Principal Cloud Security Engineer
Bmo
Senior Cloud, AI & Data Security Engineer
We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation.
We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks.
You are a leader with a strong technical background. You have demonstrated strength in:
- Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy
- Defining security patterns, roadmaps, and operating models that leverage collaboration
- Facilitating industry-standard information security governance
- Advising senior leadership on cybersecurity, AI risk, and privacy risks, threats, and investment strategies
- Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets
As a qualified candidate, you will be part of the team driving BMO's Cloud, AI, and Data Security implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences, you will inject new knowledge and skills into an already high-performing team, thus elevating our efforts to new heights.
Your Responsibilities
Cloud Security
- Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms
- Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls
- Design and implement security baseline controls for Cloud Services for integration into the CI/CD process
- Build and deliver policies as code, automating security controls and best practices
- Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.)
- Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations
AI & Machine Learning Security
- Define and implement a security framework for AI/ML systems, covering the full model lifecycle from data ingestion and training to deployment and monitoring
- Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft
- Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards
- Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines, ensuring model integrity, access controls, and auditability
- Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls
Data Security
- Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments
- Establish controls for structured and unstructured data stores, including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms
- Drive the adoption of data-centric security practices within application development and analytics teams
General Security Leadership
- Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow
- Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability
- Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely
- Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches
- Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments
Your Mindset
- You are a self-starter, driven, and can handle multiple projects and priorities
- You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies
- You understand the intersection of security, AI, and data, and actively seek to build bridges between these disciplines
- You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists
- You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity
- As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights
Required Core Skills
Foundational
- A university degree in Engineering, Computer Science, Information Technology, or a related field
- 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains
- Security certifications such as CISSP, CCSP, CCSK, or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)
- Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP)
Cloud Security
- Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration
- Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel)
- Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF
AI & ML Security
- Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks
- Familiarity with the OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI Risk Management Framework (AI RMF)
- Understanding of MLOps pipeline security, including securing model registries, feature stores, training environments, and inference endpoints
- Knowledge of Generative AI security risks, including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies
Data Security
- Experience implementing data loss prevention (DLP), data classification, and data access governance solutions in enterprise environments
- Knowledge of DSPM tools and practices
- Understanding of data encryption at rest and in transit, tokenization, and key management for large-scale data environments
- Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements
- Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent
Technical Skills
- Firm grasp of networking protocols and operations; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit
- Knowledge of theoretical and applied cryptography, key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.)
- Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity, RBA
- Principal Cloud Security Operations Engineer (Scripting, AWS, DevOps, CISM, CCSA, CISSP, CCIE Security, CEH) in San Francisco, CA AWS, CEH, CISA, CISSP, DevOps, Python, scripting, Security Operations, SIEM Location: California Job Function: Information Security Date...PrincipalPermanent employmentFull timeWork experience placementRemote workRelocation
$240k - $310k
The RoleYou will be the foundational technical pillar for security at Candid Health. As our first Principal Security Engineer, you won't just be managing a compliance checklist—you will architect, build, and scale the technical systems that protect our customers and their...Principal$347k
...intelligence benefits all of humanity.The Security team protects OpenAI’s technology,... ....About the RoleOpenAI is seeking a Principal Security Engineer to join our Infrastructure Security (... ...spanning GPU supercomputing clusters, multi-cloud infrastructure, datacenters,...PrincipalWork at officeLocal areaFlexible hours- San Francisco, California100% RemoteFull Time$160k - $225kA GPU cloud computing startup, revolutionizing the computing landscape, is looking to hire a Principal Product and Application Security Engineer to join their team as a founding engineer. This startup has hit a...PrincipalFull time
$275k - $300k
...Postman.About the TeamThe Information Security organization at Postman operates... ...Password, and we operate across a multi-cloud environment.The Offensive Security... ...The OpportunityWe are looking for a Principal Offensive Security Engineer who is as much a strategist as they...PrincipalWork at officeFlexible hours3 days per week- ...millions of Americans to achieve more.About the RoleThe Principal Identity Security Engineer will lead the design and evolution of Happen Bank's enterprise... ...access for employees, contractors, applications, cloud platforms, and non-human identities. This role will set...PrincipalFull timeFor contractorsWork at officeLocal areaRemote workRelocationFlexible hours
- ...legal entity. Responsibilities Roles DescriptionThe Principal Enterprise Security Engineer serves as the senior technical authority and strategic... ..., with 5+ years in principal or lead architecture.Cloud Security Expertise: In-depth knowledge of cloud security...PrincipalWork at officeLocal area
$116.1k - $158.2k
...Job ResponsibilitiesDesign and implement cloud architecture solutions across Azure,... ...governance, and onboarding standardsEstablish engineering standards for identity, networking,... ...architecture, infrastructure, networking, and security teams to deliver scalable cloud...Full timeContract workLocal areaFlexible hours$166.6k - $208.3k
