Logo for Greenbox Capital

Senior Cloud Platform Security Engineer

Role overview

Qualifications

  • Seven or more years of hands-on cloud infrastructure or security engineering experience
  • Strong experience across Azure subscriptions and management groups, networking, Microsoft Entra ID, RBAC
  • Demonstrated infrastructure-as-code experience using Terraform, Bicep, or comparable tooling
  • Relevant Microsoft certifications such as Azure Security Engineer Associate or Cybersecurity Architect Expert

Responsibilities

  • Maintain ≥99.9% availability for critical platform services within your operational control
  • Design and maintain Microsoft Entra ID, MFA, Conditional Access, and access reviews
  • Operate cloud-security posture management, vulnerability remediation, and incident response capabilities
  • Develop and maintain infrastructure using Terraform, Bicep, or comparable infrastructure-as-code practices

Key facts

Hard skills

Other skills

  • Curiosity
  • Communication
  • Adaptability

About the company

Greenbox Capital logo

Greenbox Capital

Consumer & Commercial Lending

Greenbox Capital is a direct funder in the merchant cash advance industry providing small businesses access to much needed working capital through merchant cash advances, invoice factoring and short-term small business loans. As a technology-driven alternative lender, Greenbox Capital’s enterprise solution, The Box, stands head and shoulders above other Fintech products. The Box increases deal security to brokers vastly improving the speed of funding and quality of underwriting for scaling and overhauls traditional means of obtaining capital with a seamless experience for the customer. Our core values are Commitment, Communication, Teamwork, Service and Integrity. Our team is made up of dedicated, hard-working, honest individuals working together toward the company goal of being the safest place to fund small businesses! We make an impact on small businesses in the US, Puerto Rico, and Canada, every day.

Company details

IndustryConsumer & Commercial Lending
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Why this Role Matters:

At Greenbox Capital, we help small businesses thrive by giving them fast, accessible funding. As a Senior Cloud Platform Security Engineer, you’ll play a critical role in building and protecting the cloud infrastructure that powers our applications, data platforms, and AI capabilities.

You’ll serve as the primary technical owner for our Azure platform, cloud security controls, and infrastructure operations. Your work will help ensure our technology environment is secure, reliable, scalable, compliant, and ready to support Greenbox’s continued growth.

This role reports to the VP, Technology and is a hands-on senior individual contributor with no direct reports. You’ll partner closely with Technology leadership, Engineering, Data & AI, Compliance, business stakeholders, and external providers.

What Success Looks Like:

Here’s how your time might break down (actual time can shift depending on business needs):

  • Platform Reliability & Recovery – Maintain ≥99.9% availability for critical platform services within your operational control, support agreed Sev-1/2 response expectations, and validate disaster recovery at least twice annually.
  • Security & Compliance Posture – Maintain strong privileged-access controls, remediate critical findings within established SLAs, and ensure technical evidence is available for SOC 2, NIST, and other compliance needs.
  • Infrastructure as Code & Configuration Management – Drive toward ≥95% of production infrastructure managed through infrastructure as code while reducing configuration drift.
  • Observability & Incident Readiness – Ensure critical services have effective monitoring, actionable alerts, escalation paths, and documented runbooks.
  • Cloud Cost & Operational Efficiency – Maintain ≥98% resource tagging compliance, improve cost visibility, and identify meaningful optimization opportunities.
  • Automation – Reduce repetitive infrastructure work through automated provisioning, remediation, evidence collection, backup validation, and recovery.

How you’ll be measured:

Own and continuously improve Greenbox Capital’s Azure platform

  • Design, configure, operate, and maintain Azure subscriptions, management groups, networking, compute, storage, platform services, and shared infrastructure.
  • Establish standards for environment separation, naming, tagging, approved services, secure configuration, and change management.

Strengthen cloud identity, network, and security controls

  • Design and maintain Microsoft Entra ID, MFA, Conditional Access, PIM, RBAC, managed identities, access reviews, and emergency-access procedures.
  • Apply least-privilege and separation-of-duties principles across cloud, SaaS, administrative, and non-human identities.
  • Own network segmentation, private connectivity, firewalls, DNS security, secure ingress/egress, and secrets management.

Improve security operations and incident readiness

  • Operate cloud-security posture management, vulnerability remediation, configuration monitoring, logging, detection, and threat-response capabilities.
  • Build meaningful alerts and dashboards and coordinate containment, recovery, evidence preservation, and corrective action during security events.

Build reliable infrastructure through automation

  • Develop and maintain infrastructure using Terraform, Bicep, or comparable infrastructure-as-code practices.
  • Establish reusable modules, peer review, automated testing, deployment controls, and configuration-drift management.

Support compliance, technology risk, and audit readiness

  • Translate requirements such as the GLBA Safeguards Rule, SOC 2, NIST Cybersecurity Framework, customer commitments, and internal policies into practical technical controls.
  • Maintain evidence, support audits and customer security reviews, and help address identified control gaps.

