Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cloud Security & Compliance Engineer

Mine Vision Systems

Job Description

Job Description

Mine Vision Systems is a mining technology company building the decision-making platform for underground mining. We introduce high-fidelity data into the mining workflow that has simply never existed before, enabling operators to move from assumptions to evidence-based decisions. Our digital infrastructure is designed to map, monitor, and manage the underground mining environment with confidence, creating a persistent, data-rich foundation for operational and strategic decision-making. Since the launch of our flagship product, FaceCapture, in late 2023, adoption has accelerated rapidly as customers realize the value of truly understanding their underground operations.

 

We focus on underground mining of critical minerals and precious metals, where small improvements in accuracy and insight drive outsized returns. Our technology delivers millions of dollars in annual value by minimizing overbreak, improving ore calls, enhancing resource models, and enabling a growing set of high-impact applications across the mine lifecycle. By transforming raw underground data into actionable intelligence, Mine Vision Systems empowers mining teams to operate more efficiently, more predictably, and with greater confidence than ever before.

Role Summary 

We are looking for a senior Cloud Security & Compliance Engineer to own MVS’s AWS controls and the compliance program that underwrites our cloud product. You will be the long-term owner of two intertwined workstreams: the AWS infrastructure that runs our cloud platform (Organizations, IAM Identity Center, KMS, networking, S3 hardening, backups) and the compliance posture our customers expect, SOC 2 Type 2 and ISO 27001, with growing scrutiny on data sovereignty as we expand internationally. Until you land, this work is being done, best effort, by the engineering team; your arrival is what lets it become a real, audit-ready program. This role is platform-heavy, security-first, and partner-oriented; it prioritizes hands-on AWS depth, real audit and controls experience, and the judgment to know when to invest in foundation versus when to ship. The right person treats security as something that makes the product easier to sell, not harder to build, and is the calm voice in incident response, not the loud one.

Key Responsibilities
  • AWS infrastructure ownership: Own MVS’s AWS account structure, IAM Identity Center, KMS (per-tenant encryption), networking, S3 hardening, backups in a separate account, and the AWS Organizations / SCP baseline; partner with the engineering team through the cloud MVP and own it long-term.
  • SOC 2 Type 2 program: Run MVS through its first SOC 2 Type 2 readiness assessment, control design, evidence collection, observation period, auditor engagement, and report delivery. Make the controls real, not theater.
  • ISO 27001 + adjacent frameworks: Plan and execute ISO 27001 (and 27017 / 27018) after SOC 2 lands; layer in GDPR-style privacy controls as international customers require them.
  • Identity and access: Run IAM Identity Center as the front door to AWS; no long-lived keys, JIT admin elevation, hardware MFA for privileged users, quarterly access reviews.
  • Detection and response: Centralize CloudTrail, GuardDuty, Security Hub, AWS Config; tune alerts so they mean something; own the incident-response playbook and exercise it.
  • Data protection and tenant isolation: Lock down early choices, per-tenant KMS keys, S3 Object Lock for scan data, signed RTO/RPO targets, and own the multi-tenant isolation pattern through audit. Plan BYOK (customer-managed KMS) for the enterprise mining customers who will eventually ask.
  • Compliance partnership across the company: Work with Finance, Sales, and Customer Success on customer-facing security artifacts, trust page, DPA, sub-processor list, breach-notification SLAs, and customer security reviews.
  • Pipeline security (partner with Platform Engineering): Define the security controls embedded in the CI/CD pipeline, secret scanning, dependency scanning, SBOM, license compliance, signed artifacts, and audit that the evidence holds up under SOC 2 / ISO scrutiny. The Platform Engineers implement; you set the spec and review.
  • Vendor and risk management: Own AWS Support tier engagement, third-party risk reviews, annual pentest cycles, and budget for compliance tooling and external auditors. 

 

