About the job
At Braze, we pride ourselves on our exceptional team, approachable, kind, and passionately dedicated. We aim to ignite this passion by upholding high standards, fostering teamwork, and achieving work-life harmony as we navigate rapid global growth while promoting equity and opportunity both within and outside our organization.
To thrive in our environment, you must be committed to setting high expectations for yourself and those around you. Autonomy, accountability, and an openness to new perspectives are crucial for our collective success.
Our insatiable curiosity and eagerness to share diverse interests create a vibrant culture that sets us apart.
If you are driven to tackle exhilarating challenges and have a proactive mindset in the face of change, you will be empowered to make a significant impact here, supported by a sharp and passionate team. If Braze resonates with you, we look forward to meeting you!
WHAT YOU'LL DO
Braze is looking for a Senior Cloud Security Engineer to enhance our Security Engineering team. As a modern, cloud-first SaaS company, we operate entirely on cloud-native infrastructure with large-scale, distributed systems across AWS, GCP, and self-managed Kubernetes environments. We seek an engineer with profound cloud security knowledge who can collaborate with DevOps, Infrastructure, and Product Engineering teams to fortify our cloud security posture and propel the future of Cloud Security at Braze.
As a Senior Cloud Security Engineer, your responsibilities will include:
- Collaborating with Infrastructure, SRE, and Product Engineering teams to design secure cloud architectures and develop scalable security controls for both new and existing services.
- Implementing and enhancing comprehensive cloud security controls across AWS, GCP, Kubernetes, CI/CD pipelines, and self-managed systems.
- Leading and refining our existing vulnerability management workflow for cloud assets, focusing on scanning, triage, prioritization, and remediation using tools like Tenable and native CSP capabilities.
- Managing and optimizing security tools such as CrowdStrike (EDR/CSPM/IR), cloud-native security services, and SIEM detection rules, with assistance from our SIEM Management function.
- Conducting threat modeling for new cloud technologies and patterns adopted across engineering.
- Participating directly in incident response, cloud forensics, and runtime security investigations.
- Securing and supporting...
