About this role
Overview
We're looking for a Senior Cloud Security Engineer to build PowerPlan's cloud security and IAM maturity programs from the ground up, rather than caretake an existing one. As a senior individual contributor, you'll own compliance, identity strategy, and security automation across both AWS and Azure.
Success here means shaping the roadmap leadership acts on, not just executing someone else's plan, with visible influence across Cloud Engineering, Information Security, and executive stakeholders within your first 90 days.
Responsibilities
Success will be measured by how fast compliance gaps close, how real (not aspirational) least-privilege access becomes, and by whether the organization comes to you before it changes its cloud environment, not after.
- Assess and close security framework compliance gaps across AWS and Azure, with a prioritized remediation roadmap by day 90.
- Build an IAM maturity roadmap from the current fragmented state to least-privilege enforcement and centralized oversight.
- Turn security and IAM requirements into enforced, production-grade code — Terraform modules and Python/PowerShell automation.
- Serve as the security subject matter expert in cloud architecture reviews and change advisory processes.
- Mentor Cloud Operations and Engineering teams on secure defaults so security shapes decisions before they ship.
- Lead incident response for cloud security events end-to-end, from detection through resolution.
Qualifications
- 8+ years of experience in cloud security, infrastructure security, or security engineering, with deep hands-on experience across both AWS and Azure.
- Demonstrated experience implementing security frameworks such as CIS, NIST, or SOC 2 at scale.
- Strong IAM design and implementation background, including federation (SAML, OIDC), RBAC, ABAC, and privileged access management.
- Proficiency in Python and PowerShell for security automation, and hands-on Terraform experience.
- A track record of translating security requirements into infrastructure-as-code guardrails integrated into CI/CD pipelines.
- Experience building or maturing a risk-based or IAM program from an early or fragmented state.
- Experience leading incident response for security events and driving post-incident corrective action.
- Bachelor's degree in a related field or equivalent professional experience.
- Excellent written and verbal communication skills, comfortable presenting security strategy to both engineers and executive leadership.
Preferred
- Experience with cloud security posture management (CSPM) tooling.
- CISSP, CCSP, or a similar security certification.
- Experience in a regulated or compliance-heavy industry (finance, energy, healthcare).
PowerPlan is an EOE
Applicant Privacy Notice
Please note that this is a hybrid role that involves a combination of onsite work from our corporate office as well as work from home. While we strive to accommodate flexible working arrangements when sensible, there will be times when onsite work is required. This could include scheduled office days, team meetings, client meetings, or special events.
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?