Qualifications
  • 5+ years of hands-on AWS infrastructure experience — not just talk and diagrams; you have actually run AWS Organizations, IAM Identity Center, KMS, CloudTrail, GuardDuty, S3 hardening, and IaC (Terraform or equivalent) in production.
  • Direct experience taking a company through SOC 2 Type 2 or ISO 27001 — readiness, evidence, the auditor cycle, and ideally one or more clean reports already under your belt.
  • Strong understanding of multi-tenant isolation patterns and the trade-offs (DB-per-tenant / schema-per-tenant / row-level), and the audit implications of each.
  • Working knowledge of GDPR / international privacy frameworks and what cross-border transfer actually requires in practice.
  • Comfortable scripting (Python or Bash) and reading code in the languages our team writes (Python, C++) so you can audit what’s deployed, not just what’s documented.
  • Strong written communication for both engineers (control specs, runbooks) and external auditors/customer security reviewers, and the judgment to tailor each.
  • Bias toward controls engineers can live with, paved road, not roadblock.
Desirable
  • Hands-on with AWS Outposts, sovereign-cloud patterns, or regulated-data sovereignty work (Indigenous data, financial reporting integrity, sector-specific controls).
  • Background in a regulated industry (mining, financial services, healthcare, defense) where compliance is a customer requirement, not a checkbox.
  • Kubernetes security experience, cluster hardening, RBAC, network policies, and container image scanning. Certified Kubernetes Security Specialist (CKS) a plus.
  • AWS Certified Security – Specialty (or equivalent demonstrated AWS security depth).
  • Familiarity with SBOM, signed-artifact pipelines, and modern supply-chain security.
  • Working understanding of AI-assisted development workflows; able to use AI tooling productively in your own day-to-day.
What Success Looks Like
  • SOC 2 Type 2 lands without drama. The first report ships on schedule; the second comes routinely.
  • AWS posture is real, not aspirational. Tenant isolation decided and enforced; KMS per-tenant in place; CloudTrail and detection actually monitored; root accounts protected.
  • Engineers feel safer, not slower. Controls are the paved road; the team reaches for the secure way because it’s the easy way.
  • Deals are never blocked on security. A customer’s security review is a 30-minute conversation, not a six-week fire drill.
  • You’re the calm voice in incident response. When something happens, you’re already a step ahead, playbooks run, evidence preserved, blast radius known, communication ready.
Benefits
  • We are a fast paced and growing company with real robotic hardware in the field around the world, generating actual revenue
  • Competitive compensation and full benefits: medical, dental, vision, disability, life insurance, 401(k) with match
  • Uncounted PTO policy and flexible hybrid work model
  • Small, fast-moving team with hands-on work and immediate impact

Powered by JazzHR

M7lU9J672V

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Cloud Security & Compliance Engineer in Pittsburgh, PA vacancy
  •  ...Security Engineer At PNC, our people are our greatest differentiator and competitive advantage...  ...- Key management solutions across cloud (AWS, Azure) and data platforms (MSSQL,...  ...and analytics - OpenSearch preferred2. Compliance, Regulatory, and Industry Knowledge* Knowledge... 
    Cloud
    Work at office

    PNC

    Pittsburgh, PA
    9 hours ago
  • $171k - $247k

     ...for all. We're searching for a Staff Security Engineer to join our Enterprise Security...  ...XDR, MDM, IAM/IGA, DLP, SaaS security, cloud security, or PKI. ~ Experience designing...  ...build and how to validate it, not just as compliance checkboxes. Hands-on AWS security... 
    Cloud
    Work at office
    Local area
    3 days per week
    Early shift

    Aurora Innovation

    Pittsburgh, PA
    15 hours ago
  •  ...Description Job Summary: The Information Security Engineer with EdgeCo Holdings is responsible for...  ...software/systems that will help ensure compliance with regulatory, industry, and...  ...) and penetration testing tools. Cloud security exposure that includes tools and... 
    Cloud
    Temporary work
    Work experience placement
    Visa sponsorship

    AmericanTCS

    Pittsburgh, PA
    15 hours ago
  • $91k - $185.9k

     ...contribute to the company's success. As a Security Specialist within PNC's Technology...  ..., CO, Phoenix, AZ. As a Security Engineer on PNC's Cloud Security team, you will build and...  ...source of truth for public cloud resource compliance is a must for this position. You... 
    Cloud
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office
    Shift work

    PNC

    Pittsburgh, PA
    3 days ago
  • $100k - $172.5k

     ...Technology Enterprise Strategy & Security Job Sub Function:...  ...Principal Product Security Engineer to be located in Danvers, MA...  ...leverage your security risk and compliance skills to make a difference and...  ...Partner with engineering teams (cloud, console, pump, etc.) to... 
    Cloud
    Full time
    Temporary work
    Work at office
    Local area
    Immediate start
    Remote work
    3 days per week

    Johnson & Johnson

    Pittsburgh, PA
    15 hours ago
  •  ...and data storage available to scientists, engineers and scholars nationwide for unclassified...  .... PSC is seeking an Information Security Analyst/Engineer. This role is immersed...  ...protocols, secure coding guidelines and cloud security. Understanding of cryptography... 
    Cloud
    Permanent employment
    Full time
    Part time
    Work experience placement