.... But without those supports, none of the beauty could stand.Cloud security plays a similar role at Mercury. Our customers come for products... ...billions of dollars, preserves customer trust, and gives engineers the confidence to move quickly. We're looking for a Cloud Security...Remote work$141k - $221k
...optimize engagement—all with enterprise-grade security and compliance. Today, nearly 1,200... ...or launch new features and services. As Engineers, we believe in security through... ...the next level. We strive to improve our cloud security capabilities, and support our peers...Contract workLocal areaImmediate startRemote workWorldwideHome officeShift work$260k - $275k
Medium is seeking a Senior Principal Software Engineer in San Francisco to lead the design and implementation of AI security solutions. This role requires over 15 years in software... ...with expert skills in Java, Spring, and cloud platforms such as AWS and Azure. The candidate...Principal$160k - $240k
...onchain infrastructure. The platform secures over €100B in assets and powers critical... .... Our client is seeking a Principal Security Engineer to lead product security across the entire... ...distributed systems, networking protocols, and cloud computing platforms (primarily AWS)....PrincipalFull timeLocal areaRemote workFlexible hours- A tech leader in AI innovation is seeking a Principal-level Platform Engineer to architect a next-generation AI-powered learning ecosystem. In this high-impact role, you'll design secure APIs, build developer tools, and ensure compliance and security. Candidates should...Principal
$168.75k - $270k
...issues with our ecosystem of devices and cloud software. Like our products, we work... ...company where you matter.Job Description - Principal Security Operations EngineerOur mission is to... ...ImpactAs a PrincipalSecurity Operations Engineer, you will play a key role in building...PrincipalWork experience placementWork at office$178.88k - $320.65k
...lead our skilled team of software and ML engineers in the design, development, and... ...product management, data science, data, and cloud infrastructure to define and execute the... ...software development, code quality, and security standardsActively participate in coding...PrincipalFull timeTemporary workFor contractors- ...various classification levels requiredSECRET Security Clearance Required; TS+ clearance... ...distributed system architectures, secure platform engineering, and knowledge graphsStrong programming... ...databases, particularly PostgreSQL or cloud equivalent such as Amazon RDSExperience...PrincipalApprenticeshipEasy work
$245k - $290k
...control.About the Role:We're looking for a Principal Software Engineer to help architect and build Redpanda'... ...ensure and validate that they do so securely. It combines Redpanda’s industry-... ...scaleExperience with Kubernetes and cloud-native infrastructure across AWS, GCP...PrincipalWork at officeRemote workShift work- ...Senior Cloud Security Engineer BackOps AI is transforming supply chain operations with agentic AI solutions that automate complex workflows, freeing operations teams to focus on what matters most. Headquartered in the San Francisco Bay Area with flexible remote-friendly...Remote workFlexible hours
- ...legal entity. Responsibilities As a Principal Engineer with Deep Engineer archetype in... ...direction. You’ll make sound trade-offs across security, isolation, performance, scalability,... ...operational results.Advance portable, cloud-native execution across GCP and AWS...PrincipalWork at officeLocal area
- DoorDash USA is seeking a Principal Engineer to serve as the technical leader for the Ads platform organization. In this role, you will set architectural direction and drive long-term technical strategy for our advertising systems. With a focus on collaboration and mentorship...Principal
- ...highly collaborative and diverse team of talent. who will be responsible for ensuring the security and compliance of our cloud infrastructure and data. You will work with the engineering, DevOps, and IT teams to design, implement, and maintain security policies, controls,...Contract workRemote work
$180k - $250k
...Job Description Job Description LHH is seeking a Sr. Cloud Security Engineer to join our client's team in a full-time + hybrid-role, based in San Francisco, CA. This is an emerging enterprise intelligence startup focused on enabling organizations to effectively manage...Full timeLocal area$122k - $180k
...expert-level judgement at enterprise scale. Reltio's cloud-native SaaS platform harmonizes, unifies, and governs... ...Summary: As an integral member of the Information Security Team, the Sr. Cloud Security Engineer role will be responsible for growing and leading many...Flexible hours$197.3k - $313.7k
...Salesforce.We are looking for a highly skilled Principal Engineer to join our Endpoint Protection &... ...as a technical anchor for a critical security engineering team — driving architecture... ...infrastructure security.Audit Salesforce cloud infrastructure against industry and...PrincipalFull time- ...features and agents at a pace that makes security one of the most interesting problems in the... ...we're looking for a Platform Security Engineer to help us solve it. Your job won't be to... ...taming identity sprawl across a multi-product cloud, and hardening the supply chain that...WorldwideHome officeFlexible hours
- ...Senior Cloud Security Engineer Denver, CO or Long Beach, CA or SF Bay Area, CA True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S....
$162k - $235k
...Senior Cloud Security Engineer Aurora's mission is to deliver the benefits of self-driving technology safely, quickly, and broadly. The Aurora Driver will create a new era in mobility and logistics, one that will bring a safer, more efficient, and more accessible future...Work at officeLocal area3 days per week$170k - $277k
...that provides comprehensive security solutions to protect organizations... ...the data pipeline, analytics engine, and user interface. We are a... ...world.Job SummaryAs a Senior Principal Backend Engineer in our... ...with a focus on distributed, cloud-native application development...PrincipalFull timeWork at office- A leading technology company is searching for a Principal Software Engineer to drive the architecture of identity and safety systems for a massive learning platform. You will be responsible for defining authentication frameworks, managing user communication, and ensuring...Principal
$200k - $275k
...technology firm in San Francisco is seeking a Staff Software Engineer focused on Product Security. This role involves building secure frameworks,... ...years of experience and a strong background in Python and cloud security. This position offers a competitive salary range...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Cloud Security Engineer. Be the first to apply!
- principal network engineer San Francisco, CA
- senior director engineering San Francisco, CA
- civil engineer project manager San Francisco, CA
- principal developer San Francisco, CA
- chief design engineer San Francisco, CA
- principal engineer San Francisco, CA
- director data engineering San Francisco, CA
- principal infrastructure engineer San Francisco, CA
- technical director engineering San Francisco, CA
- director quality engineering San Francisco, CA


