Principal Cloud Security Engineer
Bmo
Senior Cloud, AI & Data Security Engineer
We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation.
We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks.
You are a leader with a strong technical background. You have demonstrated strength in:
- Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy
- Defining security patterns, roadmaps, and operating models that leverage collaboration
- Facilitating industry-standard information security governance
- Advising senior leadership on cybersecurity, AI risk, and privacy risks, threats, and investment strategies
- Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets
As a qualified candidate, you will be part of the team driving BMO's Cloud, AI, and Data Security implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences, you will inject new knowledge and skills into an already high-performing team, thus elevating our efforts to new heights.
Your Responsibilities
Cloud Security
- Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms
- Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls
- Design and implement security baseline controls for Cloud Services for integration into the CI/CD process
- Build and deliver policies as code, automating security controls and best practices
- Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.)
- Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations
AI & Machine Learning Security
- Define and implement a security framework for AI/ML systems, covering the full model lifecycle from data ingestion and training to deployment and monitoring
- Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft
- Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards
- Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines, ensuring model integrity, access controls, and auditability
- Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls
Data Security
- Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments
- Establish controls for structured and unstructured data stores, including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms
- Drive the adoption of data-centric security practices within application development and analytics teams
General Security Leadership
- Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow
- Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability
- Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely
- Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches
- Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments
Your Mindset
- You are a self-starter, driven, and can handle multiple projects and priorities
- You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies
- You understand the intersection of security, AI, and data, and actively seek to build bridges between these disciplines
- You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists
- You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity
- As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights
Required Core Skills
Foundational
- A university degree in Engineering, Computer Science, Information Technology, or a related field
- 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains
- Security certifications such as CISSP, CCSP, CCSK, or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)
- Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP)
Cloud Security
- Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration
- Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel)
- Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF
AI & ML Security
- Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks
- Familiarity with the OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI Risk Management Framework (AI RMF)
- Understanding of MLOps pipeline security, including securing model registries, feature stores, training environments, and inference endpoints
- Knowledge of Generative AI security risks, including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies
Data Security
- Experience implementing data loss prevention (DLP), data classification, and data access governance solutions in enterprise environments
- Knowledge of DSPM tools and practices
- Understanding of data encryption at rest and in transit, tokenization, and key management for large-scale data environments
- Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements
- Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent
Technical Skills
- Firm grasp of networking protocols and operations; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit
- Knowledge of theoretical and applied cryptography, key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.)
- Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity,
$137.4k - $233.6k
...world’s most sophisticated clients using leading technology and exceptional service.Title: Principal, Cloud Security EngineerRole descriptionThe Principal, Cloud Security Engineer plays a crucial role in ensuring the security, compliance, and resilience of cloud...PrincipalFull timeWork experience placementH1bFlexible hours$184k - $230k
...ineligible for employment Visa sponsorship.Overall Purpose The Principal Platform Security Engineer is a hands-on enterprise technical leader responsible... .... Experience shaping enterprise platform strategy, cloud strategy, or secure engineering transformation efforts....PrincipalHourly payFull timeImmediate startVisa sponsorshipWork visaFlexible hours$95.86k - $208.27k
...your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, SailPoint Identity Security Cloud Engineer to join our Advisory Technology Organization. Responsibilities: Support SailPoint Identity Security Cloud (ISC) implementations...SuggestedFull timeH1bLocal area- ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud security architecture could directly protect large-scale systems from the misconfigurations and design flaws that lead to real-world breaches? We're looking for a Principal...PrincipalHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...considered for employment.What You'll Do:Join our dynamic Security Engineering team as an Associate Principal and make a significant impact on our organization's... ..., Kerberos, Certificate)Working knowledge of the cloud ecosystem and CI/CD deployments with Terraform, Ansible...PrincipalFull timeRemote work2 days per week
$116.1k - $158.2k
...Job ResponsibilitiesDesign and implement cloud architecture solutions across Azure,... ...governance, and onboarding standardsEstablish engineering standards for identity, networking,... ...architecture, infrastructure, networking, and security teams to deliver scalable cloud...Full timeContract workLocal areaFlexible hours- Job DescriptionThe Sr. Cloud Security Engineer (Sr. CSE) is a hybrid cloud and security engineering role responsible for the hands-on remediation of infrastructure and cloud vulnerabilities, ensuring cloud and infrastructure resources maintain compliance with established...Remote work
$114.5k - $194.7k
...we serve the world’s most sophisticated clients using leading technology and exceptional service. Title: Senior Associate, Cloud Security Engineer Role descriptionThe Senior Associate Cloud Security Engineer plays a crucial role in ensuring the security, compliance, and...Full timeH1bWorldwideFlexible hours$95k - $120k
...organization which operates and manages MSI’s Cloud Public Safety Application SaaS platform.... ...of a team that is responsible for the security of these mission critical systems that... ...DescriptionWe are seeking a Cloud Security Engineer / DevSecOps to join our team in protecting...Full timeWork at officeRelocation1 day per week$68k - $133.9k
Position Summary Cyber Oracle Cloud Security - Analyst / Security Engineer I Deloitte’s Cyber team helps organizations address complex cybersecurity challenges while supporting resilient, secure growth. In this role, you will support Oracle Cloud security engagements...Local areaVisa sponsorship$150k - $180k
...the only provider of a fully integrated, cloud-based Software-as-a-Service (SaaS)... ...SeniorDevSecOpsEngineer to join our Infrastructure & Security team. In this role,you’llown the... ...embedding security practices directly into our engineering lifecycle, rather than treating it as an...Temporary workSummer workRemote workVisa sponsorshipWork visaShift work$145k - $195k
...continue our journey toward becoming the world's top retail-focused trading platform in the world. What you'll do:As a Staff Cloud Security Engineer, you are the most senior individual contributor responsible for the security of our cloud platform. You will set the...Work at officeWorldwideMonday to FridayFlexible hours$150k - $200k
...place of high expectations, integrity, innovation and a willingness to challenge consensus.We are seeking a Client Platforms Security Engineer to work with the members of the security team to ensure that our client platform infrastructure, virtual or physical, is properly...Temporary workWork experience placementFlexible hours$119.4k - $204.6k
...as Microsoft Fabric, Foundry/OpenAI, Databricks, and Synapse. Own the end-to-end lifecycle of cloud platforms.Establish standards and guardrails across all platform engineering domains.Drive innovation in cloud, data, and AI platforms (Fabric, OpenAI/Foundry, etc.).Lead...PrincipalFull timeTemporary workPart time$250.6k - $362.6k
...States.Meet the Team You will join Cisco’s Security and Policy Platform Group, a... ...comprehensive security outcomes, as a Principal Engineer. The team delivers secure, scalable capabilities... ...third-party products. This work spans cloud and client infrastructure, security, policy...PrincipalFull timeTemporary workLocal areaRemote workFlexible hours- ...various classification levels requiredSECRET Security Clearance Required; TS+ clearance... ...distributed system architectures, secure platform engineering, and knowledge graphsStrong programming... ...databases, particularly PostgreSQL or cloud equivalent such as Amazon RDSExperience...PrincipalApprenticeshipEasy work
$200k - $270k
...strategy, consulting and customer experience with agile engineering and Data problem-solving creativity. United by our... ...scale transformation across the Microsoft Intelligent Cloud, spanning Azure, Data, AI, Security, and Copilot platforms.OverviewRole OverviewWe are hiring...PrincipalWorldwideFlexible hours- The Senior Principal Software Engineer advises and leads on the strategy and development of multiple products and technologies. They create novel... ...throughput data platforms. Experience with AI/ML technologies and cloud-native environments is also required. Key Skills Software...Principal
$132k - $165k
...employment Visa sponsorship.Overall PurposeThe Staff Platform Security Engineer is a highly technical individual contributor responsible for... ...engineering, infrastructure engineering, software engineering, cloud infrastructure, security engineering, or a combination of...Hourly payFull timeImmediate startVisa sponsorshipWork visaFlexible hours- ...Cloud Security Engineer Domain: Retail Location: Chicago, IL. Must be onsite Tue-Thurs every other week. Scope of Work: The Cloud Security Engineer will work closely with the Integration Modernization team to design, implement, and monitor security measures across...