Enable secure Data & AI operations

  • Partner with Data & AI leadership to implement technical controls supporting Greenbox’s data and AI governance requirements.
  • Support data discovery, classification, lineage, retention, DLP, access governance, and approved AI-service controls.
  • Help secure AI and agent-based workloads, including data boundaries, privileged actions, logging, monitoring, human approval, and incident-response requirements.

Drive cloud cost and operational efficiency

  • Own cloud budgets, alerts, tagging standards, forecasting inputs, and recurring optimization recommendations.
  • Evaluate Azure-native and third-party capabilities based on effectiveness, effort, maintenance, licensing cost, and architectural fit.

You’re a Strong Fit if You:

  • Demonstrate strong judgment and can make thoughtful, risk-based technical decisions independently.
  • Are naturally curious and enjoy digging into complex systems, identifying root causes, and continuously improving how technology operates.
  • Can balance security, reliability, compliance, cost, and business needs without losing sight of practical execution.
  • Communicate clearly with technical teams, business stakeholders, executives, auditors, vendors, and external partners.
  • Are organized and comfortable managing multiple priorities in a fast-moving growth environment.
  • Adapt well to working across functions and with distributed teams.
  • Bring a growth mindset and actively look for opportunities to automate, simplify, and improve existing processes.

What You’ve Done Before:

  • Seven or more years of hands-on cloud infrastructure or security engineering experience, including ownership of production Azure environments and demonstrated senior-level responsibility.
  • Strong experience across Azure subscriptions and management groups, networking, Microsoft Entra ID, RBAC, Azure Policy, monitoring, backup and recovery, security controls, and cost management.
  • Demonstrated infrastructure-as-code experience using Terraform, Bicep, ARM templates, or comparable tooling, including source control and automated deployment practices.
  • Practical experience with cloud security operations, vulnerability remediation, logging and detection, incident response, access governance, and disaster-recovery testing.
  • Working knowledge of Microsoft Purview or comparable data-governance capabilities, including classification, lineage, retention, DLP, and access controls.
  • Experience translating control requirements into technical designs, operating procedures, evidence, and measurable results.
  • Strong documentation experience, including runbooks, architecture diagrams, standards, risk statements, and executive-level updates.
  • Ability to coordinate effectively with internal teams, auditors, managed-service providers, and technology vendors.
  • Experience in financial services or another regulated environment using SOC 2, NIST Cybersecurity Framework, or similar frameworks is preferred.
  • Experience securing AI, machine-learning, large-language-model, or agent-based workloads in production is preferred.
  • Relevant Microsoft certifications such as Azure Security Engineer Associate, Cybersecurity Architect Expert, Security Operations Analyst Associate, or Azure Solutions Architect Expert are preferred.

Tools and Expertise You’ll Bring:

  • Microsoft Azure
  • Microsoft Entra ID, RBAC, Conditional Access, MFA, and Privileged Identity Management
  • Terraform, Bicep, ARM templates, or comparable infrastructure-as-code technologies
  • Azure Monitor and Log Analytics
  • Microsoft Defender for Cloud
  • Microsoft Sentinel or comparable SIEM platforms
  • Microsoft Purview or comparable data-governance tools
  • Azure DevOps pipelines
  • Azure Policy and cloud configuration-management practices
  • Backup, disaster-recovery, and environment-restoration technologies
  • Cloud networking, segmentation, firewalls, DNS security, and zero-trust architectures
  • Secrets, certificate, and key management, including Azure Key Vault
  • Cloud cost management and FinOps practices
  • Databricks platform security, Microsoft 365 security, and SaaS identity integrations where applicable

What to Expect from Our Interview Process

We believe in a respectful, efficient, and transparent hiring experience. Here’s what you can expect:

Step 1: Initial Phone Screen (30 minutes)
A brief conversation with a recruiter to learn more about your background, interests, and alignment with the role.

Step 2: Hiring Manager Interview (1 hour)
A deeper discussion about the role, your relevant experience, and how you’d contribute to the team.

Step 3: Role-Specific Assessment or Panel Interview (1 hour)
Depending on the role, this may include a take-home assignment, technical interview, or live case study with team members.

Step 4: Final Interview or Leadership Chat (1 hour)
A final conversation with senior leadership or cross-functional team members to ensure alignment with our mission and values.

Step 5: Offer & Background Check
If it’s a mutual fit, we’ll move forward with background check and present a competitive offer. We aim to complete this process within 2–3 weeks from your first conversation with us.

Benefits:

💸 Competitive Pay - We know your worth and we pay accordingly.

🌴 Flexible PTO - Work hard, rest well. Take the time you need to recharge.

🏡 Remote - Fully remote within the U.S., working Eastern Time hours to keep everyone aligned.

🩺 Full Benefits Package - Health, dental, vision

🧠 Smart, Supportive Teammates - Collaborate with sharp minds who are kind, driven and uphold our core values: Commitment, Communication, Teamwork, Service and Integrity!


Compensation: $190-220K

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Cloud Security Engineer Related jobs

Other jobs at Greenbox Capital

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.