About the job
Join our dynamic team at Alarm.com as a Cloud Security Engineer, where you will play a crucial role in safeguarding our cloud environments across AWS, GCP, and Azure. This position focuses on identifying and mitigating security risks using cutting-edge cloud-native security tools and managing comprehensive security solutions. You will collaborate with multiple teams to integrate security throughout the software development lifecycle while maintaining robust threat models. Additionally, you'll ensure compliance with security regulations and assist in formulating risk mitigation strategies, responding to security inquiries from clients and partners. Familiarity with cloud security platforms such as CNAPP, CSPM, CWPP, CASB, CIEM, and the Wiz tool will be advantageous in this role.
Key Responsibilities:
- Demonstrate experience or familiarity with cloud security or engineering in major public cloud providers (AWS, GCP, Azure).
- Assist in evaluating, implementing, and deploying cloud-native security tools in AWS and Azure.
- Support monitoring, configuring rules, and enforcement using cloud security platforms like CNAPP, CSPM, CWPP, CASB, and CIEM.
- Utilize the Wiz tool for cloud security posture management, including configuration analysis and compliance monitoring.
- Contribute to the selection and enhancement of security solutions to elevate overall enterprise security.
- Collaborate with the Engineering team to determine and maintain our security posture.
- Manage deployment, integration, and configuration of security solutions, ensuring all documentation is up to date.
- Work closely with development, operations, and security teams to embed security in every phase of the software development lifecycle.
- Assist in creating and maintaining threat models for cloud environments and train engineering teams in risk-driven design principles.
- Partner with infrastructure, application, and other stakeholders to minimize security and privacy risks in deployed solutions.
- Recommend actions to management for ensuring compliance with security regulations in decision-making processes.
- Provide insights to mitigate risks associated with IT and information management.
- Assist in crafting responses to security questionnaires from clients and partners.
- Other duties as assigned.

