Principal Cloud Security Engineer @ Improvix Technologies
placeWashington, District of Columbia, United States
attach_money $160,000 - $180,000
businessOn Site
scheduleFull Time
Posted 23 days ago
Your Application Journey
Interview
Email Hiring Manager
****** @improvixtechnologies.com
Recommended after applying
Job Details
Overview
The Principal Cloud Security Engineer at Improvix Technologies is responsible for building and securing cloud infrastructure at scale across AWS, Azure, and GCP. This role demands expertise in cloud security, development lifecycle, and the DevSecOps methodology.
Key Responsibilities
- Cloud Security Architecture & Engineering: Design secure architecture for Commercial, GovCloud, and IL6 enclaves; enforce security baselines using CIS, NIST 800-53, FedRAMP, etc; lead architecture reviews and threat modeling.
- Automation & DevSecOps: Build and maintain Infrastructure as Code modules (Terraform); integrate CI/CD pipelines with automated security scans; develop automated guardrails and remediation pipelines.
- Security Governance and Compliance: Support ATO compliance efforts; partner with compliance officers and auditors; implement centralized logging, monitoring, and incident response.
- Collaboration & Leadership: Guide security and platform engineers; partner with architects, developers, and compliance teams; act as a cloud security subject matter expert.
Required Qualifications
- Bachelor Degree in computer science or relevant technical degree, or equivalent industry experience.
- 8+ years of cybersecurity or cloud engineering experience; 5+ years in cloud security.
- Hands-on experience with AWS, GCP, Azure, or Oracle cloud environments.
- Expertise in native cloud security tools and Infrastructure as Code (Terraform, CloudFormation, ARM/Bicep).
- Proficiency in programming/scripting languages like Python, Go, PowerShell, or Bash.
- Strong understanding of cloud IAM/RBAC, key management, networking, and encryption.
- Experience with application security standards and compliance frameworks.
- Proven track record embedding security in Agile/DevSecOps teams.
- Strong communication and leadership skills.
Preferred Qualifications
- Experience with securing GovCloud, DoD IL6, or other restricted cloud environments.
- Knowledge of ServiceNow for CMDB integrations and security workflows.
- Familiarity with supply chain security, zero trust architectures, and enterprise identity platforms.
- Relevant certifications such as AWS Certified Security - Specialty, Azure Security Engineer Associate, Google Professional Cloud Security Engineer, OSCP, or CISSP.
- Experience with Kubernetes security tools like OPA/Gatekeeper, PodSecurityStandards, Prisma, or Twistlock.
Key skills/competency
- Cloud Security
- DevSecOps
- Terraform
- CI/CD
- Compliance
- Automation
- Threat Modeling
- Agile
- Programming
- Leadership
How to Get Hired at Improvix Technologies
🎯 Tips for Getting Hired
- Customize your resume: Emphasize cloud security and DevSecOps experience.
- Research Improvix Technologies: Understand their cloud security projects and compliance efforts.
- Showcase technical skills: Highlight Terraform, programming, and automation expertise.
- Prepare for interviews: Be ready for scenario-based and technical questions.
📝 Interview Preparation Advice
Technical Preparation
circle
Review Terraform modules and IaC concepts.
circle
Practice cloud security tool configurations.
circle
Revise compliance frameworks and guidelines.
circle
Update scripting skills in Python or Go.
Behavioral Questions
circle
Describe leading a technical team.
circle
Explain resolving complex project challenges.
circle
Share examples of security decision-making.
circle
Detail collaboration in Agile environments.
Frequently Asked Questions
What clearance is needed for the Principal Cloud Security Engineer role at Improvix Technologies?
keyboard_arrow_down
How important is DevSecOps experience for this Principal Cloud Security Engineer?
keyboard_arrow_down
Which cloud platforms should candidates be familiar with for Improvix Technologies?
keyboard_arrow_down
What kind of programming skills are expected for the Principal Cloud Security Engineer role?
keyboard_arrow_down
How does Improvix Technologies align security with compliance in this role?
keyboard_arrow_down