Cloud Security Engineer - Advanced
Indexed description
Being part of Zebra Nation means you are seen, heard, valued, and respected. Drawing from our unique perspectives, we collaborate to deliver on our purpose. Here you are part of a team pushing boundaries today to redefine the work of tomorrow for organizations, their employees, and those they serve.
You’ll have opportunities to learn and lead in a forward-thinking environment, defining your path to a fulfilling career while channeling your skills toward causes you care about—locally and globally.
Come make an impact every day at Zebra.
What We're Looking For
Coordinates with Cloud Engineering and other internal teams to design and implement security controls, defenses, and countermeasures that protect company data, applications, and infrastructure across public cloud and internet-facing environments. Serves as a senior technical resource for cloud security, with primary focus on secure cloud architecture, standardized perimeter controls, Zero Trust access patterns, design recommendations, risk articulation, and secure-by-design guidance across multi-cloud deployments.
Responsibilities
- Partner with internal teams to incorporate security requirements into cloud architecture, modernization, application onboarding, access enablement, and vendor integration efforts.
- Provide security architecture review and design recommendations for public cloud platforms, internet-facing applications, APIs, workloads, and data flows to improve control consistency and reduce unmanaged exposure.
- Assess cloud designs against enterprise security standards, regulatory expectations, and industry frameworks; document architecture findings, risk decisions, exception rationale, and recommended remediation options.
- Advise on standardized perimeter controls, Zero Trust access patterns, private access, segmentation, secure connectivity, and identity-based access approaches for users, workloads, applications, and third parties.
- Review cloud configuration, IAM, network routing, encryption, logging, monitoring, and telemetry requirements; identify gaps and coordinate practical next steps with accountable technology owners.
- Support adoption and consistent use of cloud-native and enterprise security capabilities, including CNAPP, CSPM, CWPP, CIEM, KSPM, WAF, IDS/IPS, secure web gateway, SASE, and ZTNA capabilities where applicable.
- Articulate cloud security risk, business impact, control tradeoffs, and remediation priorities to technical teams, management stakeholders, and security leadership.
- Maintain reusable cloud security guidance, decision records, control recommendations, status updates, escalation points, and next steps for cross-functional delivery teams.
- Contribute to Security Architecture objectives by strengthening secure-by-design delivery, improving cloud control maturity, and enabling consistent architecture governance across cloud platforms.
- Bachelor’s degree in Information Security, Computer Science, Engineering, Information Systems, or equivalent experience.
- 5+ years of experience in information security, cloud engineering, cloud security architecture, network security, or infrastructure security.
- Direct experience partnering with Cloud Engineering, Network, Identity, Security Operations, and application teams to assess risk and recommend secure design patterns.
- Strong understanding of public cloud security concepts across AWS, Azure, GCP, and other cloud platforms.
- Experience evaluating cloud architecture designs, identifying security gaps, articulating risk, and recommending practical controls that can be implemented by accountable engineering and operations teams.
- Advanced degree preferred.
- Cloud security, architecture, or engineering certifications such as CCSP, CISSP, AWS Security Specialty, Azure Security Engineer, Google Professional Cloud Security Engineer, or equivalent preferred.
- Knowledge of Zero Trust, SASE, ZTNA, secure web gateway, DNS security, cloud firewall, WAF, IDS/IPS, segmentation, and private access patterns for users, workloads, APIs, and internet-facing applications.
- Familiarity with CNAPP, CSPM, CWPP, CIEM, KSPM, cloud-native security services, infrastructure-as-code scanning, and policy-as-code approaches used to detect, prioritize, and reduce cloud exposure.
- Working knowledge of secure SDLC, DevSecOps, CI/CD pipelines, Terraform or similar infrastructure-as-code tooling, container and Kubernetes security, API security, and secure configuration baselines.
- Knowledge of cloud identity and access management, including least privilege, privileged access, workload identities, service accounts, federated access, conditional access, and non-human identity risk.
- Ability to interpret cloud security findings, misconfigurations, exposure paths, vulnerability data, and telemetry; distinguish material risk from noise; and communicate prioritized remediation options.
- Ability to apply enterprise security policies, audit expectations, and frameworks such as NIST, CIS, CSA CCM, and OWASP to cloud architecture reviews, standards, guidance, and exception recommendations.
- Strong communication, coordination, analytical, facilitation, and project management skills.
- Proven ability to influence teams without direct authority and drive clarity on ownership, risk acceptance, remediation plans, and next steps.
- Demonstrated ability to operate effectively in a fast-paced, globally distributed environment with limited dedicated staffing, competing priorities, and shared internal responsibility.
Know Your Rights
https://www.eeoc.gov/sites/default/files/2022-10/EEOC_KnowYourRights_screen_reader_10_20.pdf
Conozca Sus Derechos
https://www.eeoc.gov/sites/default/files/2022-10/22-088_EEOC_KnowYourRightsSp_10_20.pdf
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Pay Range
$112,400.00 - $162,400.00 Annual
Incentive Compensation
In addition to base pay, Zebra offers this role the opportunity to earn a performance-based annual cash incentive, at a target equal to 12% of base pay, in accordance with the terms of the applicable incentive plan.
Total Rewards
Zebra Total Rewards includes more than just pay and is structured to meet the needs of our changing global business and evolving talent. We are committed to providing our employees with a benefits program that is comprehensive and competitive – including healthcare, wellness, inclusion networks, and continued learning and development offerings. We offer community service days, in addition to the traditional insurances, compensation, parental leave, employee assistance program and paid time off offerings depending on the country where you work.
Salary offered will vary depending on your location, job-related skills, knowledge, and experience.
Job Posting Statement
To protect candidates from falling victim to online fraudulent activity involving fake job postings and employment offers, please be aware our recruiters will always connect with you via @zebra.com email accounts. Applications are only accepted through our applicant tracking system and only accept personal identifying information through that system. Our Talent Acquisition team will not ask for you to provide personal identifying information via e-mail or outside of the system. If you are a victim of identity theft contact your local police department.
AI Technology Statement
Zebra Technologies leverages AI technology to evaluate job applications using objective, job-relevant criteria. This approach enhances efficiency and promotes fairness in the hiring process. However, every decision regarding interviews and hiring is made by our dedicated team, because we believe people make the best decisions about people. For more on how we use technology in hiring and how we process applicant data, see our Zebra Privacy Policy.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search