Principal Cloud Security Engineer
$122.4k - $228kBank of Montreal
Application Deadline:
10/29/2026 Address:320 S Canal Street Job Family Group:
Technology We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms . We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation. We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks . You are a leader with a strong technical background. You have demonstrated strength in:
- Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy
- Defining security patterns, roadmaps, and operating models that leverage collaboration
- Facilitating industry-standard information security governance
- Advising senior leadership on cybersecurity, AI risk , and privacy risks, threats, and investment strategies
- Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets
- Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms
- Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls
- Design and implement security baseline controls for Cloud Services for integration into the CI/CD process
- Build and deliver policies as code , automating security controls and best practices
- Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.)
- Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations
- Define and implement a security framework for AI/ML systems , covering the full model lifecycle from data ingestion and training to deployment and monitoring
- Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft
- Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards
- Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines , ensuring model integrity, access controls, and auditability
- Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls
- Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments
- Establish controls for structured and unstructured data stores , including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms
- Drive the adoption of data-centric security practices within application development and analytics teams
- Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow
- Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability
- Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely
- Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches
- Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments
- You are a self-starter , driven, and can handle multiple projects and priorities
- You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies
- You understand the intersection of security, AI, and data , and actively seek to build bridges between these disciplines
- You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists
- You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity
- As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights
- A university degree in Engineering, Computer Science, Information Technology , or a related field
- 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains
- Security certifications such as CISSP, CCSP, CCSK , or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)
- Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP)
- Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration
- Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel)
- Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF
- Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks
- Familiarity with the OWASP Top 10 for LLMs , MITRE ATLAS , and NIST AI Risk Management Framework (AI RMF)
- Understanding of MLOps pipeline security , including securing model registries, feature stores, training environments, and inference endpoints
- Knowledge of Generative AI security risks , including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies
- Experience implementing data loss prevention (DLP) , data classification , and data access governance solutions in enterprise environments
- Knowledge of DSPM tools and practices
- Understanding of data encryption at rest and in transit , tokenization, and key management for large-scale data environments
- Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements
- Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent
- Firm grasp of networking protocols and operations ; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit
- Knowledge of theoretical and applied cryptography , key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.)
- Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity, RBAC, and OAuth/OIDC
- Strong scripting and programming skills with experience in Python, PowerShell, Bash, Node.js , and API/webhook development
- Experience with Infrastructure as Code (IaC) security scanning tools (e.g., Checkov, tfsec, Prisma Cloud)
- Demonstrable internal and external relationship-building skills with the ability to clearly articulate complex security concepts across a diverse corporate culture
- Ability to lead in-depth workshops across a broad range of topics including cloud compliance, AI risk, and data governance
- Strong ability to influence decision-making at senior leadership levels
- Strong interpersonal, communication, and leadership skills
- A critical thinker with strong research, analytical, and problem-solving skills
- Self-motivated with a positive attitude and an ability to work independently and within a team
- Ability to communicate complex technical concepts to a broad range of internal and external stakeholders, including business, legal, compliance, and technology leaders
- Strong time management skills with the ability to manage multiple workstreams and mentor less experienced team members
Salaried The above represents BMO Financial Group's pay range and type. Salaries will vary based on factors such as location, skills, experience, education, and qualifications for the role, and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles, the salary listed above represents BMO Financial Group's expected target for the first year in this position. BMO Financial Group's total compensation package will vary based on the pay type of the position and may include performance-based incentives, discretionary bonuses, as well as other perks and rewards. BMO also offers health insurance, tuition reimbursement, accident and life insurance, and retirement savings plans. To view more details of our benefits, please visit: About Us At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world. As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact. We strive to help you make an impact from day one - for yourself and our customers. We'll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we'll help you gain valuable experience, and broaden your skillset. To find out more visit us at BMO is proud to be an equal employment opportunity employer. We evaluate applicants without regard to race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or any other legally protected characteristics. We also consider applicants with criminal histories, consistent with applicable federal, state and local law. BMO is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to View email address on click.appcast.io and let us know the nature of your request and your contact information. Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.
Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Principal Cloud Security Engineer in Chicago, IL vacancy
$184k - $230k
...ineligible for employment Visa sponsorship.Overall Purpose The Principal Platform Security Engineer is a hands-on enterprise technical leader responsible... .... Experience shaping enterprise platform strategy, cloud strategy, or secure engineering transformation efforts....PrincipalHourly payFull timeImmediate startVisa sponsorshipWork visaFlexible hours- ...Northern Trust is seeking a Sr Principal Software Engineer to lead the AI Security Platform for code analysis across enterprise codebases. The role emphasizes... ...architectural evolution, and scalable security automation in a cloud-native environment. You will mentor engineers,...Principal
- ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud security architecture could directly protect large-scale systems from the misconfigurations and design flaws that lead to real-world breaches? We're looking for a Principal...PrincipalHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...considered for employment.What You'll Do:Join our dynamic Security Engineering team as an Associate Principal and make a significant impact on our organization's... ..., Kerberos, Certificate)Working knowledge of the cloud ecosystem and CI/CD deployments with Terraform, Ansible...PrincipalFull timeRemote work2 days per week
- Job DescriptionThe Sr. Cloud Security Engineer (Sr. CSE) is a hybrid cloud and security engineering role responsible for the hands-on remediation of infrastructure and cloud vulnerabilities, ensuring cloud and infrastructure resources maintain compliance with established...SuggestedRemote work
$160k - $185k
...unwavering commitment to delivering high-quality consumer healthcare experiences at scale. Job Description: The Senior Cloud Security Engineer architects, deploys and operates a secure cloud application infrastructure that aligns with business needs. The position...Full time$164.6k - $288k
...We are seeking a highly experienced Senior Principal Software Engineer to support technical development of our AI-powered Code Security Scanner platform. This platform leverages... ...automation, integrating AI services, and securing cloud-native solutions.Platform OwnershipServe...PrincipalFull timeH1bWorldwideFlexible hours$114.5k - $194.7k
...serve the world’s most sophisticated clients using leading technology and exceptional service.Role descriptionThe Sr Lead Cloud Security Engineer plays a crucial role in ensuring the security, compliance, and resilience of cloud environments, with a focus on supporting...Full timeH1bFlexible hours- ...eligible* The Lead Associate Principal, Infrastructure Innovation... ..., networking, and cloud transformation. This role drives... ...improve platform reliability, security, and delivery speed. Responsibilities... ..., Kubernetes, and platform engineering. Lead automation using...PrincipalPermanent employmentFull time3 days per week
- ...iManage in Chicago is seeking a Principal Software Engineer to own complex initiatives across the SDLC on our core platform. You will partner with... ..., while maintaining hands-on ownership. You will design cloud-native systems at scale, mentor engineers, and collaborate...Principal
$145k - $195k
...continue our journey toward becoming the world's top retail-focused trading platform in the world. What you'll do:As a Staff Cloud Security Engineer, you are the most senior individual contributor responsible for the security of our cloud platform. You will set the...Work at officeWorldwideMonday to FridayFlexible hours$150k - $200k
...place of high expectations, integrity, innovation and a willingness to challenge consensus.We are seeking a Client Platforms Security Engineer to work with the members of the security team to ensure that our client platform infrastructure, virtual or physical, is properly...Temporary workWork experience placementFlexible hours- ...Intelligent Solutions Inc. (CCC) is a leading cloud platform for the multi-trillion-dollar... ...are seeking a highly skilled Platform Engineer with deep expertise in designing, deploying... ...role, you will build and evolve the secure, resilient, and cost-efficient platforms...PrincipalFull time
$250.6k - $362.6k
...States.Meet the Team You will join Cisco’s Security and Policy Platform Group, a... ...comprehensive security outcomes, as a Principal Engineer. The team delivers secure, scalable capabilities... ...third-party products. This work spans cloud and client infrastructure, security, policy...PrincipalFull timeTemporary workLocal areaRemote workFlexible hours$119.4k - $204.6k
...as Microsoft Fabric, Foundry/OpenAI, Databricks, and Synapse. Own the end-to-end lifecycle of cloud platforms.Establish standards and guardrails across all platform engineering domains.Drive innovation in cloud, data, and AI platforms (Fabric, OpenAI/Foundry, etc.).Lead...PrincipalFull timeTemporary workPart time- ...Cloud Security Engineer Domain: Retail Location: Chicago, IL. Must be onsite Tue-Thurs every other week. Scope of Work: The Cloud Security Engineer will work closely with the Integration Modernization team to design, implement, and monitor security measures across...