    Carnegie Mellon University

    Pittsburgh, PA
    1 day ago
  • $104k - $228k

     ...Corporate Security Engineering - Lead Engineer Role At BNY, our culture allows us to run our company better and enables...  ...with Physical Security operations, Network/Cloud Engineering, Cybersecurity, Risk/Compliance, and Facilities/Real Estate to align platform capabilities... 
    Cloud
    Temporary work
    Work at office
    Remote work
    Worldwide

    BNY Mellon

    Pittsburgh, PA
    15 hours ago
  •  ...Lead Platform Security Engineer At HDR, our employee-owners are fully engaged in creating a...  ...identity, hardening, privileged access, compliance guardrails, and secure platform service...  ...Automation, VKS, HCX, recovery tooling, and cloud-connected platform capabilities. Serve... 
    Cloud
    Monday to Friday
    Shift work

    HDR

    Pittsburgh, PA
    2 days ago
  •  ...SVP, Vulnerability Management & Cloud Security Posture Platform Engineering We're seeking a team member for the role of SVP, Vulnerability Management & Cloud Security Posture Platform Engineering to join our Cybersecurity Engineering Tools & Platforms team. This role... 
    Cloud
    Work experience placement

    BNY

    Pittsburgh, PA
    15 hours ago
  • $79.54k - $113.63k

     ...Platform Security Engineer 2 At HDR, our employee-owners are fully engaged in creating a welcoming...  .../monitoring workflows. Contribute to compliance guardrails by mapping platform...  ...production. Exposure to Azure, AWS, or hybrid cloud security concepts such as shared... 
    Cloud
    Full time
    Temporary work
    Part time
    Monday to Friday
    Shift work

    HDR

    Pittsburgh, PA
    2 days ago
  •  ...Platform Security Engineer 1 At HDR, our employee-owners are fully engaged in creating a welcoming...  ..., and evidence collection for compliance checks. Translate approved cybersecurity...  ...Familiarity with Azure security fundamentals or cloud IAM concepts. Security+, VMware... 
    Cloud
    Full time
    Temporary work
    Part time
    Monday to Friday
    Shift work

    HDR

    Pittsburgh, PA
    2 days ago
  • $171k - $247k

     ...efficient and accessible for all. We're searching for a Staff Security Platform Engineer to join our Enterprise Security Engineering team,...  ...telemetry (CloudTrail, GuardDuty, Security Hub) and integrating cloud signals into a corporate SIEM. Familiarity with Zero... 
    Cloud
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    Pittsburgh, PA
    15 hours ago
  •  ...Vice President, Information Security Full Stack Engineer At BNY, our culture allows us to run our company...  ...assessments and contribute to compliance efforts aligned with organizational standards...  ...metrics). Familiarity with cloud platforms and containerization (Docker... 
    Cloud
    Work experience placement
    Worldwide
    Flexible hours

    BNY

    Pittsburgh, PA
    4 days ago
  • $120k - $253k

     ...SVP – Cyber Technology Engineer At BNY, our culture allows us to run our company better...  ...Engineer to join our Technology Information Security Division Cyber Technology team. This role...  ..., (especially Kubernetes and cloud-native) data sources Engineer and optimize... 
    Cloud
    Temporary work
    Work experience placement
    Worldwide
    Flexible hours

    BNY

    Pittsburgh, PA
    4 days ago
  •  ...research, communications, and data storage available to scientists, engineers and scholars nationwide for unclassified research. PSC advances...  ...infrastructure such as oVirt, VMWare, KVM Experience with cloud services such as AWS, GCP, OpenStack, or Azure. Experience... 
    Cloud
    Full time
    Part time
    Work experience placement

    Carnegie Mellon University

    Pittsburgh, PA
    2 days ago
  • $133.28k - $199.92k

     ...machine learning and robotics, cloud platforms, mapping, sensors...  ...operations, systems and safety engineering - all dedicated to making a...  ...: The Enterprise Cyber Security team is focused on ensuring the...  ..., CASB, and system hardening/compliance Provide ongoing support... 
    Cloud
    Permanent employment
    Full time
    Work at office
    Immediate start

    Latitude AI

    Pittsburgh, PA
    3 days ago
  •  ...Intelligence & Machine Learning (e.g., generative AI, predictive analytics); Cloud Computing Platforms (e.g., AWS, Azure, Google Cloud); Blockchain & Distributed Ledger Technologies; Data Engineering & Analytics Tools (e.g., Snowflake, Databricks, Apache Spark); Low-Code/... 
    Cloud
    Work at office
    Remote work

    Federated Hermes, Inc.

