Cloud Security Engineer, Security Architecture & Platform Engineering

Goldman Sachs

Quick summary

Work type
On-site
Location
Seattle, WA
Salary
$115,000–$180,000 / yr
Posted
1 day ago

Employer

About Goldman Sachs

Goldman Sachs is a leading global investment banking, securities, and investment management firm providing financial services to corporations, financial institutions, governments, and individuals.

Goldman Sachs currently has 187 open roles on FindRole.

Listed pay typically runs $130,000–$250,000 across 60 roles with salary data.

Most-posted roles

View all roles at Goldman Sachs

At a glance

TL;DR · Cloud Security Engineer, Security Architecture & Platform Engineering

Senior Cloud Security Engineer sought after by a leading cloud platform team to design and implement secure cloud architectures aligned with NIST frameworks. This role involves building and deploying Infrastructure as Code (IaC) using tools like Terraform and CDK, integrating security controls into CI/CD pipelines, and supporting secure-by-default infrastructure initiatives. The ideal candidate has 2-4 years of experience in DevOps or SRE roles, proficiency in AWS services, and expertise with Java, Python, JavaScript, TypeScript, or Node.js. They will work on policy-as-code frameworks, optimize security policies for reduced false positives, and ensure compliance across cloud environments while participating in a 24/7 on-call rotation for operational support.

What you'll do

  • Design and maintain secure cloud architecture aligned with NIST and industry standards.
  • Build and deploy cloud security posture management infrastructure using IaC tools.
  • Implement integrations with risk management systems, monitoring platforms, SIEM, and compliance frameworks.
  • Migrate infrastructure security controls to policy-as-code frameworks for automated testing and validation.
  • Integrate security controls into CI/CD pipelines for shift-left security and pre-deployment validation.

What we're looking for

  • 2-4 years of professional experience in DevOps, SRE, or related field
  • Proficiency in Infrastructure as Code (IaC) tools like Terraform and CDK
  • Experience with AWS services and cloud security standards such as NIST
  • Strong understanding of authentication protocols and cloud-native frameworks
  • Ability to automate compliance validation and remediation workflows
  • Solid software development skills in Java, Python, or JavaScript/TypeScript
  • Expertise in container technology and CI/CD pipeline integration