{"schemaVersion":"jobsearcher.job.v1","id":"4d41f567000315dbe4e84dbc","url":"https://jobsearcher.com/jobs/4d41f567000315dbe4e84dbc","canonicalUrl":"https://jobsearcher.com/jobs/4d41f567000315dbe4e84dbc","title":"Cloud Security Engineer","description":"Cloud Security Engineer\nScreen Engine/ASI — the leading technology innovator in media and entertainment market research, is seeking a Cloud Security Engineer to help secure, monitor, and improve our cloud-first technology environment.\nWork Arrangement: Hybrid – Primarily remote (Greater Los Angeles area) with bi-weekly on-site presence at our Valley Village office for in-person collaboration, meetings, project work, and on-site coverage when needed.\nAs a Cloud Security Engineer, you will support the design, implementation, and day-to-day administration of secure cloud infrastructure with a strong emphasis on AWS, identity and access management, and security auditing. This role’s primary focus is AWS cloud security, IAM configuration and governance, security operations, and audit participation and remediation. Secondary responsibilities include Tier 2/3 support and broader enterprise security support as needed, including acting as on-site backup when the IT Director is unavailable and in-office presence is required. The ideal candidate brings a solid foundation in AWS and cloud security, strong attention to detail, and an interest in growing further in cloud security engineering. Over time, this role is expected to expand in scope toward broader DevOps engineering capabilities, practical AI adoption, greater ownership of security initiatives, and the ability to back up the IT Director in administering core productivity and collaboration environments during planned absences.\nEssential Duties & Responsibilities\nPrimary Focus: AWS, Security & Auditing\nSupport the administration and security of AWS cloud infrastructure including IAM, VPC, EC2, RDS, CloudWatch, VPN, routing, and CIDR/IP range management.\nAdminister AWS IAM policies, roles, groups, and least-privilege access controls.\nSupport identity governance activities including access reviews, permission cleanup, role-based access alignment, SSO integrations, MFA, and related identity security controls.\nSupport cloud security monitoring, alert triage, vulnerability follow-up, and incident response activities.\nHelp enforce cloud security standards, secure configuration baselines, and least-privilege practices.\nParticipate in regular security audits across cloud infrastructure, identity systems, endpoints, and SaaS platforms.\nDocument audit findings, control gaps, remediation actions, and maintain audit evidence and security documentation.\nTrack remediation efforts and support alignment of security controls with established frameworks such as SOC 2, NIST CSF, ISO 27001, and CCPA.\nAssist with AWS infrastructure monitoring, alerting, and operational visibility using CloudWatch dashboards, alerts, and notifications.\nSupport AWS billing review, cost visibility, and optimization tracking.\nAssist with infrastructure configuration and automation using Terraform and AWS Systems Manager (SSM).\nSecondary Focus: Tier 2/3 Support & Enterprise Security\nProvide Tier 2/3 technical support for cloud systems, identity platforms, remote access, and security-related issues escalated from frontline support.\nSupport end users and internal teams with Tier 2/3 access, authentication, device, and connectivity issues that require deeper cloud or security expertise.\nTroubleshoot service interruptions, coordinate follow-up actions, and communicate updates to stakeholders while partnering with frontline support on issue resolution.\nWork on both escalated support tickets and larger cloud/security projects (e.g., IAM redesign, audit remediation, security tooling rollouts).\nCollaborate with the help desk / frontline support function to ensure efficient handoff of Tier 1 versus Tier 2/3 issues as business needs require.\nSupport the administration and continuous improvement of enterprise security controls across cloud, identity, endpoint, collaboration, and SaaS environments.\nParticipate in organization-wide security initiatives including policy implementation, security reviews, risk reduction efforts, and remediation tracking.\nHelp assess security posture across business systems and contribute to recommendations that improve overall enterprise security resilience.\nServe as an on-site backup to the IT Director for critical in-office needs at the Valley Village location when physical presence is required (e.g., hardware access, vendor visits, office-specific troubleshooting).\nGrowth Goals\nDevelop toward broader DevOps engineering capabilities, including infrastructure automation, deployment support, systems reliability, and operational efficiency in cloud environments.\nEvaluate practical AI-driven tools that can improve security operations, access reviews, audit preparation, reporting, and IT workflow efficiency.\nIdentify responsible uses of AI for automation, analysis, and operational productivity within cloud and security functions.\nStay current with emerging AI capabilities relevant to cloud security and provide recommendations for safe adoption.