    Pittsburgh, PA
    4 days ago
  • $127k - $225k

     ...Director, Cyber Security Engineer At BNY, our culture allows us to run our company better and enables employees' growth and success. As...  ..., networking (sockets, RPC frameworks), concurrency control, cloud security, and containerization for deployment. BNY assesses... 
    Cloud
    Temporary work
    Remote work
    Worldwide
    Flexible hours

    BNY

    Pittsburgh, PA
    4 days ago
  •  ...eNGINE builds Technical Teams. We are a Solutions and Placement...  ...working within regulated or compliance-driven settings is preferred...  ...Databricks environments across cloud platforms (AWS, Azure, or GCP...  ...ecosystem tools Establish security, governance, and performance... 
    Cloud
    Immediate start

    eNGINE

    Pittsburgh, PA
    2 days ago
  •  ...On-Prem Network Engineer Location: New York, Pittsburgh, or Lake...  ...networking, virtualization, and cloud computing. Configuring and...  ...firewalls. Implementing network security measures to protect the organization's data and ensure compliance with security policies and... 
    Cloud
    Contract work

    Artech

    Pittsburgh, PA
    4 days ago
  •  ...Responsibilities : Managing a team of highperforming engineers, providing day-to-day leadership and works with staffto ensure...  ...for thevision, design, installation, and administration of cloud computing anddata storage resources and related management software... 
    Cloud

    Visvero

    Pittsburgh, PA
    9 hours ago
  • $170.6k - $390k

     ...world to grow your career in information security! The opportunity The Senior...  ...thought leadership across on‑premises, cloud, and hybrid environments, and partnering...  ...team as a Senior Manager in Cybersecurity Engineering, where you will play a pivotal role in developing... 
    Cloud
    Summer holiday
    Remote work
    Flexible hours

    EY

    Pittsburgh, PA
    4 days ago
  •  ...Description Job Description Senior AI / ML Engineer – Enterprise Data & GenAI Solutions...  ...data engineering, ML engineering, and cloud architecture to deliver scalable AI systems...  ...of Responsible AI, governance, and compliance ~ Experience in enterprise-scale AI... 
    Cloud
    Full time
    Contract work
    Remote work

    Navitas Partners

    Pittsburgh, PA
    4 days ago
  •  ...with integration activities involving APIs, data pipelines, and cloud-based data platforms. Work with complex, incomplete, or...  ...Continuous Improvement Work closely with product managers, engineers, and business SMEs to deliver effective solutions. Identify... 
    Cloud

    BNY

    Pittsburgh, PA
    2 days ago
  •  ...services organization to hire an Infrastructure Engineer to support client environments across...  ..., with some exposure to hybrid and cloud environments. Deep cloud migration experience...  ...• Automation • Integration • Security • Windows • Documentation • Maintenance... 
    Cloud

    Prequel Solutions

    Pittsburgh, PA
    1 day ago
  •  ...IAM), Unity Catalog, secret scopes, audit logging, and network/security configuration within Databricks. • Experience managing large-...  ...Azure DevOps, GitHub Actions, or Jenkins. • Working knowledge of cloud platforms (Azure/AWS/GCP), including networking concepts like... 
    Cloud

    Argyle Infotech

    Pittsburgh, PA
    4 days ago
  •  ...QA Engineer Location: Pittsburgh, PA Duration: 10 Months Rate: $48 - 55/hr We're seeking a QA Automation Engineer with strong fundamentals...  ...exposure. ~ API testing knowledge. ~ Experience with cloud platforms or parallel execution tools. Success Metrics:... 
    Cloud

    Staffing the Universe

    Pittsburgh, PA
    4 days ago
  •  ...complex business challenges. Our services span AI, IT staffing, cloud computing, engineering, mobility, testing, and more. Certified with CMMI Level 3 and ISO standards, V2Soft is committed to quality and security. Beyond our work, we actively support local communities and... 
    Cloud
    Local area
    Worldwide

    V2soft

    Pittsburgh, PA
    1 day ago
  •  ...Job Title: Data Engineer (Must Be US Citizen Or Green Card Holder...no OPT) Location: Pittsburgh...  ...development. ~ Work with the Cloud Architecture team and other stakeholders to ensure the ongoing security and confidentiality of sensitive healthcare information... 
    Cloud
    Full time

    Enkompas

    Pittsburgh, PA
    15 hours ago
  • $125.5k - $230.2k

     ...and Decision Science – Data Engineering – Manager We are looking...  ...designing and implementing complex cloud analytics solutions with a...  ...the quality, integrity, and security of data throughout the data...  ...Knowledge of data governance and compliance standards. Experience with... 
    Cloud
    Summer holiday
    Flexible hours

    EY

    Pittsburgh, PA
    15 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cloud Security & Compliance Engineer. Be the first to apply!