Lead Cloud Security Engineer
Reinsurance Group of AmericaAbout the role
You desire impactful work.
You’re RGA ready
RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 200 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.
The Lead Cloud Security Engineer will build and operate security foundations across a large-scale AWS environment. The person in this role will ship secure-by-default infrastructure, automate controls, and improve signal-to-noise so teams can move faster without taking on unnecessary risk.
This position partners closely with platform and application teams to embed security into standard patterns and CI/CD—favoring automation over manual reviews.
Principle Duties
Design and operate cloud security controls across a large, multi-account AWS organization using infrastructure as code and automation.
Build and maintain Terraform modules and guardrails that make secure defaults easy (identity boundaries, encryption, logging).
Operate and tune CSPM (e.g., Wiz, Prisma) and CIS-aligned baselines to reduce risk and reduce noise.
Build automation in Python and improve Jenkins pipelines to deploy controls consistently through CI/CD.
Integrate security tooling with platform services via APIs (and lightweight middleware when needed), using Git-based workflows.
Ensure centralized, reliable logging to support detection, investigation, and incident response; drive preventative improvements as needed.
Partner with engineering teams to prioritize remediation through self-service patterns and clear documentation.
Reduce manual security requests through automation and self-service patterns
Foster consistent security tooling configuration across the AWS organization
Reduce repeat findings and lower operational noise from security tooling
Education
Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent experience - Required
Master’s degree in Arts/Sciences (MA/MS) or professional industry certification - Preferred
Work Experience, Skills and Abilities
6+ years in cloud security, platform security, or infrastructure engineering (hands-on delivery) - Required
Strong AWS security experience in large environments (org/multi-account controls, IAM, logging/monitoring) - Required
Strong hands-on skill with Terraform, Python, Bash, and CI/CD (Jenkins or equivalent) - Required
Experience with CSPM (Wiz and/or Prisma) and implementing CIS-aligned baselines - Required
Comfort with Git workflows, APIs/integrations, and Linux/terminal fundamentals - Required
Strong AWS security experience (org-level controls, IAM, logging/monitoring) in large multi-account environments - Required
Experienced in the adoption of automation and repeatable patterns over manual process - Required
Commands clear communications and collaboration skills, improving security without becoming a blocker - Required
Certifications such as AWS Security Specialty, Solutions Architect, CCSP, etc. - Preferred
Experience securing CI/CD and software supply chain pipelines.
DevSecOps and/or container security experience - Preferred
Candidates located in the immediate St. Louis Missouri area are preferred for this role, however remote candidates will be considered
#LI-CW1
#LI-Remote
#LI-Hybrid
What you can expect from RGA:
Gain valuable knowledge from and experience with diverse, caring colleagues around the world.
Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.
Join the bright and creative minds of RGA, and experience vast, endless career potential.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s