waypointjobs

SAMC SitusAMC Holdings Corp

Sr Infrastructure Cloud Security Engineer - AWS - Remote

Remote — United States (see country and timezone requirements)

Check who can apply and the requirements below before continuing.

Job description

SitusAMC is where the best and most passionate people come to transform our client’s businesses and their own careers. Whether you’re a real estate veteran, a passionate technologist, or looking to get your start, join us as we work together to realize opportunities for everyone, we proudly serve.

At SitusAMC, we are looking to match your unique experience with one of our amazing careers, so that we can help you realize your potential and career growth within the Real Estate Industry. If you are someone who can be yourself, advocate for others, stay nimble, dream big, own every outcome, and think global but act local – come join our team!

The VP of Cloud & Application Security isn’t just a strategist but must be deeply technical, capable of rolling up their sleeves, and leading complex security initiatives across modern cloud environments and application stacks. This leader will define strategy, drive execution, and personally dive into architecture reviews, threat modeling, and hands-on validation when needed.

You will play a pivotal role in safeguarding our organization's sensitive data and infrastructure within the cloud environment. Your responsibilities will include designing, implementing, and maintaining robust security measures to protect against cyber threats. You will collaborate with cross-functional teams to ensure compliance with industry standards and regulations, while also staying abreast of emerging security trends and technologies. Your expertise will be instrumental in mitigating risks and safeguarding our organization's digital assets in cloud platform like AWS and Microsoft Azure.Essential Job Functions:

Help build and define our cloud and application security posture. Enable cyber resilience. Help implement various zero trust initiatives.

Design, implement, and maintain comprehensive security controls for cloud hosted infrastructure, applications and data.

Lead hardening efforts such as IAM, network segmentation, PAM, workload protection, CI/CD integration, container/Kubernetes security, etc.

Evaluate and implement cloud-native and third-party security tooling

Monitor and respond to cloud security incidents and lead root cause analysis in a timely manner

Mature existing AppSec program, including security SDLC, code scanning, SCA, threat modeling, and pen testing.

Partner directly with engineering leaders to bake security into product roadmaps

Design and implement secure coding standards and developer education programs

Support hands-on code review and validation for high-risk or high-impact applications

Develop and implement security policies, standards, and procedures to ensure compliance with industry best practices and regulatory requirements as it relates to cloud engineering.

Stay up-to-date with the latest security trends, threats, and technologies to continuously improve our security posture

Provide guidance and training to internal teams on cloud and AppSec practices

Define KPIs and metrics that make security measurable and transparent

Drive a culture of security across engineering, development, and product teams

Qualifications/ Requirements:

Bachelor’s degree in a technical field from an accredited college/university, or equivalent job experience.

Minimum of 8+ years of industry and/or relevant experience, typically with 2+ years in an AVP level role or external equivalent.

At least 7 years of direct relevant work experience in cloud security engineering, application/product security or a similar role

Relevant certifications such as CISSP, CEH, GIAC, ISSAP, CISM or other relevant security-focused certifications preferred

Familiarity with cloud security principles and technologies (e.g., AWS and Azure).

Highly motivated self-starter that can manage multiple deliverables independently in a fast-paced environment

Broad knowledge across the security, insider threat, risk management and compliance domains.

Proficiency in scripting and automation (e.g., Python, PowerShell, Terraform)

Familiarity with container security technologies (Docker, Kubernetes).

Have familiarity with infrastructure as code (IaC) tooling

Knowledge of encryption and key management practices.

Excellent risk based problem-solving, analytical, and communication skills.

Ability to work independently and as part of a team.

Note: This job description is not intended to be all inclusive or exclusive. At any time, employees may perform other related duties as required to meet the ongoing needs of the organization and participate in additional trainings. SitusAMC does not accept unsolicited resumes from staffing agencies, search firms or any third parties. Any unsolicited resume submitted to SitusAMC in any manner will be considered SitusAMC property, and SitusAMC will not pay a fee for any placement resulting from the receipt of an unsolicited resume.

The annual full time base salary range for this role is

$135,000.00 - $180,000.00Specific compensation is determined through interviews and a review of relevant education, experience, training, skills, geographic location and alignment with market data. Additionally, certain positions may be eligible to receive a discretionary bonus as determined by bonus program guidelines, position eligibility and SitusAMC Senior Management approval. SitusAMC offers PTO and paid holidays, the terms of which are set forth in the program policies. All full time employees also are eligible to participate in various benefit plans, including medical, dental, vision, life, disability insurance and 401K; in each case in accordance with the terms of the applicable plans.

Pay Transparency Nondiscrimination Provision

SitusAMC is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

Know Your Rights, Workplace Discrimination is Illegal

Originally posted on Himalayas

Who can apply

Eligible countries: United States. Accepted UTC offsets: UTC-10, UTC-9, UTC-8, UTC-7, UTC-6, UTC-5, UTC+14. Review the full description for employer-specific work authorization, residency and schedule requirements.

Ready for your next step?Apply on the official website
Apply on Himalayas ↗

Explore related searches

Current related jobs

infisical

Jobicy

Senior Full Stack Engineer

Remote — Brazil, Canada, Europe, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Mission

Remote — USA

Salary not specifiedRemote

The Music Mission enables music creators to grow, engage, and monetize their fan bases on Spotify. Central to the Music Mission's vision is the d…

Listing review due 2026-10-07View job

Spotify

Jobicy

Data Scientist - Music Promotion

Remote — USA

Salary not specifiedRemote

The Music Mission enables Music creators to grow, engage & monetize their fan bases on Spotify. Central to the Music Mission's vision is the deve…

Listing review due 2026-10-07View job

infisical

Jobicy

Strategic Finance

Remote — Canada, USA

Salary not specifiedRemote

Infisical is the open source security infrastructure platform that engineers use for secrets management, certificates, and privileged access mana…

Listing review due 2026-10-07View job