- ...Talentify is seeking a Principal Data Engineer in a hybrid role based in Dallas or Chicago. You will own the architecture and engineering for a new analytics platform, partnering with stakeholders to translate business goals into scalable data solutions. The role prioritizes...Principal
$220k - $280k
...-office by design. For example, our engineering team in India works primarily from our... .... Role We’re looking for a Principal Information Security Engineer to lead and elevate security... ...and response capabilities, strengthen cloud security posture, and reduce...PrincipalWork at officeRemote workHome officeFlexible hours$132k - $165k
...employment Visa sponsorship.Overall PurposeThe Staff Platform Security Engineer is a highly technical individual contributor responsible for... ...engineering, infrastructure engineering, software engineering, cloud infrastructure, security engineering, or a combination of...Hourly payFull timeImmediate startVisa sponsorshipWork visaFlexible hours$180k - $220k
...custom AI systems inside each client's own cloud environment, so the firm owns the... ...THE ROLE We are hiring our first Principal Engineer to own how we architect and deliver client... ...representing Beemo in client architecture and security reviews. This is the most senior...PrincipalFull timeWork at officeImmediate startRemote workHome office$150k - $170k
...development and operations of critical cloud and on-premise infrastructure and platform... ...Enterprise division, which offers secure, reliable and efficient team communications... ...DescriptionThe On-Premise Infrastructure Engineering team is responsible for:Design and implementation...PrincipalFull timeLocal areaRelocation$133.4k - $238.4k
Principal CX/UX Designer (API Developer Platform) - Hybrid (CT/ET) R0060120 About the Role: As a Principal CX/UX Designer for the Tax... ...close to the work and lead through influence across Product, Engineering, and senior leadership. You will also partner with teams across...PrincipalFull timeWork at officeWorldwide$163.63k - $211.75k
...areas.Role OverviewCboe’s Cybersecurity team is seeking a Principal Application Security Engineer to provide senior technical leadership and end-to-end... ...APIs, and containerized workloads operating in both public cloud and on-premises Kubernetes environments.You will operate...PrincipalFull timeWork at office$119.77k - $140.9k
...for our enterprise API ecosystem, leading engineering efforts across Apigee OPDK, Apigee... ...Apollo GraphQL platforms.Design and deliver secure, scalable, and highly available API gateway... ...On-Prem to Apigee Hybrid migrations and cloud-native platform adoption.Drive GraphQL...PrincipalFull timeWork experience placementLocal area3 days per week$175k - $200k
...timeRemote Type:Job Family Group:Information TechnologyJob Description Summary: We are seeking an experienced Director, Cloud Security Architecture and Engineering to serve as a hands-on leader, providing both strategic direction and active technical contribution. This role...Full timeWork experience placementWork at officeWork from homeFlexible hoursNight shiftWeekend work2 days per week$157.9k - $282.1k
Principal Full Stack Engineer, AI Platform & AgentsBuild the GenAI platform that powers critical decisions... ..., cost and quality telemetry).Apply secure SDLC and privacy‑by‑design practices... ...Strong full‑stack development skills and cloud experience (AWS/Azure/GCP).Expert in...PrincipalFull timeWork at officeRemote work2 days per week- ...responsible for personally driving reliability, observability, and cloud platform engineering excellence across a large, complex cloud-based computing... ...in the cloud platform by building a reliable, scalable, secure technology stack in collaboration with engineers and...PrincipalFull timeRemote work2 days per week
$230k - $290k
...Solutions Group ) - Platform Engineering /Full Time /RemoteAHEAD helps... ...landing zone build-outs, and cloud migrations, and specializes that... ...AI agent platforms. As a Principal Technical Consultant, you own... ...databases, containers, identity, and security: VNets, private endpoints,...PrincipalFull timeWork at officeShift work- ...Northern Trust is seeking a Senior Lead, Security Engineer to deliver and operate enterprise security platforms across our technology stack. This role blends hands-on platform delivery with technical ownership, spanning architecture discussions, implementation planning...
- ...Northern Trust Corp. seeks a Senior Lead, Security Engineer to engineer and operationalize enterprise security platforms across the bank. You will own technical delivery, work with architecture and risk stakeholders, and drive deep technical troubleshooting while maintaining...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Cloud Security Engineer. Be the first to apply!
Related searches
- chief engineer Chicago, IL
- senior chief engineer Chicago, IL
- principal infrastructure engineer Chicago, IL
- principal developer Chicago, IL
- general engineer Chicago, IL
- director software engineering Chicago, IL
- director of electrical engineering Chicago, IL
- engineering director Chicago, IL
- director data engineering Chicago, IL
- principal cloud engineer Chicago, IL



