Senior Security Engineer - Cloud Security
$150k - $251.9kPagerDuty
Job Description
Job Description
PagerDuty, Inc. (NYSE: PD) is the global leader in AI-first digital operations. By automatically detecting, diagnosing, and remediating issues, the PagerDuty Platform orchestrates AI agents and automated workflows with context from over 750 integrations. Trusted by approximately two-thirds of the Fortune 100 and nearly half of the Fortune 500, PagerDuty is the industry standard for organizations scaling resilient, autonomous operations. Notable customers include Chipotle, Cloudflare, Docusign, Fox, Nvidia, Salesforce, Spotify, Zoom and more. We are growing rapidly and hiring top talent with leading AI skills across engineering, sales, product, marketing, and beyond as we build the leading digital operations platform.
.
Senior Security Engineer — Cloud Security (Platform, Identity & Cryptography)PagerDuty is seeking a Senior Security Engineer to join our Cloud Security team, part of Security Engineering within the CTO organization. This is a preventive, platform-focused role owning security posture across our multi-account AWS environment and the Kubernetes platforms running on it, with deep responsibility for identity & access management and cryptography (PKI and encryption). You'll partner with 30+ engineering teams, shipping controls as code that roll out without disrupting engineering — including across our FedRAMP footprint.
*This role will require 2 days per week in our Atlanta office...*
What you'll do- Harden PagerDuty's AWS and Kubernetes environments against CIS Benchmarks, DISA STIGs, and FedRAMP Moderate baselines across a multi-account, multi-org footprint — proving results through evidence, config-remediation tooling, and KPIs that track posture, identity, and encryption/PKI health so we know where we stand and where the gaps are.
- Harden EKS clusters and the Istio service mesh against the CIS Kubernetes Benchmark, DISA Kubernetes STIG, and NSA/CISA hardening guidance.
- Design and enforce Kubernetes RBAC, least-privilege workload identity, and container supply-chain controls (image provenance, admission control, runtime policy).
- Own PKI and encryption standards across the environment — certificate lifecycle and management, KMS-backed key management and rotation, TLS/mTLS (including within the Istio mesh), and encryption-at-rest and in-transit requirements — and define the standards other teams build against.
- Design and roll out Service Control Policy (SCP) guardrails and least-privilege IAM/PAM across dozens of accounts and multiple orgs.
- Lean into AI to unlock efficiency and velocity — consume agentic tooling in day-to-day work and build lightweight agentic solutions that streamline repetitive security work: posture triage, threat modeling, risk assessment, incident enrichment and investigation, compliance-evidence generation, and detection tuning.
- Shape detection strategy for the domains you own — Kubernetes/Istio, identity, and cryptography — authoring and tuning detections in our SIEM stack, defining what "good" coverage looks like for these domains, and threat hunting for container escape, lateral movement, anomalous mesh traffic, and identity or credential abuse.
- Participate in the team's on-call rotation, triaging and dispositioning cloud and Kubernetes threat alerts and acting as Incident Lead during incidents — driving containment, blast-radius/exposure analysis, and post-incident review.
- Automate security controls as code using Terraform and Python — including Kubernetes policy-as-code and tool-to-tool integrations that reduce manual work.
- Partner closely with our AppSec and GRC teams — aligning platform controls with secure-development needs and translating hardening, identity, and encryption work into audit and compliance evidence.
- Mentor and guide teammates on platform, identity, and cryptography security practices, and contribute to roadmap and annual planning. At the senior end of this role, you'll help draft external- and auditor-facing communication and represent the team in cross-team planning.
- 5+ years as a Security Engineer in an AWS-native, microservice SaaS environment, with a strong focus on cloud infrastructure, container, and identity security.
- Deep, hands-on expertise securing Kubernetes and containerized environments — EKS, RBAC, Kubernetes admission control, network policy, and workload identity.
- Container runtime and image security experience; familiarity with a service mesh such as Istio strongly preferred.
- Strong, hands-on expertise in PKI and cryptography — certificate lifecycle/management, TLS/mTLS, key management and rotation (AWS KMS or similar HSM/KMS), and encryption-at-rest/in-transit standards.
- Deep, hands-on expertise with AWS security services, including but not limited to: IAM family, Organizations/SCPs, Secrets Manager, KMS, GuardDuty, CloudTrail, and Config.
- Ability to inform and drive detection strategy within your domains — comfortable authoring and tuning detections in a modern SIEM and threat hunting for Kubernetes, identity, and cryptography-related threats.
- A builder's mindset toward AI — hands-on experience using agentic/AI coding tools and an interest in developing lightweight automation and agents to accelerate security work.
- Experience with security incident response and on-call — triaging alerts and coordinating containment during incidents.
