Cloud Security Engineer

Stripe Stripe · Fintech · United States · 8614 Office of the CISO & Partnership

Stripe is seeking a Cloud Security Engineer to design, build, and operate core security infrastructure for their engineering teams. This role involves creating secure cloud platforms, implementing controls, and ensuring the privacy of user data. The engineer will collaborate with various teams, develop durable security solutions, and evaluate new security tools and practices. A key area of focus includes expanding cloud identity infrastructure to support AI and agentic access.

What you'd actually do

  1. Design, build, and operate the core security infrastructure used by all of Stripe’s engineering teams in close collaboration with other stakeholders and our users.
  2. Uphold our high engineering standards and bring consistency to the many codebases and processes you will encounter
  3. Contribute to team learning by improving engineering standards, tooling, and processes
  4. Design and build durable solutions that will advance Stripe’s security beyond the state of the art.
  5. Help expand Stripe’s cloud footprint on top of secure, paved roads and guardrails

Skills

Required

  • Software engineering experience in a high-stakes production environment
  • Experience with security on one or more of AWS, Azure, or GCP
  • Empathy, strong communication skills and a deep respect for the power of collaboration
  • A learning mindset, regardless of level or experience
  • The ability to drive clear next steps when encountering ambiguous spaces without clear lines of ownership
  • High standards for code quality and a constructive attitude to help others raise the bar
  • A knack for considering how systems can fail and how to fix them
  • An ability to think creatively and holistically about reducing risk in a complex environment

Nice to have

  • Experience conducting threat modeling of software or infrastructure in cloud native environments
  • Experience with Linux systems, Kubernetes, and/or container-based platforms
  • Prior usage of security monitoring tools (e.g., CSPM, CNAAP)
  • Experience in a multi-cloud, or complex, cloud environment

What the JD emphasized

  • security of Stripe’s engineering infrastructure
  • privacy of our users’ data
  • core security controls and services
  • security of Stripe’s engineering infrastructure
  • privacy of our users’ data
  • core security controls and services
  • security invariants
  • security principles
  • security controls
  • security Platform
  • security tools