Staff Security Engineer

About the job

Business Area:

Engineering

Seniority Level:

Mid-Senior level

Job Description:

At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we’re the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises.

Have you ever looked at the end product and thought “This would have been so much more secure if they’d just made this one change in the design?” Do you wish you could influence the design of a product while still getting your hands dirty on the operations side? Great, we’ve got the position for you!

Cloudera is looking for security professionals with expertise in multiple domains to join a unique blended team. Bringing both security operations knowledge and application security know-how, you and our highly collaborative team will play a crucial role in the design of Cloudera’s products and ensure the security of the Cloudera Data Platform (CDP) Public Cloud environment. In this role, you will be part of our Application Security (AppSec) and Security Operations (SecOps) team. This team is charged with maintaining the operational security of our production systems while also working as a critical part of our product development process; reviewing designs and providing advice to product teams to drive change at the design stage of the development lifecycle to make our lives easier at the production stage.

Our goal is to build a cycle of improvement that involves discovering and addressing design issues using a highly automated SecOps process and looping those findings back into our product team’s design process, reducing issues in future generations of our products.

We’re looking for individuals who want to change how security is done at either end of the product roadmap. You have the opportunity to teach and learn from Kubernetes trailblazers, and help blaze new paths for those following behind you.

As a Staff Security Engineer you will:

  • Design and deploy new cloud environments using automation.
  • Perform security architecture reviews of new products and features, develop threat models, and perform risk assessments.
  • Work closely with Site Reliability Engineering (SRE) team to continually monitor and maintain the security of production cloud systems.
  • Develop, refine, and drive the adoption of security best practices.
  • Influence decision-makers and stakeholders to continually raise the bar for security.
  • Develop and deliver security training and outreach to internal development teams.
  • Work collaboratively with the compliance and platform security teams to improve processes and drive changes back into the product design stage for the next new product or feature.
  • Lead security projects (including security reviews, tool development, and creation of new security practices) with end-to-end ownership.

We’re excited about you if you have:

  • Experience performing security reviews and performing risk assessments against complex systems.
  • Experience with AWS, Azure, and Google Cloud network and security best practices.
  • Moderate to advanced Linux knowledge.
  • Experience with Terraform, Unix shell scripting, Hashicorp Vault, etc.
  • Experience with one or more programming languages (Java, Python, Go, JS/TS)
  • Experience partnering closely with high-velocity engineering teams.
  • Ability to communicate complicated security concepts with both technical and non-technical audiences
  • Demonstrated ability to listen to other’s diverse points of view and work together to find the best solution.
  • Demonstrated experience working in a situation where you need to balance business needs with security risks.
  • Basic knowledge of standard attacks and countermeasures.

You may also have:

  • Understanding of networking principles and how network architecture interacts with security (Standard networking stack, TLS, IPSEC, HTTP, DNS, etc.).
  • Understanding of cryptography, web service frameworks, and service architectures (such as event-driven, service-oriented, or serverless architectures).
  • Basic understanding of Kubernetes operations and security.
  • Security certifications (CISSP, CISA, etc.) are a bonus but not required.
  • Familiarity with Cloudera’s products or other distributed computing systems is a strong bonus, or a willingness to dig into our products to truly understand how they work.

What you can expect from us:

  • Generous PTO Policy
  • Support work life balance with Unplugged Days
  • Flexible WFH Policy
  • Mental & Physical Wellness programs
  • Phone and Internet Reimbursement program
  • Access to Continued Career Development
  • Comprehensive Benefits and Competitive Packages
  • Paid Volunteer Time
  • Employee Resource Groups

Cloudera is an Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

More Information

Apply for this job
Share this job

13th Anniversary Global InfoSec Awards for 2025 now open for super early bird packages! Winners Announced during RSAC 2025...

X