Principal Cloud Security Engineer
Bmo
Senior Cloud, AI & Data Security Engineer
We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation.
We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks.
You are a leader with a strong technical background. You have demonstrated strength in:
- Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy
- Defining security patterns, roadmaps, and operating models that leverage collaboration
- Facilitating industry-standard information security governance
- Advising senior leadership on cybersecurity, AI risk, and privacy risks, threats, and investment strategies
- Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets
As a qualified candidate, you will be part of the team driving BMO's Cloud, AI, and Data Security implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences, you will inject new knowledge and skills into an already high-performing team, thus elevating our efforts to new heights.
Your Responsibilities
Cloud Security
- Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms
- Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls
- Design and implement security baseline controls for Cloud Services for integration into the CI/CD process
- Build and deliver policies as code, automating security controls and best practices
- Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.)
- Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations
AI & Machine Learning Security
- Define and implement a security framework for AI/ML systems, covering the full model lifecycle from data ingestion and training to deployment and monitoring
- Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft
- Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards
- Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines, ensuring model integrity, access controls, and auditability
- Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls
Data Security
- Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments
- Establish controls for structured and unstructured data stores, including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms
- Drive the adoption of data-centric security practices within application development and analytics teams
General Security Leadership
- Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow
- Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability
- Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely
- Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches
- Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments
Your Mindset
- You are a self-starter, driven, and can handle multiple projects and priorities
- You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies
- You understand the intersection of security, AI, and data, and actively seek to build bridges between these disciplines
- You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists
- You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity
- As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights
Required Core Skills
Foundational
- A university degree in Engineering, Computer Science, Information Technology, or a related field
- 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains
- Security certifications such as CISSP, CCSP, CCSK, or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate)
- Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP)
Cloud Security
- Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration
- Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel)
- Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF
AI & ML Security
- Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks
- Familiarity with the OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI Risk Management Framework (AI RMF)
- Understanding of MLOps pipeline security, including securing model registries, feature stores, training environments, and inference endpoints
- Knowledge of Generative AI security risks, including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies
Data Security
- Experience implementing data loss prevention (DLP), data classification, and data access governance solutions in enterprise environments
- Knowledge of DSPM tools and practices
- Understanding of data encryption at rest and in transit, tokenization, and key management for large-scale data environments
- Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements
- Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent
Technical Skills
- Firm grasp of networking protocols and operations; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit
- Knowledge of theoretical and applied cryptography, key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.)
- Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity, RBA
- ...Principal Cloud Security Architect About the Role What if your deep knowledge of cloud security architecture could directly protect large-scale systems from the misconfigurations and design flaws that lead to real-world breaches? We're looking for a Principal...PrincipalHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$150k - $180k
...the only provider of a fully integrated, cloud-based Software-as-a-Service (SaaS)... ...SeniorDevSecOpsEngineer to join our Infrastructure & Security team. In this role,you’llown the... ...embedding security practices directly into our engineering lifecycle, rather than treating it as an...SuggestedTemporary workSummer workRemote workVisa sponsorshipWork visaShift work- 慨正橡扯 is seeking a Senior Principal Software Engineer in Chicago, IL to lead technical strategies and deliver complex systems. You will play a crucial role in developing high-throughput data platforms using API and event-streaming architectures. The ideal candidate has 1...Principal
- ...Senior Cloud Security Engineer Preferred location Chicago, IL but will consider candidates based in Georgia, North Carolina, Texas, Virginia, Maryland, Ohio or Louisiana. Must have the ability to travel to the Chicago, IL office as required. What will your day look...SuggestedWork at officeLocal area
$180k - $189k
Coates-Group in Chicago is looking for a Principal Engineer to provide technical leadership by shaping architectural direction and guiding critical decisions. This role involves leading design for large-scale systems and ensuring alignment with business strategy. The ideal...PrincipalFlexible hours$140.6k - $183.11k
慨正橡扯 is seeking a Principal Developer to lead the Customer Data & Identity Technology team at United Airlines. This hands-on role requires expertise in data platforms, identity resolution, and compliance with privacy standards. The ideal candidate will have 7-10+ years...Principal- Caterpillar Brazil is seeking a Principal Cloud Architect to join their Chicago office. The candidate will design and implement multi-cloud... ..., as collaboration with development, operations, and security teams is essential. The ideal candidate will also have proficiency...PrincipalWork at office
- RB Global Inc. is seeking a Principal Data Engineer to take charge of the technical landscape of the company's data platform. This senior position requires extensive knowledge and experience in building production data platforms, with a focus on Azure technologies. The...Principal
- ...Position Title: Cloud Security Engineer Remote/Onsite : 100% Remote Required Tech/Experience (Manager won’t consider candidates without the following): # Hands-on experience with AWS security tools (GuardDuty, CloudTrail, SecurityHub, etc.) # Strong experience...Remote work
- ...Cloud Security Engineer Domain: Retail Location: Chicago, IL. Must be onsite Tue-Thurs every other week. Scope of Work: The Cloud Security Engineer will work closely with the Integration Modernization team to design, implement, and monitor security measures across...
