Senior Security Engineer Ii, Cloud Security

Weights & Biases Weights & Biases · Data AI · Bellevue, WA +4 · Technology

This role focuses on designing, implementing, and maintaining secure cloud environments, with a strong emphasis on automation and infrastructure-as-code. It involves defining security baselines, enforcing policies, and collaborating with cross-functional teams. The role requires deep expertise in public cloud security principles and best practices.

What you'd actually do

  1. Design, implement, and maintain scalable and robust security solutions for public cloud environments, utilizing guardrails, policies, and industry-leading practices
  2. Define and maintain comprehensive security baseline requirements, policies, and standards for public cloud platforms (e.g., AWS, Azure, GCP)
  3. Lead the design, implementation, and automation of security controls in public cloud environments, including primitives such as IAM, detection and monitoring, configuration management, and data protection
  4. Utilize everything-as-code tools such as Terraform, to automate as much toil as possible
  5. Collaborate effectively with cross-functional teams, such as Product Engineering, and internal security teams

Skills

Required

  • 5+ years of progressive experience in cloud security architecture and engineering
  • Deep and demonstrable understanding of public cloud platforms (e.g., GCP, AWS, Azure)
  • Proven experience in designing, implementing, and automating security controls in cloud environments across the entire stack
  • Proficient in Go and/or Python
  • Familiarity with modern CI/CD practices and Infrastructure-as-Code tooling, especially Terraform

Nice to have

  • Open-source contributions in the public cloud security space
  • Experience with operationalizing CSPM tooling (like Wiz)
  • Strong understanding of threat modeling and secure design principles
  • Strong knowledge and experience with modern container orchestration technologies

What the JD emphasized

  • deep expertise in public cloud security principles
  • deep expertise
  • everything-as-code
  • automation