- Proficiency with Infrastructure as Code and at least one programming language (Terraform plus Python, or similar), and comfort automating controls, including Kubernetes policy-as-code.
- Proven ability to scope ambiguous projects, break complex work into actionable items, and drive them to completion with a high degree of ownership.
- Hands-on experience hardening cloud and Kubernetes environments to CIS Benchmarks and DISA STIGs, and operating within FedRAMP Moderate (or similar) authorization; familiarity with NIST CSF, SOC 2, or ISO 27001.
- Experience building agentic or AI-assisted security automation (e.g., agent frameworks, LLM-backed tooling, and translating playbooks into automated pipelines).
- Familiarity with securing AI/ML or agentic workloads running on cloud and Kubernetes infrastructure.
- Experience with cloud-native security tooling such as a CNAPP platform and an EDR/runtime-protection agent, including container and Kubernetes runtime protection.
- Experience partnering with AppSec and GRC teams to align controls and produce compliance evidence.
- Azure security exposure (Entra ID, Defender for Cloud) a plus, but not required.
- Demonstrated history of mentoring engineers and strong written and verbal communication skills.
- Working knowledge of PagerDuty's Incident Management and Process Automation products.
The base salary range for this position is 150,000 - 251,900 USD. This role may also be eligible for bonus, commission, equity, and/or benefits.
Our base salary ranges are determined by role, level, and location. The range, which is subject to change based on primary work location, reflects the minimum and maximum base salary we expect to pay newly hired employees for the position. Within the range, we determine pay for an individual based on a number of factors including market location, job-related knowledge, skills/competencies and experience.
Your recruiter can share more about the specific offerings for this role, as well as the salary range for your primary work location during the hiring process.
Hesitant to apply?
We encourage you to submit your resume even if you don't meet every requirement. We value potential and consider each candidate's full professional story. Whether you're exploring a career change or taking your next step, we look forward to reviewing your application. If this just isn’t the right role or time - sign up for job alerts!
Where we work
PagerDuty operates a hybrid work model with offices in 8 major cities: Atlanta, Lisbon, London, San Francisco, Santiago, Sydney, Tokyo, and Toronto. While we offer flexibility within our established locations, we cannot employ candidates residing in:
Location restrictions: Australia: Northern Territory, Queensland, South Australia, Tasmania, Western Australia
Canada: Alberta, Manitoba, Newfoundland, Northwest Territories, Nunavut, PEI, Quebec, Saskatchewan, Yukon
United States: Alaska, Hawaii, Iowa, Louisiana, Mississippi, Nebraska, New Mexico, Oklahoma, Rhode Island, South Dakota, West Virginia, Wyoming
Candidates must reside in an eligible location, which vary by role.
How we work
Our values guide how we support customers, collaborate with colleagues, develop products, and foster a culture of belonging. They define not just our actions, but what it means to be Dutonian.
People Leaders at PagerDuty are responsible for creating high performance environments that drive accountability. PagerDuty has four key dimensions that define our Leadership Impact: Lead Self, Lead the Team, Lead the Business, and Lead the Future. Each dimension has three associated competencies to give leaders a shared language for guiding their development, career, promotion, and succession planning discussions. Our Manager Expectations serve as a practical guide for managers to understand their responsibilities, prioritize their efforts, and drive engagement and performance.
What we offer
As a global organization, our total rewards approach is competitive with industry standards and aligned with local laws and regulations. Learn more, including country-specific offerings, on our benefits site.
Your package may include:
- Competitive salary
- Comprehensive benefits package
- Flexible work arrangements
- Company equity*
- ESPP (Employee Stock Purchase Program)*
- Retirement or pension plan*
- Generous paid vacation time
- Paid holidays and sick leave
- Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
- Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)*
- Paid volunteer time off: 20 hours per year
- Company-wide hack weeks
- Mental wellness programs
*Eligibility may vary by role, region, and tenure
About PagerDuty
PagerDuty, Inc. (NYSE:PD) is a global leader in digital operations management. The PagerDuty Operations Cloud is an AI-powered platform that empowers business resilience and drives operational efficiency for enterprises. With a generative AI assistant at its core, PagerDuty empowers teams to detect and resolve issues in real time, orchestrate complex workflows, and drive continuous improvement across their digital operations. Trusted by nearly half of both the Fortune 500 and the Forbes AI 50, as well as approximately two-thirds of the Fortune 100, PagerDuty is essential for delivering always-on digital experiences to modern businesses
PagerDuty is Great Place to Work-certified™, a Fortune Best Workplace for Millennials, a Fortune Best Medium Workplace, a Fortune Best Workplace in Technology, and a top rated product on TrustRadius and G2.
Go behind-the-scenes on our careers site and @pagerduty on Instagram.