$112.2k - $209k
A leading financial institution in Chicago seeks a Principal Azure Cloud Engineer to design and operate Azure cloud infrastructure and systems. The ideal candidate has over 10 years of experience in cloud engineering, with a strong foundation in Infrastructure as Code...Principal- A leading grocery retailer is seeking an experienced IT Engineer IV Software to act as a Databricks Subject Matter Expert. You will lead the engineering and delivery of high-quality solutions, collaborating across teams to meet business needs. The role includes working...PrincipalFull timeWork at officeFlexible hours
- ...Caterpillar Financial Services Corporation is looking for a Principal Software Engineer in Chicago. The role requires leadership in engineering for... ...in Python and Java, along with a proven record in cloud architectures, particularly AWS. This position emphasizes collaborative...Principal
$145.2k - $236.7k
...Lead Associate Principal Cloud Security Engineer Join our dynamic Security Engineering team as a Lead Associate Principal Cloud Security Engineer and make a significant impact on our organization's cybersecurity posture. In this role, you'll be responsible for driving...PrincipalLocal areaRemote work2 days per week- ...Azure Security Engineer - Azure Focus Chicago, IL - hybrid WFH: 3 days onsite in the loop, 2 days work from home Summary: The... ...GRC team for audits, and other GRC initiatives that include cloud security. While we are an Azure-only environment currently...Work from home
$72k - $141k
Senior Security Engineer, Platform Security Tooling & AI The Senior Security Engineer, Platform Security Tooling & AI is a hands‑on technical... ...plans for complex security platforms. Solid understanding of cloud security (AWS, Azure, Google Cloud) and secure configurations...Work experience placement$270k - $300k
AHEAD is looking for a Cloud Security Specialist Solutions Engineer in Chicago, IL. This senior role is responsible for advancing the cloud security posture of clients by consulting and designing cloud security architectures. The ideal candidate has over 5 years of experience...$95k - $115k
A law firm in Chicago is seeking a Senior Security Engineer to design, build, and maintain secure IT infrastructure. This hybrid role involves overseeing datacenter management, cloud migration, and vendor relations. Required qualifications include over seven years of relevant...$114.5k - $194.7k
Role Description The Sr Lead Cloud Security Engineer plays a crucial role in ensuring the security, compliance, and resilience of cloud environments, with a focus on supporting Policy as Code (PaC) and Infrastructure as Code (IaC) practices. This role involves implementing...Visa sponsorshipWork visa$114.5k - $194.7k
## Sr Lead, Cloud Security EngineeringApplyremote type: Hybridlocations: Chicago, ILtime type: Full timeposted on: Posted Todayjob requisition... ...service.**Role description**The Sr Lead Cloud Security Engineer plays a crucial role in ensuring the security, compliance, and...H1bFlexible hours$115k - $130k
Redwood Logistics, LLC is seeking an Infrastructure Engineer to focus on securing and improving cloud environments across Azure and AWS. The role requires 5+ years of experience and involves on-site support in Chicago, optimizing network reliability and performance. Benefits...- 01460 Continental Casualty Company seeks a Senior Security Engineer for their Platform Security team in Chicago. This role requires a hands-on contributor who will oversee the implementation and optimization of AI security technologies across the enterprise. Key responsibilities...
- ...Logistics LLC in Chicago is looking for an Infrastructure Engineer focused on enhancing cloud environments and on-site network support. The ideal... ...Server administration. Responsibilities include designing secure infrastructures in Azure and AWS, managing network equipment...Full time
- Koitecc Solutions in Chicago is seeking a Senior Associate Cloud Security Engineer to ensure the security and resilience of cloud environments. This role focuses on implementing security controls and collaborating with security champions across development teams. The ideal...
$100k - $172.5k
...Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture... ...for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan... ...Partner with engineering teams (cloud, console, pump, etc.) to drive successful...PrincipalFull timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$114.5k - $194.7k
Koitecc Solutions is seeking a Sr Lead Cloud Security Engineer to enhance security, compliance, and resilience of cloud environments. This role focuses on Policy as Code (PaC), Infrastructure as Code (IaC), and implementing security controls in platforms like Azure and...- ...range of services, including Finance, Legal, Sustainability, Commercial, Digital and E-commerce, Technology and more. Overview The IT Engineer IV Software will be a Databricks Subject Matter Expert . They will be responsible for engineering, architecting, and delivering...PrincipalFull timeWork at officeRemote workFlexible hours
$102.6k - $193.43k
...Engineer, Cloud Security page is loaded## Lead Engineer, Cloud Securitylocations: Oak Brook, ILtime type: Full timeposted on: Posted 2 Days Agojob requisition id: JR30566Chamberlain Group (CG) is a global leader in intelligent access and Blackstone portfolio company....Temporary workWork at officeWorldwide3 days per week- ...most influential companies. As a Senior Principal Software Engineer at JPMorganChase within Global... ...market-leading technology products in a secure, stable, and scalable way. Leverage your... ...technical disciplines Extensive practical cloud native experience Expertise in...Principal
- A technology support firm is seeking an experienced IT Security Specialist focused on Microsoft Azure and 365. This remote role involves implementing security controls, monitoring incidents, and contributing to cybersecurity strategy. Candidates should have a minimum of...Remote jobContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Cloud Security Engineer. Be the first to apply!
- principal network engineer Chicago, IL
- senior director engineering Chicago, IL
- engineering director Chicago, IL
- principal engineer Chicago, IL
- chief building engineer Chicago, IL
- principal security engineer Chicago, IL
- director systems engineering Chicago, IL
- director software engineering Chicago, IL
- project engineer assistant project manager Chicago, IL
- general engineer Chicago, IL