\nOver time, develop the capability to back up the IT Director in administering core productivity and collaboration environments during planned absences.\nDocumentation & Collaboration\nMaintain accurate documentation for AWS configurations, IAM policies, audit records, and security procedures.\nCollaborate with cross-functional teams to improve security controls and support project delivery.\nProvide clear communication and knowledge sharing with internal stakeholders.\nPosition Qualifications\nThis position requires excellent project and time management skills as well as the following qualifications:\nRequired\n2–5 years of experience in cloud infrastructure, cloud security, systems administration, or a related IT/security role.\nHands-on experience with AWS, especially IAM, VPC, EC2, CloudWatch, VPN, routing, and identity-related administration.\nExperience with IAM configuration, access control, permission reviews, security auditing, and cloud security responsibilities.\nFamiliarity with security documentation, audit preparation, control validation, and remediation tracking.\nWorking knowledge of SSO, MFA, least-privilege access, and identity governance concepts.\nFamiliarity with Terraform, AWS Systems Manager (SSM), or other infrastructure automation tools.\nTCP/IP, DNS, VPN, and general networking fundamentals.\nAbility to troubleshoot Tier 2/3 operational issues and provide hands-on escalated support when needed.\nPreferred\nAWS certifications preferred, especially AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or AWS Certified SysOps Administrator – Associate.\nFamiliarity with cloud security monitoring, vulnerability management, and incident response processes.\nExposure to compliance or security frameworks such as SOC 2, NIST CSF, ISO 27001, or CCPA.\nExperience with enterprise security initiatives across SaaS, endpoint, identity, or collaboration environments.\nInterest in evaluating AI-driven tools for security and IT operations.\nScripting and automation experience (PowerShell, Python, or Bash).\nPay: $100,000.00 - $120,000.00 per year\nBenefits:\n401(k)\n401(k) matching\nDental insurance\nEmployee assistance program\nFlexible spending account\nHealth insurance\nHealth savings account\nLife insurance\nPaid time off\nRetirement plan\nTuition reimbursement\nVision insurance\nWork Location: Hybrid remote in Valley Village, CA 91607","company":"Screen Engineasi","rawCompany":"screen engineasi","city":"Carmel Valley","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-08T14:21:52.879Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cloud Security Engineer","description":"Cloud Security Engineer\nScreen Engine/ASI — the leading technology innovator in media and entertainment market research, is seeking a Cloud Security Engineer to help secure, monitor, and improve our cloud-first technology environment.\nWork Arrangement: Hybrid – Primarily remote (Greater Los Angeles area) with bi-weekly on-site presence at our Valley Village office for in-person collaboration, meetings, project work, and on-site coverage when needed.\nAs a Cloud Security Engineer, you will support the design, implementation, and day-to-day administration of secure cloud infrastructure with a strong emphasis on AWS, identity and access management, and security auditing. This role’s primary focus is AWS cloud security, IAM configuration and governance, security operations, and audit participation and remediation. Secondary responsibilities include Tier 2/3 support and broader enterprise security support as needed, including acting as on-site backup when the IT Director is unavailable and in-office presence is required. The ideal candidate brings a solid foundation in AWS and cloud security, strong attention to detail, and an interest in growing further in cloud security engineering. Over time, this role is expected to expand in scope toward broader DevOps engineering capabilities, practical AI adoption, greater ownership of security initiatives, and the ability to back up the IT Director in administering core productivity and collaboration environments during planned absences.\nEssential Duties & Responsibilities\nPrimary Focus: AWS, Security & Auditing\nSupport the administration and security of AWS cloud infrastructure including IAM, VPC, EC2, RDS, CloudWatch, VPN, routing, and CIDR/IP range management.\nAdminister AWS IAM policies, roles, groups, and least-privilege access controls.\nSupport identity governance activities including access reviews, permission cleanup, role-based access alignment, SSO integrations, MFA, and related identity security controls.\nSupport cloud security monitoring, alert triage, vulnerability follow-up, and incident response activities.\nHelp enforce cloud security standards, secure configuration baselines, and least-privilege practices.\nParticipate in regular security audits across cloud infrastructure, identity systems, endpoints, and SaaS platforms.\nDocument audit findings, control gaps, remediation actions, and maintain audit evidence and security documentation.\nTrack remediation efforts and support alignment of security controls with established frameworks such as SOC 2, NIST CSF, ISO 27001, and CCPA.