Additional Information
PagerDuty is an equal opportunity employer. PagerDuty does not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, parental status, veteran status, or disability status. Your privacy is important to us. By submitting an application, you confirm that you have read and understand PagerDuty's Privacy Policy.
PagerDuty is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application process. Should you require accommodation, please email View email address on ziprecruiter.com and we will work with you to meet your accessibility needs.
PagerDuty uses the E-Verify employment verification program.
- ...of America)Please review the following job description:The Senior Security Engineer on the Proxy Team is responsible for evolving and sustaining... ...meet a rapidly changing security landscape driven by AI, cloud-native architectures, and advanced threat techniques. This...SeniorPermanent employmentFull timePart timeH1bWork at officeWork visaShift workDay shift
$100k - $110k
...Description The Sr. Cloud Security Engineer plays a key role in securing the organization’s multi-cloud environment by enhancing visibility... ...Plan and Savings Plan (401k). All Level 38 and more senior roles may also be eligible for non-qualified Deferred Compensation...SeniorTemporary workLocal areaVisa sponsorshipWork visaFlexible hours- Senior Cloud Security Engineer This role offers a rare chance to build cloud security and IAM maturity programs from the ground up rather than caretake an existing one, with the Senior Cloud Security Engineer owning compliance, identity strategy, and security automation...SeniorWork at officeWork from homeFlexible hours
- ...The Endpoint Security & Exposure Management Engineer is responsible for the design, implementation, administration, and continuous improvement of endpoint... ..., desktop engineering, application support, cloud, and wider IT teams to strengthen the organization's security...Suggested
- ...office***• This team uses automated API security tools like Akamai, Salt Security and... ...vulnerabilities in running APIs• This Senior Security Engineer will be experienced with API security... ...OSCP, CEH, or Security+Experience with cloud platforms such as AWS and/or Microsoft...SeniorFull timePart timeWork at officeShift workDay shift
$126k - $191k
...ABOUT THE JOB We're seeking a Security Software Engineer to develop novel security tooling for securing embedded Linux systems and Android devices. The ideal candidate can develop, test, and debug an endpoint detection and response agent with mission critical security...Full timeWork experience placementImmediate start- ...Senior Security Engineer II Atlanta At Braze, we have found our people. We're a genuinely approachable, exceptionally kind, and intensely... ...can thrive, we can't wait to meet you. Braze is a modern, cloud-first SaaS company running entirely on cloud-native...SeniorWork at officeFlexible hours
$112k - $130k
...Senior Security EngineerRemote - United StatesJR013945 At Ensono, our Purpose is to be a relentless... ...The Senior Information Security Engineer is responsible for designing, implementing... ...with security deployment using Azure Cloud. ~ Background in Security-as-a-...SeniorFull timeTemporary workRemote workWork from homeFlexible hours$160k - $175k
...Senior Security Engineer Atlanta, GA preferred, Remote At PrizePicks, we are the fastest-growing sports company in North America, as recognized... ...for a Senior Security Engineer to scale and mature our Cloud, Container, and Edge Security programs. In this role, you...SeniorRemote workWork visaFlexible hours$10 per hour
...Senior Security Engineer, Detection & Response United States About Flexport: At Flexport, we believe global trade can move the human... ...Build and tune detections across endpoint, identity, SaaS, and cloud , treating them as software: version-controlled, peer-...SeniorWork at officeLocal areaImmediate startRelocationRelocation packageFlexible hours- Advanced Cybersecurity Engineer Designs and develops advanced technical and cybersecurity capabilities across all phases of the software development lifecycle, including threat modeling, security testing, and penetration testing. Plans, builds, and enhances cybersecurity...SeniorLocal area
- Senior Security Engineer Immediate need for a talented Senior Security Engineer. This is a 12+months contract opportunity with long-term potential... ..., infrastructure, technical support and operations, cloud technologies and/or continuity of business Experience with...SeniorContract workLocal areaImmediate start
- ...Job Purpose and Impact The Senior Network Engineer - SASE will lead the design, deployment... ...continuous improvement of Cargill's global Secure Access Service Edge (SASE) and Security... ...and remote-access technologies to cloud-delivered security services, including...SeniorWork experience placementRemote work
- ...Senior PKI Security Engineer Atlanta, GA (Hybrid) GA Locals Preferred, Relocation is OK 13+ Years must Must-Needed Skills * Cyber Security... ...Authority Compliance * Red Hat Certificate System * Cloud Security Strategy & Engineering * Security Monitoring &...SeniorTemporary workLocal areaRelocation
- ...right place.Architect, design, and continuously improve security across all major cloud platforms - Google Cloud, Microsoft Azure, Amazon Web Services... ...and tooling from scratch, applying hands-on software engineering and coding expertise to automate and scale security...SeniorFull time
