← Back to results

cloud-vulnerability-management jobs in San Diego

Posted 28 days ago

This Security Engineer role owns continuous cloud security posture management (CSPM) and vulnerability management across AWS accounts, detecting misconfigurations and driving remediation at scale. The person will build reusable Terraform modules, Service Control Policies, and policy-as-code guardrails to make secure-by-default infrastructure; design least-privilege IAM; govern secrets and encryption; and build cloud-native detections (CloudTrail, GuardDuty, Config, Security Hub) with automated remediation.… They'll map technical controls to compliance frameworks (CMMC, NIST SP 800-171, FedRAMP), support the SOC team investigating cloud incidents, and feed findings back into new guardrails. The role requires 3+ years of hands-on cloud security or DevSecOps experience, strong AWS expertise, Terraform and policy-as-code proficiency, and the ability to obtain a U.S. security clearance.

San DiegoLast seen 26 days ago