ServiceTitan Logo

ServiceTitan

Staff Cloud Security Engineer

Posted 4 Days Ago
Remote or Hybrid
Hiring Remotely in US
168K-270K Annually
Senior level
Remote or Hybrid
Hiring Remotely in US
168K-270K Annually
Senior level
Design and implement automated cloud security controls across multi-cloud environments. Integrate security into CI/CD pipelines, harden infrastructure and IaC, manage IAM and secrets, advance container and workload security, protect AI/ML systems and data, and support monitoring, detection, and incident response for cloud applications.
The summary above was generated by AI

Ready to be a Titan?

We are seeking an experienced Staff Cloud Security Engineer to shape the security foundation of our modern cloud environments and next-generation applications. In this high-impact role, you will design cutting-edge automated security controls, harden multi-cloud infrastructure, and champion secure development practices across the organization. If you are passionate about cloud security, DevSecOps, and staying ahead of emerging threats, this role puts you right at the center of innovation.

What You’ll Do:

DevSecOps and Automation

  • Pipeline Integration: Integrate robust security controls directly into CI/CD platforms such as GitHub, GitLab, Jenkins, or Azure DevOps.

  • Automated Scanning: Evaluate and implement pipeline-based security Infrastructure as Code (IaC) scanning.  Manage and configure IaC scanning tools to surface true risk.

  • Developer Feedback Loops: Build and optimize developer feedback loops and automated remediation workflows to ensure software is secure by default. Develop automated scripts using Python, Bash, or PowerShell to streamline security processes.

Identity and Access Management (IAM)

  • Cloud Identity Controls: Build and maintain IAM security controls across cloud platforms, assessing policies to enforce the principle of least privilege.

  • Non-Human Identity Management: Standardize management, security controls, and lifecycle expectations with regard to non-human identity.

  • Secrets Management: Govern the secure use of cloud identities, Application Programming Interfaces (APIs), and secrets management.

Infrastructure Security and Hardening

  • Cloud Posture: Develop and implement secure infrastructure baselines, vulnerability management processes, and hardening standards across AWS, Azure, or GCP environments.

  • Infrastructure as Code (IaC): Validate security configurations and leverage IaC tools like Terraform, CloudFormation, or Bicep to ensure repeatable, auditable, and secure infrastructure provisioning.

  • Network Security: Tackle high-impact infrastructure projects such as multi-cloud network isolation, secure multi-tenant use, and continuous remediation of discovered misconfigurations.

Workload Security

  • Cloud-Native Architectures: Guide engineering teams on secure architecture design for cloud apps, microservices, serverless services, and PaaS workloads.

  • Container Security: Advance container and Kubernetes security by implementing runtime controls, supply-chain security, and configuration assessments.

  • AI & Emerging Tech: Secure in-house and public AI/ML systems against cyber threats, adversarial attacks, and unauthorized access, ensuring models and data pipelines are protected throughout the solution lifecycle.

Data Security and Privacy

  • Data Protection: Ensure that sensitive cloud and AI data is properly encrypted, anonymized, and securely stored.

  • Encryption Standards: Assess and implement strong encryption configurations, checkpoint encryption, and tokenization to protect data at rest and in transit.

  • Compliance Alignment: Develop and enforce policies to align data security and privacy measures with industry regulations, ethical standards, and organizational governance requirements.

Monitoring, Detection, and Response

  • Telemetry & Visibility: Partner with Security Operations to improve cloud application telemetry, logging, and observability. Help expand monitoring capabilities by onboarding log sources and building detection rules for cloud-based threats.

  • Threat Detection: Monitor and analyze security events using SIEM, Cloud Security Posture Management (CSPM), and Cloud Workload Protection Platforms (CWPP).

  • Incident Response: Support the triage, investigation, and forensic analysis of cloud-based application or pipeline security incidents, working collaboratively to contain and mitigate threats.

What You’ll Bring:

  • Experience: 7-10+ years of hands-on experience in cloud security, application security, DevSecOps, or related engineering roles.

  • Cloud Expertise: Deep hands-on experience with Azure and/or AWS security services, including the design and maintenance of multi-cloud application controls.

  • Technical Skills: Proficiency in scripting (Python, Bash, PowerShell) to automate security tasks. Strong understanding of container security (Docker, Kubernetes) and IaC security (Terraform, ARM).

  • Certifications: Industry certifications such as CCSP, CISSP, AWS Security Specialty, Azure Security Engineer, GCSA, or OSCP are highly preferred.

Why this role?

  • Transformative Impact: You will have a proactive, "builder" mindset with a passion for improving processes and reducing risk, directly driving scalable solutions across our real-world infrastructure.

  • Cross-Functional Collaboration: You will work closely with diverse engineering, DevOps, and product teams to ensure secure solution delivery, translating complex security concepts for both technical and non-technical stakeholders.

