Lila Sciences logo
Lila SciencesPosted 3 weeks ago

Senior Engineer II, Cloud Security

$108,000–$163,333 year

On-siteCambridge, Massachusetts, United States

Full TimeSenior LevelStartup

Job Summary

Own cloud and SaaS security posture management across AWS, IaaS/PaaS, and core SaaS platforms by configuring, operating, and tuning CSPM, CNAPP, and SSPM tooling to surface and prioritize risk. Partner with infrastructure and platform teams to drive remediation of cloud, SaaS, and workload findings while building high-fidelity detections across SIEM, EDR, and security systems. Lead incident response triage, containment, recovery, and post-incident review for cloud security events. Strengthen cloud-native workload and container security across AWS, Kubernetes, hardened AMIs, and network controls. Design policy-as-code and guardrails that prevent insecure deployments without slowing developer velocity. Partner with AI, data, and platform teams to mature security controls for MLOps pipelines and AI-enabled platforms.

Required Qualifications

  • Extensive hands-on experience in information security, with deep cloud and SaaS security ownership
  • Strong AWS security knowledge, including IAM, SCPs, VPC/networking, KMS, CloudTrail, GuardDuty, Security Hub, and Config
  • Hands-on experience with CSPM or CNAPP tooling such as Wiz or comparable platforms
  • Experience operating detection and response workflows across SIEM, EDR, CSPM, or related security tooling
  • Practical incident response experience, including triage, containment, recovery, and post-incident review
  • Strong understanding of workload, container, and Kubernetes security
  • Proficiency with scripting and automation using Python, PowerShell, Bash, or similar tools
  • Experience securing infrastructure-as-code and CI/CD workflows using Terraform, CloudFormation, ARM, OPA, Sentinel, or native cloud policies
  • Strong grasp of IAM, identity federation, least-privilege access, SaaS permission models, and privileged access management practices
  • Ability to translate technical findings into business risk and partner cross-functionally with cloud, DevOps, AppSec, and platform teams

Desired Qualifications

  • Deep experience securing MLOps pipelines, AI-enabled platforms, or AI Security Posture Management practices
  • Experience with Azure-native security services, including Defender for Cloud
  • Depth in CWPP, EDR/XDR, SOAR, or DSPM tooling
  • Experience supporting SOC 2, ISO 27001, HIPAA, FedRAMP, PCI-DSS, or similar compliance programs
  • Certifications such as CISSP, CCSP, AWS Security, Azure Security, GCIH, GCFA, GCDA, or OSCP

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce