Senior Cloud & Security Engineer

🏒 Unacast · all Unacast jobs
πŸ“ United States
πŸ’° USD 130,000 - 170,000 / annual
πŸ“… Posted 2026-07-13 Β· via Himalayas
🏷 Cloud-Security-Engineering,Security-Engineering,AWS-Cloud-Security,DevSecOps,Senior-Cloud-Infrastructure-Security-Engineer,Senior-Cloud-Security-Software-Engineer,Senior-Cloud-Security-Architect,Cloud-Security-Engineer,Cloud-Engineer
Apply on original site β†—

Unacast is a leading provider of global location intelligence that delivers cutting-edge analytics about human mobility in the physical world. We are a team of experts with decades of unmatched industry experience and we partner with organizations across the private and public sectors to unlock the potential of location data. Unacast drives smarter decision-making based on trustworthy, reliable, and privacy-friendly location intelligence that powers both commercial and societal benefits.
Position Overview:

Unacast is seeking a Senior Cloud Security Engineer focused on AWS cloud security to own and strengthen the security of our cloud environment. Reporting to the VP of Engineering, this is a hands-on role responsible for designing, implementing, and operating security controls across AWS infrastructure and services. The role extends beyond AWS, covering broader security responsibilities across the company’s systems and access environment. This role is ideal for a Cloud Security Engineer who thrives in cloud environments and enjoys building and operating security systems and is comfortable getting into the details.

As AI tools become embedded in engineering workflows, this role will support Unacast 's responsible adoption of AI by helping define approved tools, appropriate use of company and customer data, and guardrails to protect against data leakage, prompt injection, and other AI- specific risks.
What You Will Do:

- Design, implement, and maintain security controls and policies across AWS environments to protect systems and data.

- Lead the integration of security practices into the DevOps lifecycle, promoting secure development, deployment, and operational processes.

- Utilize AWS security tooling and security services to support detection, prevention, and continuous improvement of cloud security posture.

- Identify, assess, and drive remediation of security risks and vulnerabilities in cloud infrastructure in partnership with engineering teams.

- Monitor cloud environments for threats, investigate suspicious activity, and respond to security alerts and events.

- Support incident response, penetration test findings, and security audit remediation, including containment, investigation, and post-incident follow-up.

- Deploy security technologies, including firewalls, intrusion detection systems, and access controls, while establishing device-level malware and antivirus standards to safeguard endpoints and cloud environments.

- Stay current on emerging threats, vulnerabilities, and compliance requirements, and apply best practices to strengthen overall security posture.

- Maintain security policies, documentation, and internal security standards.

- Support customer security reviews and respond to security questionnaires as needed.

- Act as Google Workspace administrator, managing access and account security.

- Support compliance initiatives such as ISO 27001 and SOC 2 as needed.

- Establish and maintain the company's AI usage policy, including approved tools, acceptable use guidelines, and data handling requirements for AI assistants, coding agents, and LLM-based services.

- Evaluate and vet AI tools (including coding assistants, agentic systems, and SaaS integrations with embedded AI) for security, privacy, and compliance risks before company-wide adoption.

- Define guardrails for AI use with sensitive data, customer data, and regulated information, ensuring alignment with SOC 2, ISO 27001, and customer contractual obligations.

- Educate engineering and non-technical teams on safe AI practices, including prompt hygiene, awareness of prompt injection and data exfiltration risks, and secure use of agentic tools perform actions within company systems.

- Monitor the evolving AI threat landscape (model supply chain risks, prompt injection, data poisoning, shadow AI usage) and update controls and policies accordingly.

- Review AI tool integrations in the DevOps lifecycle, including code generation,

← All remote jobs