Demo

Lead Cloud Security Engineer

Storm3
South San Francisco, CA Full Time
POSTED ON 3/8/2025
AVAILABLE BEFORE 4/6/2025

Our client is an innovative biotechnology company leveraging AI-driven drug discovery to advance cancer research and treatment. Their platform integrates high-throughput screening, machine learning, and computational biology to accelerate the development of life-saving therapies.

As part of the security team, this role is critical in safeguarding cloud infrastructure, AI-driven research, and highly sensitive biomedical data. They are looking for a Cloud Security Engineer to strengthen security controls, enforce Zero Trust Architecture, and automate security processes within a dynamic biotech environment.


The Opportunity

This role will be responsible for securing AWS cloud environments, ensuring compliance with security best practices, and collaborating with teams across DevOps, AI research, and security operations. The ideal candidate will have hands-on experience with cloud security, automation, and compliance frameworks, with a deep understanding of modern security threats and mitigation strategies.


Key Responsibilities


Cloud Security & Infrastructure Protection

  • Secure AWS environments, including IAM, VPCs, S3, EC2, Lambda, and Kubernetes.
  • Implement and maintain Zero Trust Architecture, enforcing segmentation and access controls.
  • Manage encryption, key management, and security vaults with AWS KMS.

Threat Detection & Incident Response

  • Monitor security platforms such as Lacework, AWS Security Hub, and Sumo Logic for potential threats.
  • Conduct penetration testing and vulnerability scanning to proactively identify risks.
  • Develop and execute incident response protocols to mitigate security breaches.

Security Automation & DevSecOps

  • Integrate security controls into CI/CD pipelines to enforce infrastructure-as-code (IaC) security best practices.
  • Automate security workflows using Terraform, AWS CLI, Python, Bash, or Go.
  • Secure containers and Kubernetes environments (EKS, Docker) to strengthen cloud-native security.

Compliance & Governance

  • Ensure compliance with ISO 27001, NIST, SOC 2, and other industry security frameworks.
  • Partner with external security vendors and Managed SOC teams to conduct audits and assessments.
  • Implement SSO, Zero Trust security models, and network segmentation strategies.


Who You Are

  • 5 years of experience in cloud security, with a strong focus on AWS security.
  • Strong knowledge of IAM, VPC security, encryption practices, and network segmentation.
  • Hands-on experience with threat detection tools such as Lacework, AWS Security Hub, and Sumo Logic.
  • Deep understanding of Zero Trust Architecture and modern cloud security frameworks.
  • Expertise in DevSecOps workflows, infrastructure-as-code security (Terraform, CloudFormation, Ansible, or Pulumi).
  • Proficiency in security automation scripting (Python, Bash, Go, AWS CLI).
  • Familiarity with compliance frameworks such as ISO 27001, NIST, and SOC 2.


Preferred Certifications

  • AWS Certified Security – Specialty
  • Palo Alto Networks Certified Cybersecurity Associate (PCCSA) or Professional (PCNSA)
  • Cisco Certified CyberOps Associate or Professional


Bonus Skills

  • Experience in biotech, healthcare, or AI-driven environments.
  • Familiarity with AI security risks and automation vulnerabilities.
  • Experience securing high-performance computing (HPC) environments for AI workloads.
  • Container security expertise (Kubernetes, Docker, AWS EKS).

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Lead Cloud Security Engineer?

Sign up to receive alerts about other jobs on the Lead Cloud Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$163,631 - $209,073
Income Estimation: 
$192,911 - $256,346
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Storm3

Storm3
Hired Organization Address New York, NY Full Time
⚑ Full-Stack Founding Engineer πŸ’‘ AI-Powered Healthcare Training 🌎 New York City, USA πŸ’Έ $120,000 - $180,000 salary equ...
Storm3
Hired Organization Address Sonoma, CA Full Time
Senior / Staff AI Research Scientists Foundation Model / Fundamental AI Research institute San Francisco Bay Area, USA (...
Storm3
Hired Organization Address Santa Rosa, CA Full Time
Candidate Must Be Located in South San Fran Principal Scientist, Machine Learning Cell Therapy Hybrid, must be located i...
Storm3
Hired Organization Address San Jose, CA Full Time
Lead Research Scientist / Engineer Biology Foundation Models ($100M Seed) 250,000 - $350,000 salary bonus equity Join a ...

Not the job you're looking for? Here are some other Lead Cloud Security Engineer jobs in the South San Francisco, CA area that may be a better fit.

AI Assistant is available now!

Feel free to start your new journey!