Cloud Security Engineer responsible for architecting secure cloud application infrastructure at QTS. Drive strategic security initiatives across public, private, and hybrid cloud environments to support growth.
Responsibilities
Build and maintain secure, resilient cloud environments across public, private, and hybrid platforms.
Apply security best practices to new and existing cloud applications, ensuring compliance with QTS security and regulatory standards.
Partner with architects, IT teams, and system owners to guide secure application and infrastructure design.
Implement and support strong identity and access management controls, including MFA, hardware tokens, and other authentication methods.
Maintain consistent cloud configurations using tools like Puppet, Chef, or Ansible.
Work with SOC and incident response teams to investigate alerts, analyze threats, and respond quickly to cloud security events.
Create playbooks, documentation, and automated response workflows using AI and SOAR to improve speed and accuracy.
Develop and maintain scripts (Python, PowerShell, Ruby) to support secure data flow and security operations.
Review cloud environments regularly to identify risks and recommend security improvements.
Support remediation efforts following audits, assessments, and vulnerability reports.
Stay current on emerging security threats, tools, and best practices, applying them to strengthen QTS’ cloud posture.
Participate in project and implementation meetings as a security advisor.
Communicate risks and recommendations clearly to both technical and non-technical teams.
Work effectively with internal teams and external vendors to ensure cloud solutions remain secure.
Requirements
Bachelor's degree in computer science, information assurance, MIS or related field, or equivalent industry experience
At least 5-7+ years’ experience in cybersecurity as a practitioner and with at least 2-3+ years exposure with SaaS platforms (Box, Salesforce, ServiceNow, M365 etc), Amazon Web Services (AWS), Microsoft Azure or VMware.
Strong Linux and Windows support skills.
Experienced in cloud networking architecture and cloud operations, with cloud access security broker (CASB) experience preferred.
Familiarity with tools such as Git, Jenkins, Chef, Puppet and Salt.
Network and encryption experience, including virtual private networks (VPNs), IPsec, SSL/TLS, LDAP and public key infrastructure (PKI).
IDAM experience, such as OAuth, OpenID, Azure Active Directory.
Experience with scripting languages such as Python, Ruby, PowerShell or JavaScript.
Experienced in the use of threat intelligence services in a production environment.
Experience and understanding of various regulatory requirements and laws, including but not limited to: Payment Card Industry (PCI), Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA), General Data Protection Regulation (GDPR) and Gramm-Leach-Bliley Act (GLBA). Additionally, experience in one or more of the following: ISO 27001/2, ITIL or NIST.
Up-to-date understanding of a wide-range of incident response, system configuration, vulnerability management and hardening guidelines.
Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.
Team leadership experience to help with the organizational and team dynamics in a growing field.
Demonstrated problem-solving abilities to manage complex local and international security requirements.
Self-motivated and directed, well-organized and able to position controls in anticipation of threats.
Successful track record collaborating with technical and non-technical teams to promote ideas to support business enablement.
Familiarity with international and state privacy laws.
Experience writing technical documentation.
Highly trustworthy; leads by example.
US Citizenship for this position is required by law due to federal customer contracts
Benefits
medical, dental, vision, life, and disability insurance
Campus Security Officer ensuring safety at Bright Horizons early childcare centers in Seattle. Responsible for access control, surveillance, and emergency response.
Sounding and Security Watch responsible for Navy asset security at NSF Diego Garcia. Conducting checks and ensuring safety during designated watch hours with strong situational awareness.
Sales Enablement Manager creating technical content for Upwind Security. Collaborating across teams to translate cloud security concepts into clear narratives for engineers and security leaders.
Security Engineer designing and implementing security measures to protect Snap Inc.'s infrastructure. Collaborating across teams while focusing on threat detection and response strategies.
IT Security & Compliance Head at Lonza leading security strategy and managing global risk. Collaboration with senior leadership to enhance information security across Capsules & Health Ingredients business.
Senior Security Manager leading security for Sanofi meetings and events across North America. Ensuring compliance with global meeting policies and managing event security operations in high - stake environments.
Security Officer maintaining safety protocols at Aloft New Orleans. Responsible for patrolling, monitoring security systems, and assisting guests with safety - related concerns.
Security Detection Specialist responsible for detecting cybersecurity incidents using advanced security technologies. Analyzing data feeds and leveraging security tools for incident detection and reporting.
Senior Incident Response Engineer at Walmart focusing on security threat campaigns to enhance detection and response capabilities. Collaborating with SOC and engineering teams to improve security posture.
Head of Infrastructure & Security at Kinatico, a RegTech leader, focused on cloud infrastructure and security governance. Leading a technically deep team of cloud engineers and security specialists in a hybrid environment.