Senior Cloud Security Engineer

ServiceTitan ServiceTitan · Enterprise · United States · Remote

This role focuses on securing cloud environments and applications, including integrating security into CI/CD pipelines, managing IAM, hardening infrastructure, securing cloud-native architectures, and protecting AI/ML systems. It involves automation, scripting, and ensuring data security and privacy.

What you'd actually do

  1. Integrate robust security controls directly into CI/CD platforms such as GitHub, GitLab, Jenkins, or Azure DevOps.
  2. Evaluate and implement pipeline-based security Infrastructure as Code (IaC) scanning. Manage and configure IaC scanning tools to surface true risk.
  3. Build and optimize developer feedback loops and automated remediation workflows to ensure software is secure by default. Develop automated scripts using Python, Bash, or PowerShell to streamline security processes.
  4. Build and maintain IAM security controls across cloud platforms, assessing policies to enforce the principle of least privilege.
  5. Secure in-house and public AI/ML systems against cyber threats, adversarial attacks, and unauthorized access, ensuring models and data pipelines are protected throughout the solution lifecycle.

Skills

Required

  • Cloud security
  • Application security
  • DevSecOps
  • CI/CD integration
  • IaC scanning
  • Scripting (Python, Bash, PowerShell)
  • IAM
  • Container security (Docker, Kubernetes)
  • IaC security (Terraform, ARM)
  • Network security
  • Data security
  • Encryption
  • SIEM
  • CSPM
  • CWPP

Nice to have

  • CCSP
  • CISSP
  • AWS Security Specialty
  • Azure Security Engineer
  • GCSA
  • OSCP

What the JD emphasized

  • 5+ years of hands-on experience in cloud security, application security, DevSecOps, or related engineering roles.
  • Deep hands-on experience with Azure and/or AWS security services, including the design and maintenance of multi-cloud application controls.
  • Proficiency in scripting (Python, Bash, PowerShell) to automate security tasks.
  • Strong understanding of container security (Docker, Kubernetes) and IaC security (Terraform, ARM).