Search by job, company or skills

Senior Platform Security Engineer (Cloud)

Early Applicant
  • Posted 7 days ago
  • Be among the first 10 applicants

Job Description

About Skyhigh Security:

Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.

Since 2011, organizations have trusted us to provide them with a complete, market-leading security platform built on a modern cloud stack. Our industry-leading suite of products radically simplifies data security through easy-to-use, cloud-based, Zero Trust solutions that are managed in a single dashboard, powered by hundreds of employees across the world. With offices in Santa Clara, Aylesbury, Paderborn, Bengaluru, Sydney, Tokyo and more, our employees are the heart and soul of our company.

Senior Platform Security Engineer (Cloud) – Engineering Excellence

Skyhigh Security is hiring a Senior Platform Security Engineer to join our Engineering Excellence organization, reporting to the Senior Manager of Engineering Environments and Tooling. In this high-impact, hands-on engineering role, you will be the primary custodian of the security, integrity, and automated guardrails of our non-production cloud environments, ensuring our developer spaces are both highly enabling and thoroughly secure.

Rather than just reviewing GRC checklists or writing static policy documents, you will own the technical security standards for our platforms and build the automated validation frameworks that keep our engineering organization secure over the long term. Your impact will be measured by your ability to drive continuous, automated compliance, empower a distributed network of local security champions, and build robust, secure-by-default capabilities for our shared cloud resources.

You must have deep, hands-on expertise in cloud security architecture, infrastructure-as-code, and container security to lead this initiative. You will build highly collaborative relationships with Engineering Managers, Security Champions, and the Central CISO team to ensure that platform security controls are highly practical, transparent, and seamlessly integrated into the developer experience.

Responsibilities

  • Engineer Environment Security Standards: Author, maintain, and continuously update the technical platform security policies governing all non-production environments and developer labs.
  • Design Automated Validation Frameworks: Establish, run, and scale the technical auditing and drift-detection functions to ensure all engineering teams maintain compliance with security guardrails over months and years.
  • Lead Security Champions: Mobilize and align local security champions across engineering teams, guiding them as they design, own, and execute their local environment security plans.
  • Architect Shared Security Capabilities: Architect and build advanced, reusable security capabilities for shared resources, common labs, and core cloud environments, ensuring a secure baseline for the entire organization.
  • Continuous Improvement: Monitor emerging security threats and regulatory changes, proactively adapting non-production platforms and policies to address new risks.
  • Bridge Engineering and Security: Act as the primary technical liaison between the core engineering teams and the central security organization for environments, translating corporate mandates into pragmatic engineering practices.

Requirements

  • 5 to 8 years of industry experience
  • Proven Technical Leadership: Extensive hands-on experience in DevSecOps, cloud security engineering, or systems engineering with a strong focus on securing dynamic non-production infrastructure.
  • Platform Security Design: Demonstrated experience writing technical security standards and designing sustainable, automated configuration-auditing frameworks at scale.
  • Influence Without Authority: Exceptional stakeholder management skills, with a proven track record of guiding distributed engineering teams and motivating local security champions.
  • Advanced Security Architecture: Deep knowledge of threat modeling, network segmentation, secrets management, and access control strategies within test and lab environments.
  • Strategic & Methodical Thinking: Ability to balance developer velocity and flexibility in labs with rigorous, automated security requirements.

Tooling Requirements

Deep Core Expertise

  • AWS Cloud Security: Advanced knowledge of securing AWS environments, complex IAM policies, strict Security Group configurations, and secure-by-default VPC routing
  • Hybrid Security Boundaries: Experience establishing secure, key-only SSH Jumphosts, SSH tunnels, and managing secure client certificate structures
  • Software Supply Chain Security: Experience leveraging Artifactory to govern open-source dependencies, and Black Duck to enforce vulnerability checking.
  • Container Security & GitOps: Hands-on experience securing containers, image registries, and driving continuous delivery pipelines via ArgoCD, Harness, or Jenkins
  • Policy-as-Code & Compliance: Experience implementing compliance-checking tooling (e.g., Open Policy Agent (OPA), Kyverno, AWS Config, or custom auditing scripts).

Broad / Functional Competency

  • On-Premises Infrastructure Tools: Conceptual understanding of virtualization structures, Docker registries, on-premise Kubernetes clusters managed via Helm charts, and automated virtual machine configurations
  • Infrastructure-as-Code & Configuration: General ability to review and work within Terraform, Ansible, or Puppet configurations.
  • Secrets & Identity Management: Working familiarity with secrets vaults, Active Directory, or Okta.

If you're excited to design the policies and build the systems that safeguard modern cloud engineering environments at scale, we'd love to hear from you.

More Info

Job Type:
Industry:
Function:
Employment Type:

About Company

Job ID: 151779103

Beware of Scammers

We don’t charge money for job offers