\nAssist with AWS infrastructure monitoring, alerting, and operational visibility using CloudWatch dashboards, alerts, and notifications.\nSupport AWS billing review, cost visibility, and optimization tracking.\nAssist with infrastructure configuration and automation using Terraform and AWS Systems Manager (SSM).\nSecondary Focus: Tier 2/3 Support & Enterprise Security\nProvide Tier 2/3 technical support for cloud systems, identity platforms, remote access, and security-related issues escalated from frontline support.\nSupport end users and internal teams with Tier 2/3 access, authentication, device, and connectivity issues that require deeper cloud or security expertise.\nTroubleshoot service interruptions, coordinate follow-up actions, and communicate updates to stakeholders while partnering with frontline support on issue resolution.\nWork on both escalated support tickets and larger cloud/security projects (e.g., IAM redesign, audit remediation, security tooling rollouts).\nCollaborate with the help desk / frontline support function to ensure efficient handoff of Tier 1 versus Tier 2/3 issues as business needs require.\nSupport the administration and continuous improvement of enterprise security controls across cloud, identity, endpoint, collaboration, and SaaS environments.\nParticipate in organization-wide security initiatives including policy implementation, security reviews, risk reduction efforts, and remediation tracking.\nHelp assess security posture across business systems and contribute to recommendations that improve overall enterprise security resilience.\nServe as an on-site backup to the IT Director for critical in-office needs at the Valley Village location when physical presence is required (e.g., hardware access, vendor visits, office-specific troubleshooting).\nGrowth Goals\nDevelop toward broader DevOps engineering capabilities, including infrastructure automation, deployment support, systems reliability, and operational efficiency in cloud environments.\nEvaluate practical AI-driven tools that can improve security operations, access reviews, audit preparation, reporting, and IT workflow efficiency.\nIdentify responsible uses of AI for automation, analysis, and operational productivity within cloud and security functions.\nStay current with emerging AI capabilities relevant to cloud security and provide recommendations for safe adoption.\nOver time, develop the capability to back up the IT Director in administering core productivity and collaboration environments during planned absences.\nDocumentation & Collaboration\nMaintain accurate documentation for AWS configurations, IAM policies, audit records, and security procedures.\nCollaborate with cross-functional teams to improve security controls and support project delivery.\nProvide clear communication and knowledge sharing with internal stakeholders.\nPosition Qualifications\nThis position requires excellent project and time management skills as well as the following qualifications:\nRequired\n2–5 years of experience in cloud infrastructure, cloud security, systems administration, or a related IT/security role.\nHands-on experience with AWS, especially IAM, VPC, EC2, CloudWatch, VPN, routing, and identity-related administration.\nExperience with IAM configuration, access control, permission reviews, security auditing, and cloud security responsibilities.\nFamiliarity with security documentation, audit preparation, control validation, and remediation tracking.\nWorking knowledge of SSO, MFA, least-privilege access, and identity governance concepts.\nFamiliarity with Terraform, AWS Systems Manager (SSM), or other infrastructure automation tools.\nTCP/IP, DNS, VPN, and general networking fundamentals.\nAbility to troubleshoot Tier 2/3 operational issues and provide hands-on escalated support when needed.\nPreferred\nAWS certifications preferred, especially AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, or AWS Certified SysOps Administrator – Associate.\nFamiliarity with cloud security monitoring, vulnerability management, and incident response processes.\nExposure to compliance or security frameworks such as SOC 2, NIST CSF, ISO 27001, or CCPA.\nExperience with enterprise security initiatives across SaaS, endpoint, identity, or collaboration environments.\nInterest in evaluating AI-driven tools for security and IT operations.\nScripting and automation experience (PowerShell, Python, or Bash).\nPay: $100,000.00 - $120,000.00 per year\nBenefits:\n401(k)\n401(k) matching\nDental insurance\nEmployee assistance program\nFlexible spending account\nHealth insurance\nHealth savings account\nLife insurance\nPaid time off\nRetirement plan\nTuition reimbursement\nVision insurance\nWork Location: Hybrid remote in Valley Village, CA 91607","datePosted":"2026-08-08T14:21:52.879Z","dateModified":"2026-08-08T14:21:52.879Z","hiringOrganization":{"@type":"Organization","name":"Screen Engineasi","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Carmel Valley","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"4d41f567000315dbe4e84dbc"},"url":"https://jobsearcher.com/jobs/4d41f567000315dbe4e84dbc"}}