Saronic Logo

Saronic

Security Engineer, Cloud Security

Posted One Month Ago
In-Office
Austin, TX, USA
Mid level
In-Office
Austin, TX, USA
Mid level
Own continuous cloud security posture across commercial AWS and AWS GovCloud: detect and remediate misconfigurations, run cloud vulnerability management, build Terraform-based guardrails and policy-as-code, design least-privilege IAM and secrets/key management, build cloud-native detections and automated remediation, and support SOC investigations while mapping controls to government and commercial frameworks for audit readiness.
The summary above was generated by AI

Saronic Technologies is a leader in revolutionizing autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations through autonomous and intelligent platforms.

Job Overview

Security at Saronic is a force multiplier, not a blocker. We’re looking for a Security Engineer for our Cloud Security team to own the continuous security posture of the cloud that runs an autonomous fleet across both commercial AWS and AWS GovCloud and to build the guardrails that let every team ship fast with security baked in from the start. You’ll design the secure-by-default patterns teams reach for on their own, treating repeat findings as a signal to build a control rather than re-answer a ticket, and prioritizing by real attack path rather than alert count.

You’ll work alongside Product Security, Infrastructure, Software, Information Technology, Enterprise Technology, and Internal Applications to keep a multi-account cloud environment secure, compliant, and auditable across its full lifecycle.

This is an opportunity to own cloud security posture across commercial and GovCloud, build guardrails that speed engineering up rather than slow it down, turn compliance into automated and continuous evidence, and work with strong engineers in a high-trust, low-ego environment.

 

Responsibilities
  • Posture & Compliance: Own continuous cloud security posture management (CSPM) across all cloud accounts, detect misconfigurations and drift, and drive remediation with the teams that own the resources. Map technical controls to both government and commercial frameworks (CMMC, NIST SP 800-171, FedRAMP/IL baselines) and keep controls evidence current and audit-ready.

  • Cloud Vulnerability Management: Run cloud vulnerability management at scale, find issues, prioritize them by real attack path and exposure rather than raw CVSS, and drive remediation to closure. Use tooling such as Prowler and a CNAPP, and automate remediation wherever possible.

  • Guardrails & Secure-by-Default: Build reusable Terraform modules, Service Control Policies, permission boundaries, and policy-as-code that make the secure path the easy path, so whole classes of misconfiguration disappear before they reach production. Replace manual security gates with automated, self-service guardrails.

  • Identity, Secrets & Data Protection: Design least-privilege IAM across accounts and workloads, hunt privilege-escalation and cross-account trust paths, govern secrets management, and standardize encryption and key-management patterns.

  • Detection, Response & SOC Support: Build and tune cloud-native detections (CloudTrail, GuardDuty, Config, Security Hub) and automated remediation, and support the Security Operations team as they investigate, triage, and remediate cloud-related cases across our infrastructure, including credential compromise, exposed resources, and data exfiltration, reconstructing activity from logs and automating containment. Feed every incident back into new guardrails and detections.

     

Qualifications
  • 3+ years of hands-on cloud security, infrastructure security, or DevSecOps experience, or an equivalent combination of experience and demonstrated ability

  • Depth in AWS security services and architecture (IAM, Organizations/SCPs, CloudTrail, Config, GuardDuty, Security Hub, KMS, VPC)

  • Strong infrastructure-as-code (Terraform) and policy-as-code experience

  • Hands-on cloud vulnerability management and CSPM tooling (e.g., Prowler), with a track record of driving cloud findings to remediation

  • A track record of building guardrails or patterns that other teams adopted without friction

  • Proficiency in scripting for security automation

  • Ability to obtain and maintain a U.S. security clearance

     

Physical Demands
  • Prolonged periods of sitting at a desk and working on a computer

  • Occasional standing and walking within the office

  • Manual dexterity to operate a computer keyboard, mouse, and other office equipment

  • Visual acuity to read screens, documents, and reports

  • Occasional reaching, bending, or stooping to access file drawers, cabinets, or office supplies

  • Lifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages)

Preferred Qualifications
  • Experience in AWS GovCloud, FedRAMP, or IL4/IL5 environments

  • Azure and on-prem security experience a plus

  • Multi-account landing-zone and organizational security design

  • CSPM with automated remediation at scale

  • Container or Kubernetes security

  • IAM attack-path analysis and outcome-based metrics

  • Familiarity with NIST SP 800-171/800-53

  • Experience in defense, aerospace, robotics, or other high-assurance environments

Benefits

Medical Insurance: Comprehensive health insurance plans covering a range of services

Saronic pays 100% of the premium for employees and 80% for dependents

Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care

Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents

Time Off: Generous PTO and Holidays

Parental Leave: Paid maternity and paternity leave to support new parents

Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses

Retirement Plan: 401(k) plan with company match

Stock Options: Equity options to give employees a stake in the company’s success

Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage

Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline

Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office

Saronic CCPA Notice for Candidates and California Employees

If this role is based in the United States, it requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in 8 U.S.C. 1324b(a)(3).
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits. We are also committed to providing reasonable accommodations for qualified individuals with disabilities.

HQ

Saronic Austin, Texas, USA Office

Austin, TX, United States

Similar Jobs

14 Days Ago
Hybrid
Senior level
Senior level
Financial Services
Lead the design, deployment, automation, and maintenance of secure digital forensics platforms across AWS, Azure, GCP, and on-premises environments. Build Terraform infrastructure, CI/CD pipelines, automation, cloud security controls, testing, monitoring, and resiliency capabilities. Collaborate with cybersecurity and cloud teams to support incident response, compliance, high availability, and platform governance. Review AI-assisted code and security recommendations while maintaining technical documentation and operational procedures.
Top Skills: AWSAzureBashCi/CdContainersGitGoogle Cloud PlatformInfrastructure As CodeLinuxPowershellPythonTerraformVirtual Desktop InfrastructureVMwareWindows
25 Days Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
Mid level
Mid level
Artificial Intelligence • Big Data • Cloud • Security • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Own and improve vulnerability management across cloud, on-premises, network, and endpoint environments. Responsibilities include scanning, triage, risk-based prioritization, remediation coordination, SLA tracking, exception management, closure validation, asset reconciliation, reporting, incident support, on-call participation, and audit documentation. The role partners with Engineering, SRE, IT, and Infrastructure teams and uses security tooling and AI-assisted workflows to reduce exposure and recurring vulnerabilities.
Top Skills: Api AutomationAWSCmdbQualysRapid7 InsightvmTenableWiz
14 Days Ago
Hybrid
124K-280K Annually
Senior level
124K-280K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Leads teams designing and deploying AI-driven enterprise and cloud security solutions. Responsibilities include developing machine learning systems, integrating data infrastructure and pipelines, performing advanced modeling and analysis, and building AI applications with Python, Java, and C++. The role involves client engagement, strategic problem-solving, stakeholder validation, coaching, process innovation, and operational excellence while addressing complex cybersecurity and privacy challenges.
Top Skills: Ai SystemsAWSC++Cloud SecurityData EngineeringData PipelinesDatabricksGCPJavaMachine LearningAzurePythonScikit-LearnSnowflakeTensorFlow

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account