Senior Cloud Infrastructure Engineer
TriNetAbout the role
TriNet is a leading provider of comprehensive human resources solutions for small to midsize businesses (SMBs). We enhance business productivity by enabling our clients to outsource their HR function to one strategic partner and allowing them to focus on operating and growing their core businesses. Our full-service HR solutions include features such as payroll processing, human capital consulting, employment law compliance and employee benefits, including health insurance, retirement plans and workers’ compensation insurance.
TriNet has a nationwide presence and an experienced executive team. Our stock is publicly traded on the NYSE under the ticker symbol TNET. If you’re passionate about innovation and making an impact on the large SMB market, come join us as we power our clients’ business success with extraordinary HR.
Don't meet every single requirement? Studies have shown that women and people of color are less likely to apply to jobs unless they meet every single requirement. At TriNet, we are dedicated to building a diverse, inclusive and authentic workplace, so if you're excited about this role but your past experience doesn't align perfectly with every single qualification in the job description, we encourage you to apply anyways. You may just be the right candidate for this or other roles.
JOB SUMMARY
We are looking for a Senior Cloud Security Engineer who specializes in Amazon Web Services (AWS) environments to participate in a multidisciplinary information security team. The right individual will directly contribute to the execution of the firm's technology transformation strategy, cloud architecture and assist in the design and implementation of security controls around cloud-based applications, across all types (including Infrastructure, Platform, and Software as a Service (IaaS/PaaS/SaaS).
Essential Duties/Responsibilities
• Develop Cloud Security Controls Framework aligned to security frameworks CSA, CIS and NIST for multi-cloud environment.
• Design and develop security architectures for cloud and cloud/hybrid-based systems. Possess a firm understanding of the offerings within AWS platforms.
• Designing and Developing Cloud-specific security policies, standards and procedures e.g. Identity and Access Management (SSO, SAML), and Privilege Management, Firewall management, SSL/IPSec, Encryption Key Management (BYOK), Security incident and event management (SIEM), Data protection (DLP, encryption), Vulnerability Management in partnership with Infrastructure Services, and Application Development.
• Performing Cloud Security Assessments of Cloud platforms/environments using industry standard frameworks such as ISO, CSA-CSM and NIST.
• Executing on Cloud security engagements during different phases of the lifecycle assess, design, and implementation.
• Troubleshooting and resolving complex security issues in AWS, applying fundamental systems security understanding, skills, expertise, and experience to support the planning, design, development, and implementation of complex systems
• Ensuring that relevant threat and vulnerability data is considered in support of security-relevant decisions.
• Providing input to analyses of alternatives and to requirements, engineering, and risk trade-off analyses to achieve a cost-effective security architectural design for protections that enable mission/business success. -Providing the evidence necessary to support assurance claims and to substantiate the determination that the system is sufficiently trustworthy; -Conducting security risk management activities, producing related security risk management information, and advising the engineering team and key stakeholders on the security-relevant impact of threats and vulnerabilities to the mission/business supported by the system.
QUALIFICATIONS
Education
Bachelor's Degree or equivalent experience - Preferred
Work Experience
Typically 5+ years
Knowledge, Skills and Abilities:
- The ideal candidate will have a strong foundation across Amazon Web Services (AWS), AWS security capabilities and the ability to communicate security and risk-related concepts to key stakeholders along with experience with the following:
- IAM
- Detective & Guard Duty, Security Hub
- CloudTrail, CloudWatch, CloudFormation
- Key Management Service
- EC2, S3, RDS, VPC, Route 53
- Identity and Access Management principals, including B2B and B2C cloud design and implementation
- Securing network and enterprise cloud applications
- Privileged access management technologies
- Strong understanding of security best practices and security frameworks, such as ISO/IEC 27001,
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s