Cloud Security Engineer

Braze Braze · Enterprise · Sao Paulo, Brazil · Engineering

Cloud Security Engineer role focused on incident response, security reviews, operating security tooling (EDR, SIEM, vulnerability scanners), and vulnerability management within a cloud-native SaaS environment (AWS/GCP). Requires hands-on experience with security operations, cloud platforms, and scripting for automation.

What you'd actually do

  1. Respond to security alerts and events - triage, contain, and help investigate - with support from senior engineers on higher-severity incidents
  2. Review changes, designs, and cloud configurations for security issues, and give practical, specific feedback to the teams making them
  3. Run and tune our security tooling day to day - CrowdStrike (EDR/CSPM), SIEM, cloud-native security services, and vulnerability scanners such as Tenable
  4. Run vulnerability scanning across cloud assets, and triage and prioritize findings by real risk, not just severity score
  5. You can script in Python to automate small tasks — not just drive tools through their UI

Skills

Required

  • Incident response
  • Security reviews
  • IAM
  • Vulnerability management
  • Cloud security (AWS, GCP)
  • Python scripting
  • Security tooling (EDR, SIEM, vulnerability scanners)

Nice to have

  • GCP experience
  • Container/cloud-workload exposure

What the JD emphasized

  • operate tools with real judgment
  • drive vulnerabilities to remediation
  • reason about IAM policies and permissions
  • triage the alerts these tools produce
  • Drive remediation to closure
  • reason about the areas below from real experience
  • how you triage an alert
  • a real detection versus a false positive
  • how you reason about least privilege
  • how you prioritize findings
  • what you look for when reviewing a change, config, or access request
  • something small you scripted to cut out manual work
  • hands-on time operating security tooling
  • script in Python to automate small tasks
  • explain not just what a tool flagged, but why it matters