Logo for Zimperium

Sr. Cloud Security Engineer - FedRamp (Dallas, TX)

Role overview

Qualifications

  • 8+ years of IT experience with at least 5 years in Cloud Security Engineering within a multi-cloud environment.
  • Expert-level Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation.
  • Hands-on experience securing at least three major cloud providers (AWS, Azure, GCP, OCI).
  • System hardening expertise aligned with CIS Level 2 and DISA STIGs, plus Linux administration and Kubernetes security.

Responsibilities

  • Design, implement, and manage security controls across AWS, Azure, GCP, and OCI.
  • Automate secure infrastructure deployment using IaC (Terraform and/or CloudFormation) to ensure scalable, repeatable security.
  • Enforce system hardening per CIS Level 2 and DISA STIGs across Linux and Kubernetes compute environments.
  • Configure and operate security tooling (Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto NGFWs) and deploy WAFs (F5 or cloud-native) with DevSecOps CI/CD integration.

About the company

Zimperium logo

Zimperium

Cybersecurity

Zimperium enables companies to realize the full potential of mobile-powered business by activating a Mobile-First Security Strategy. Built for the demands of mobile business, Zimperium’s Mobile-First Security Platform delivers unmatched security across both applications and devices. Only Zimperium delivers autonomous mobile security that dynamically adapts to changing environments so companies can securely capitalize on the new world of mobile-powered opportunities. Zimperium offers the only platform for both mobile device and mobile application security. The Zimperium Mobile-First Security Platform consists of the following solutions: The MAPS solution helps enterprises build compliant, secure, and resilient mobile applications. It has three key capabilities: Mobile App Security Testing (MAST) to help identify mobile-specific exploitable vulnerabilities. Application Shielding to secure app code, data, and cryptographic keys from tampering and abuse. Runtime Protection to protect the app on-device from malware, phishing, compromised devices, and rogue networks. MAPS is the only unified solution that offers comprehensive in-app protection and threat visibility across the entire lifecycle of an application. Zimperium Mobile Threat Defense (MTD) -formerly known as zIPS- is an on-device, privacy-first application that provides comprehensive mobile security to the enterprise. It is designed to protect an employee’s device and information from device, network, app, and phishing attacks. Zimperium’s Dynamic Detection Engine, enhanced by machine learning and continuous research, is capable of scaling with the needs of the modern workforce, securing devices against the most advanced threats. Zimperium enables enterprises to support and secure BYO and corporate-owned devices without sacrificing employees' privacy or personal data.

Company details

Company typeSME
IndustryCybersecurity
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Zimperium® is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware.
 
Our MTD and award-winning machine learning-based engine protects against device, network, phishing and application attacks for IOS, Android and Windows devices, using a non-intrusive approach to always protect privacy of users.
 
Position Summary:
 
We are seeking a highly experienced and self-directed Senior Cloud Security Engineer to join our team. This critical role is responsible for designing, implementing, and maintaining robust security controls across our multi-cloud environment. The ideal candidate will possess deep technical knowledge, a proactive, automation-first mindset, and the ability to operate independently, taking full ownership of security responsibilities in a fast-paced environment.
 
Location: Dallas, TX preferred
 
Key Responsibilities:
 
Multi-Cloud Security Architecture: Design, implement, and manage security best practices and controls for services hosted across AWS, Azure, GCP, and OCI environments.
Infrastructure as Code (IaC) & Automation: Act as the subject matter expert for security automation, leveraging CloudFormation and/or Terraform to deploy secure infrastructure consistently and at scale.
System Hardening: Implement and enforce rigorous security configuration benchmarks, specifically CIS Level 2 and DISA STIGs, across all compute environments, including various flavors of Linux and Kubernetes clusters.
Security Tooling & Operations: Configure, manage, and optimize cloud-native and third-party security tools such as Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
Application & Network Defense: Deploy and manage Web Application Firewalls (WAFs), including F5 and other cloud-native WAF solutions, to protect critical applications.
DevSecOps & Pipeline Security: Integrate security testing tools (SAST, DAST, SCA) into CI/CD pipelines to enable "shift-left" security practices.
Secrets and Key Management: Design and maintain solutions for the secure storage and rotation of credentials, API keys, and secrets using tools like HashiCorp Vault or equivalent cloud-native services.
Risk & Design Review: Conduct threat modeling and perform security reviews for new applications and services to proactively identify and mitigate risks in the design phase.
Incident Response & On-Call: Participate in a rotating on-call schedule to address security incidents and operational issues promptly.
Compliance & Reporting: Support internal and external audits by generating evidence, writing detailed reports, and delivering clear, concise technical presentations to leadership.
Leadership & Mentorship: Operate with minimal oversight, taking the initiative to identify and suggest security improvements and drive projects to completion.
 
Required Qualifications & Experience:
 
- 8+ years of progressive experience in IT, with at least 5 years dedicated to Cloud Security Engineering in a multi-cloud environment.
- Expert-level proficiency in Infrastructure as Code (IaC) for security automation using Terraform and/or CloudFormation.
- Deep practical experience securing at least three of the following major cloud providers: AWS, Azure, GCP, and OCI.
- Proven expertise in system hardening using industry standards like CIS Level 2 and DISA STIGs.
- Extensive experience with Linux administration and securing containerization technologies, specifically Kubernetes.
- Hands-on experience with advanced security platforms, including at least two of the following: Palo Alto Prisma Cloud, Orca, Google SecOps, and Palo Alto Next Generation Firewalls.
- Demonstrated experience with WAF solutions, such as F5 or equivalent cloud-native services.
- Strong working knowledge of DevSecOps principles, including integrating security tools into CI/CD pipelines.
- Proven experience with Secret Management solutions (e.g., HashiCorp Vault, AWS Secrets Manager).
- Excellent written and verbal communication skills, including the ability to write executive-level reports and deliver technical presentations.
- Proven ability to operate independently and take ownership of critical responsibilities.
 
Preferred Requirements:
 
- Experience working within highly regulated environments, such as FedRAMP, DoD, or similar government/financial sectors.
- Demonstrated experience with implementing and maintaining controls for security frameworks such as ISO 27001 and SOC 2.
- Experience conducting formal threat modeling and risk analysis.
- Experience gained from both a large enterprise environment (for process and scale) and a fast-paced startup/tech company (for agility and innovation).
- Relevant industry certifications (e.g., CISSP, CCSP, AWS/Azure/GCP Security Specializations).
 
Zimperium® is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cloud Security Engineer Related jobs

Other jobs at Zimperium

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.