  • Continuous Growth: Join a dynamic team where you will continuously adapt to evolving challenges, stay ahead of emerging cloud threats, and explore the secure integration of frontier AI workloads.

Be Human With Us:
Being human isn’t about checking every box on a list. It’s about the experiences we have, people we meet, and the perspectives we share. So, if you have the skills but are hesitant to apply because of your background, apply anyway. We need amazing people like you to help us challenge the conventional and think differently about the problems that we’re solving. We’re in this together. Come be human, with us. 


Use of AI Technology:

We use technology, including automated and AI-assisted tools, to support certain aspects of our recruitment process. These tools are designed to improve efficiency and enhance the candidate experience. AI tools are not used to make hiring decisions; all hiring decisions are made by our hiring teams.


What We Offer:

When you join our team, you’re not just accepting a job. You’re making a career move. Here’s how we’ll support you in doing some of the most impactful work of your career:

  • Flextime, recognition, and support for autonomous work: Flexible time off with ample learning and development opportunities to continue growing your career. We offer a comprehensive onboarding program, leadership training for Titans at all levels, and other programs and events. Great work is rewarded through Bonusly, peer-nominated awards, and more.
  • Holistic health and wellness benefits: Company-paid medical, dental, and vision (with 100% employer paid options and 90% coverage for dependents), FSA and HSA, 401k match, and telehealth options including memberships to One Medical.
  • Support for Titans at all stages of life: Parental leave and support, up to $20k in fertility services (i.e. IUI and IVF), surrogacy, and adoption reimbursement, on demand maternity support through Maven Maternity, free breast milk shipping through Maven Milk, pet insurance, legal advisory services, financial planning tools, and more.

At ServiceTitan, we celebrate individuality and uniqueness. We believe that the convergence of fresh perspectives and experiences from all walks of life is what makes our product and culture so great. We strongly encourage people from underrepresented groups to apply. We do not discriminate against employees based on race, color, religion, sex, national origin, gender identity or expression, age, disability, pregnancy (including childbirth, breastfeeding, or related medical condition), genetic information, protected military or veteran status, sexual orientation, or any other characteristic protected by applicable federal, state or local laws.

ServiceTitan is committed to fair and equitable compensation for all of our employees. We thoughtfully consider a wide range of factors when determining individual compensation, which may change over time. We comply with all applicable minimum wage laws. For candidates in the United States, the good faith salary ranges estimate for this role is Zone 1: $179,900 USD - $269,900 USD Applicable for: CA, CT, DC, MD, MA, NJ, NY, VA, and WA Zone 2: $168,200 USD - $252,200 USD Applicable for: All other US locations. International Compensation for candidates residing outside the United States will vary by location and will be discussed during the hiring process. Actual compensation within a range is determined by factors including relevant experience, skill set, qualifications, and performance. In addition to base salary, our total compensation package includes an annual bonus, equity, and a holistic suite of benefits.
HQ

ServiceTitan Glendale, California, USA Office

Our office is located in a buzzy, vibrant neighborhood with access to great restaurants and bars. Think small-town vibe with big-city amenities.

Similar Jobs

16 Days Ago
Easy Apply
Remote
United States
Easy Apply
198K-220K Annually
Senior level
198K-220K Annually
Senior level
Logistics • Marketing Tech • Software
Senior technical security engineer responsible for cloud infrastructure security, detection engineering, incident response, application and product security, vulnerability management, penetration test ownership, and security automation. Partners with platform, logistics, and IT teams, manages an application security contractor, and builds tooling to raise the security posture across AWS, IaC, edge, and container environments.
Top Skills: AIAWSCloudflareCnappContainer ScanningDastEndpoint DetectionIamInfrastructure As CodeKubernetesNomadPenetration TestingSastScaSIEMTerraformWafZero Trust
4 Days Ago
Remote
USA
190K-220K Annually
Senior level
190K-220K Annually
Senior level
Artificial Intelligence • Insurance • Software • Automation
Design and scale secure AWS environments, build and maintain Terraform IaC and pipelines, lead security assessments and incident response, integrate security into CI/CD, define IAM/encryption/network controls, monitor and investigate cloud threats, and coach teams on cloud security best practices.
Top Skills: AntivirusAWSBashCi/CdEdrEncryptionIamLogging/MonitoringMdmNetwork SecurityPowershellPythonTerraformTypescript
4 Days Ago
Remote
USA
174K-320K Annually
Senior level
174K-320K Annually
Senior level
Healthtech
Design, implement, and automate cloud security controls (primarily AWS, with GCP work) using code (Python, Go) and IaC (Terraform). Build authorization and JIT access systems, harden containers and CI/CD pipelines, integrate data classification with access controls, automate security operations and incident response, and partner with engineering to embed HIPAA-compliant, secure-by-design practices.
Top Skills: AbacAWSAws CloudtrailCi/CdCloudwatchDockerEksGCPGoGuarddutyKubernetesPolicy-As-CodePythonRbacRubySIEMTerraformWaf

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account