Skip to content

Jobs

Saronic

Robot type
Marine and Space · Defense
Location
AustinTexasUSA
Job type
Software
Posted
Jul 22, 2026
Full-time

Security Engineer, Cloud Security

Job description

Security at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer for our Cloud Security team to own the continuous security posture of the cloud that runs an autonomous fleet across both commercial AWS and AWS GovCloud and to build the guardrails that let every team ship fast with security baked in from the start. You’ll design the secure-by-default patterns teams reach for on their own, treating repeat findings as a signal to build a control rather than re-answer a ticket, and prioritizing by real attack path rather than alert count.

You’ll work alongside Product Security, Infrastructure, Software, Information Technology, Enterprise Technology, and Internal…

Job responsibilities

  • Posture & Compliance: Own continuous cloud security posture management (CSPM) across all cloud accounts, detect misconfigurations and drift, and drive remediation with the teams that own the resources.
  • Cloud Vulnerability Management: Run cloud vulnerability management at scale, find issues, prioritize them by real attack path and exposure rather than raw CVSS, and drive remediation to closure.
  • Guardrails & Secure-by-Default: Build reusable Terraform modules, Service Control Policies, permission boundaries, and policy-as-code that make the secure path the easy path, so whole classes of misconfiguration…
  • Identity, Secrets & Data Protection: Design least-privilege IAM across accounts and workloads, hunt privilege-escalation and cross-account trust paths, govern secrets management, and standardize encryption and…
  • Detection, Response & SOC Support: Build and tune cloud-native detections (CloudTrail, GuardDuty, Config, Security Hub) and automated remediation, and support the Security Operations team as they investigate, triage,…

Job requirements

  • 3+ years of hands-on cloud security, infrastructure security, or DevSecOps experience, or an equivalent combination of experience and demonstrated ability
  • Depth in AWS security services and architecture (IAM, Organizations/SCPs, CloudTrail, Config, GuardDuty, Security Hub, KMS, VPC)
  • Strong infrastructure-as-code (Terraform) and policy-as-code experience
  • Hands-on cloud vulnerability management and CSPM tooling (e.g., Prowler), with a track record of driving cloud findings to remediation
  • A track record of building guardrails or patterns that other teams adopted without friction
  • Proficiency in scripting for security automation
  • Ability to obtain and maintain a U.S. security clearance
  • Experience in AWS GovCloud, FedRAMP, or IL4/IL5 environments

Similar jobs