Jobs and Careers
ME

Principal, Cloud Security Engineer

Mercedes-Benz Group AG
United Statesfull_timeVerifiedPosted 19 May 2026

About the role

Tätigkeitsbereich:IT/Telekommunikation
Fachabteilung:IT North America
Gesellschaft:Mercedes-Benz USA, LLC
Standort:Mercedes-Benz USA, LLC Corporate Headquarters, Atlanta, GA
Startdatum:sofort
Veröffentlichungsdatum:19.05.2026
Stellennummer:MER00042O4
Arbeitszeit:Vollzeit
Bewerben
Aufgaben

About Us
Mercedes-Benz is USA is responsible for the sales, marketing and service of all Mercedes-Benz and Maybach products in the United States. In our people, you will find tremendous commitment to our corporate values. Our products and employees reflect this dedication. We are looking for diverse top-notch individuals to join the Mercedes-Benz Team and uphold these hallmarks.

Job Overview

We are seeking a highly skilled and proactive individual to design, implement, and maintain secure cloud infrastructure across multi cloud environments (Azure, AWS, GCP). This role ensures alignment with enterprise security policies and regulatory requirements while safeguarding cloud assets, maintaining compliance, and supporting secure digital transformation initiatives.

The Principal, Cloud Security Engineer contributes to the development of the system design and application architecture and ensures that the security requirements, RISE (Regulations for Information Security) will be fulfilled by the project and thus information security risks are mitigated.

This role will lead the team through establishing highly effective policies based on the RISE Cybersecurity Framework, establishing sustainable processes for assessing and tracking cybersecurity risk, performing security control testing, and delivering performance metrics and reporting for each program under its management scope.

Experience or familiarity with the use of AI driven security technologies, including generative AI, AI/ML, and intelligent or autonomous agents, to support cloud security operations, threat detection, vulnerability management, risk management, and compliance activities, in accordance with enterprise AI governance and security standards, is preferred.

Candidate will possess a strong understanding of the RISE Cybersecurity Framework, understanding of performing risk assessment, as well as performing technical control assessment.
 

Responsibilities

Cloud Security Operations & Governance
•    Lead cloud security governance for all cloud-hosted applications and services, ensuring alignment with RISE security requirements and Mercedes-Benz cloud security standards.
•    Conduct cloud application and architecture security reviews to ensure compliance with security policies, data protection requirements, and regulatory standards.
•    Develop, Manage and enhance cloud security dashboards (e.g., workload protection, posture management, policy compliance, vulnerability trends).
•    Oversee Cloud Security Posture Management (CSPM), ensuring continuous compliance monitoring, remediation tracking, and risk reporting.
•    Ensure proper configuration, provisioning, and ongoing assessment of cloud environments across AWS, Azure, and other MB-approved cloud platforms.
•    Support secure cloud migration initiatives by embedding security controls, encryption, identity practices, and workload protection early in the lifecycle.
•    Coordinate cloud-related security incidents, investigations, and SOC escalations.
•    Perform cloud vulnerability management activities including code scanning, FOSS, GitHub, and Qualys scans for cloud workloads.
•    Support implementation of zero-trust principles in cloud networks, applications, and identity structures.

SDLC – Security Implementation on SDLC Gates
Secure Development Lifecycle Integration
•    Embed cybersecurity requirements at all SDLC gates, ensuring security acceptance criteria are fulfilled before progressing to next stages.
•    Collaborate with development and architecture teams to define security technical requirements and validate their implementation.
•    Support security in DevOps/DevSecOps processes, including CI/CD pipeline checks, automated scanning, and secure coding practices.
•    Perform technical control assessments throughout the SDLC, including code reviews, architecture reviews, and threat modeling.
•    Ensure vulnerabilities identified through SAST, DAST, dependency checks, and container scans are properly triaged and remediated.
•    Work with application teams to implement countermeasures and design secure solutions that meet business and compliance needs.
•    Provide guidance and approval for security controls during design, testing, deployment, and production cutover.
• 

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Mercedes-Benz Group AG

View company profile →