Colossus Technologies Group logo

Cloud Security Engineer

Colossus Technologies Group

RemotemidPosted 3h ago

Job description

Remote role, but targeting candidates in specific hubs. Atlanta, Austin, Boston, Chicago, Denver, NYC, San Francisco

We’re partnering with a leading cloud-first SaaS company looking to add a Cloud Security Engineer to its Security Engineering team. This is a hands-on individual contributor role focused on protecting a large-scale, cloud-native environment across AWS and GCP.

This is a great opportunity for a security engineer who enjoys being close to the technology—investigating security events, operating cloud security tooling, managing IAM, identifying vulnerabilities, and working directly with engineering teams to drive issues through remediation.

What You’ll Do:

  • Respond to and investigate security alerts and incidents using cloud logs, endpoint telemetry, and other security data.

  • Operate and tune security tools including EDR/CSPM, SIEM, cloud-native security services, and vulnerability scanners.

  • Review AWS and GCP environments for security risks and misconfigurations.

  • Manage and improve IAM and least-privilege access across cloud environments.

  • Triage security findings and distinguish meaningful threats from false positives and noise.

  • Run vulnerability scanning and prioritize findings based on actual business and technical risk.

  • Partner with Infrastructure, SRE, and Product Engineering teams to drive vulnerabilities through remediation.

  • Review cloud configurations, infrastructure changes, and technical designs for security concerns.

  • Use Python or similar scripting to automate repetitive security tasks and improve operational efficiency.

  • Help improve security playbooks, processes, tooling coverage, and preventative guardrails

What We’re Looking For:

  • Hands-on experience in Cloud Security, Security Engineering, DevSecOps, or Security Operations.

  • Strong experience securing AWS and/or GCP environments.

  • Experience with cloud IAM, permissions, roles, and least-privilege principles.

  • Hands-on experience with security tools such as CrowdStrike, Tenable, Prisma Cloud, Wiz, SIEM platforms, or similar technologies.

  • Experience investigating security alerts and working with cloud and endpoint telemetry.

  • Understanding of vulnerability management and experience driving remediation.

  • Ability to work effectively with Infrastructure, SRE, DevOps, and Software Engineering teams.

  • Python, Bash, or other scripting/automation experience is a plus.