$134.5k - $265.1k
Position Summary Join Deloitte’s Cloud Cyber Security practice as a GCP Forward Deployed Engineer, Senior Consultant and help organizations secure Google Cloud Platform (GCP) cloud and artificial intelligence (AI) workloads at scale. In this hands-on role, you will...SeniorLocal areaVisa sponsorship$10 per hour
...and the environment? Come join us. All security disciplines work under the umbrella of... ...paved path and tooling that hundreds of engineers around the world rely on every day to ship... ...-privilege access across the SaaS and cloud estate. Build the detections and guardrails...Work at officeImmediate startFlexible hours- ...description:Designs and implements application security capabilities across the software... ...Collaborates closely with developers, DevOps engineers, and security teams to identify, assess,... ...or equivalent solutions.Experience with cloud platforms and cloud-native application...Full timePart timeShift workDay shift
- ...assessments and post results. Conduct POC and implement IoT and OT security solutions to client unmanaged IoT/OT assets. Work with asset... .... Develop rules to identify non-compliant resources in our cloud environments and create automations to remediate the non-compliant...Senior
- ...looking for builders, problem-solvers, and security professionals who thrive in a fast-paced... ..., Infrastructure, Mobile, IoT, Cloud Platforms, Thick Client Applications, Physical... ...Collaborate effectively across security, engineering, development, infrastructure teams, app...SeniorPermanent employmentFull timePart timeH1bWork visaShift workDay shift
$118.28k - $212.87k
...Advisory. KPMG is currently seeking a Senior Associate in Technology for our Consulting... ...solutions, with a focus on Health Cloud features such as care plans, clinical data... ...HIPAA, HITRUST, and other healthcare data security regulations Collaborate with business...SeniorFull timeH1bLocal area- OverviewJob PurposeThe Senior Engineer, Information Security, GRC is part of a team responsible for the global Information Security program. The role would gain exposure to the full suite of businesses and products which underpin the Parent ICE company.Information Security...Senior
- Sr. Security Engineer Qualifications: 6 + years of experience required. Responsibilities: Responsible for the design, testing, evaluation, implementation, support, management, and deployment of security systems/devices used to safeguard the organization's information assets...Senior
- ...seeking a Solutions Consultant to guide clients through their security transformation journeys. This role involves providing technical... ...The ideal candidate will have 6+ years of pre-sales or sales engineering experience and a strong understanding of cybersecurity solutions...SeniorRemote job
- ...Senior Security Engineer Immediate need for a talented Senior Security Engineer. This is a 12+ Months Contract opportunity with long-term potential... ...Designs, develops, plans, implements, and supports Cloud DevSecOps processes across multiple business units, ensuring...SeniorContract workLocal areaImmediate start
$160k - $200k
...POSITIONOur roster has an opening with your name on itAs a Senior Enterprise Security Engineer, you design and build the software and systems that... ...engineering foundation.Experience with infrastructure from major cloud providers (AWS, GCP, Azure) and enterprise SaaS platforms...SeniorTemporary workLocal areaWorldwide$105.4k - $207.8k
Position Summary Cyber Palo Alto Networks Security Engineer/ Senior Consultant, Strategy, Growth, and TransformationDeloitte’s Cyber business... ...Next-Generation Firewalls (NGFW) across on-premises and cloud environments, including Amazon Web Services (AWS),...SeniorWork experience placementLocal areaRemote work$152k - $228k
...for you too.About the TeamThe Network Security team delivers innovative solutions to... ...gaps. We operate data centers and cloud environments across the globe and are... ...part of a great team.About the RoleAs a Senior Cybersecurity Engineer on the Network Security team, you’ll...SeniorFull timeWork at officeRemote workHome officeFlexible hoursShift work- ...Responsibilities Define cloud security standards, guardrails, reference architectures, objectives, and technical roadmaps. Lead cross... ...such as MongoDB. Mentor and uplevel security and platform engineers through pairing, design review, feedback, and technical...SeniorFull timeWork at officeFlexible hours
- Floor & Decor is seeking a Senior Configurator II, Workday to lead advanced security configuration, governance, and production support across the Workday ecosystem. You will partner with HR, IT, Payroll, and Compliance to design scalable security solutions and ensure adherence...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer - Cloud Security. Be the first to apply!
- security engineering manager Atlanta, GA
- physical security engineer Atlanta, GA
- senior security operations engineer Atlanta, GA
- security software engineer Atlanta, GA
- entry level security engineer Atlanta, GA
- network security engineer Atlanta, GA
- sr information security engineer Atlanta, GA
- cloud security engineer Atlanta, GA
- security infrastructure engineer Atlanta, GA
- principal security engineer Atlanta, GA





