
  • GRC infrastructure strategist - Aligned technical, cloud-native configurations directly against global regulatory compliance and audit frameworks, including SOC 2, ISO 27001, GDPR, and HIPAA.
  • Surgical technical problem-solver - Apply rigorous analytical diagnostics to isolate cloud infrastructure vulnerabilities, resolve failing controls, and execute zero-disruption remediation.
  • High-impact client consultant - Confidently orchestrate multiple client portfolios concurrently, partnering directly with US-based technology founders, DevOps leads, and executive teams to scale cloud security maturity.
  • Elite technical communicator - Deliver flawless written and verbal English communication that effortlessly translates dense cloud vulnerabilities and risk vectors into actionable business value.

What will help you succeed

  • Deep data and monitoring tooling execution - Advanced manipulation of enterprise logging platforms, vulnerability management engines, threat hunting feeds, and network traffic analysers.
  • Validated cloud security credentials - Hold active technical certifications such as AWS Certified Security – Specialty, GCP Professional Cloud Security Engineer, CISSP, CISM, or CISA.
  • Container and DevSecOps engineering - Practical success auditing and isolating security boundaries within microservice architectures, Docker instances, and Kubernetes clusters.
  • Zero Trust deployment models - Direct execution of identity-centric security policies, network micro-segmentation, and context-aware access structures.
  • Commercial tenure in fast-growth environments - Documented history scaling infrastructure configurations within hyper-growth tech startups or elite managed security service providers (MSSP).

What We Offer

  • Career Development: Clear path with mentorship and training opportunities.
  • Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role.
  • Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
  • Growth Opportunity: Early-stage company with significant room for career advancement.
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.

What You'll Need to Thrive

  • Excellent written and verbal English communication skills, with the ability to engage confidently with candidates, hiring managers, and business leaders across global teams.
  • A reliable, high-speed internet connection and a professional home office environment that supports confidential conversations, virtual interviews, and uninterrupted collaboration.
  • Commitment to working a standard schedule of 8:00 AM–5:00 PM US Eastern Time (ET) to effectively support hiring managers, candidates, and cross-functional teams. Occasional flexibility to adjust working hours is expected to accommodate changing business priorities, global collaboration, and time-sensitive hiring needs.
  • Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities as needed.

Hiring and Selection Process

  • Candidates must participate in live video interviews throughout the hiring process with camera on (non-negotiable) and be prepared to verify their identity during recruitment and onboarding.
  • Employment is contingent upon successful completion of identity verification and background screening, where permitted by law.
  • Selected candidates will participate in structured interviews with hiring managers and cross-functional stakeholders to assess role fit, experience, and alignment with Workstreet’s operating principles.
  • Candidates will receive prompt updates and consistent communication throughout the interview process, ensuring a transparent, smooth, and engaging experience at every step.

Important Note for Applicants

Oracle Cloud Infrastructure (OCI) expertise is a mandatory requirement for this position. This is not a general cloud security role. Candidates must have substantial, hands-on experience securing and operating Oracle Cloud Infrastructure (OCI) in production environments. Experience limited to AWS, Azure, or GCP without significant OCI experience will not meet the requirements for this role.

Workstreet Is An Equal Opportunity Employer

As an equal opportunity employer, Workstreet is committed to providing employment opportunities to all individuals. All applicants for positions at Workstreet will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位