$190k - $210k
...Position Summary InfraSec builds and secures Harris Associates' cloud foundation on Microsoft Azure. The... ...Cloud Infrastructure and Security Engineer is a hands-on, individual-... ...access fundamentals: RBAC, service principals/managed identities, and least-privilege...Full timeAfternoon shiftEarly shift$250.6k - $362.6k
...citizen on U.S. soil.Meet the Team The Platform Engineering organization is responsible for building and operating the foundational cloud-native platforms that power engineering... ..., automation, observability, security, and self-service capabilities that enable...PrincipalPermanent employmentFull timeTemporary workLocal areaFlexible hours$175k - $200k
...timeRemote Type:Job Family Group:Information TechnologyJob Description Summary: We are seeking an experienced Director, Cloud Security Architecture and Engineering to serve as a hands-on leader, providing both strategic direction and active technical contribution. This role...Full timeWork experience placementWork at officeWork from homeFlexible hoursNight shiftWeekend work2 days per week$112.2k - $209k
...are seeking an enthusiastic, passionate professional for a Principal Cloud Engineer position with 8+ years of experience in multiple large scale... ...platform, leveraging emerging best practices and tools, securely connected to our strategic suppliers, providing a platform...PrincipalFull timeContract workPart timeLocal area$157.9k - $282.1k
Principal Full Stack Engineer, AI Platform & AgentsBuild the GenAI platform that powers critical decisions... ..., cost and quality telemetry).Apply secure SDLC and privacy‑by‑design practices... ...Strong full‑stack development skills and cloud experience (AWS/Azure/GCP).Expert in...PrincipalFull timeWork at officeRemote work2 days per week$230k - $290k
...Solutions Group ) - Platform Engineering /Full Time /RemoteAHEAD helps... ...landing zone build-outs, and cloud migrations, and specializes that... ...AI agent platforms. As a Principal Technical Consultant, you own... ...databases, containers, identity, and security: VNets, private endpoints,...PrincipalFull timeWork at officeShift work- ...Job Description: Role Description: Design, implement, and manage Microsoft Entra ID (Azure AD) solutions for secure identity and access management. Ensure secure authentication and authorization aligned with industry best practices. Implement...
- A leading company in security solutions in Chicago is seeking an Azure Security Engineer to design and manage Azure Active Directory solutions, implement Multi-Factor Authentication (MFA), and ensure compliance with security standards. Candidates must have proven experience...Local area
$65 - $75 per hour
Azure Security Engineer Location: Downtown Chicago (3x/week onsite) - candidates must be local to apply. Base pay range: $65.00/hr - $75.00... ...skills (PowerShell, Azure CLI). Excellent understanding of cloud security principles. Microsoft Certified: Azure Security Engineer...Local area$180k - $220k
...meaningful work-life balance. Being a Principal Security Architect at iManage Means… You will drive... ...“North Star”. You will influence engineering teams through deep knowledge of how technical... ...critical domains such as IAM, AI, cloud infrastructure, and secret management...PrincipalWork at officeLocal areaWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Cloud Security Engineer. Be the first to apply!
- project engineer assistant project manager Chicago, IL
- principal data engineer Chicago, IL
- principal cloud engineer Chicago, IL
- director data engineering Chicago, IL
- principal developer Chicago, IL
- senior principal engineer Chicago, IL
- assistant chief engineer Chicago, IL
- hotel chief engineer Chicago, IL
- civil engineer project manager Chicago, IL
- director quality engineering Chicago, IL



