Back to jobs Featured

Cloud Engineer ($40-50k + bonus)


Responsibilities

  • Design, build, and operate secure cloud infrastructure across AWS/Azure/GCP in alignment with security architecture and policies
  • Implement security-by-design principles in cloud platforms, including network segmentation, IAM, encryption, and logging
  • Translate security requirements into cloud-native technical controls using Infrastructure as Code (Terraform, Bicep, CloudFormation)
  • Partner with Security Architects and GRC teams to implement and maintain cloud security baselines and guardrails
  • Configure and maintain cloud security services (e.g., WAF, Defender, GuardDuty, Security Hub, Sentinel)
  • Integrate security controls and policy-as-code into CI/CD pipelines (DevSecOps)
  • Support security monitoring, incident detection, and response for cloud environments
  • Conduct threat modeling and security reviews for new cloud architectures and services
  • Assist with cloud compliance efforts (ISO 27001, SOC2, PCI-DSS, NIST, etc.) by implementing required technical controls
  • Continuously improve cloud security posture through automation, optimization, and remediation of security findings

Requirements

  • Bachelor's degree in Computer Science, Information Security, or equivalent practical experience
  • 3-7 years of experience as a Cloud Engineer, with strong exposure to security-focused implementations
  • Hands-on experience with at least one major cloud platform (AWS, Azure, or GCP) in security-sensitive environments
  • Strong understanding of cloud security concepts:
    • Network security (VPC/VNet, firewalls, private endpoints)
    • Encryption, key management (KMS, HSM)
    • Logging, monitoring, and SIEM integration
  • Proficiency in Infrastructure as Code (Terraform preferred) and automation (Python, Bash, or PowerShell)
  • Experience implementing DevSecOps practices and integrating security tools into pipelines
  • Familiarity with cloud security tools such as CSPM, CWPP, WAF, and vulnerability scanning solutions
  • Solid understanding of shared responsibility model and cloud compliance frameworks
  • Ability to work closely with security, platform, and application teams to balance risk, scalability, and delivery speed
  • Excellent commands in Chinese and English