Senior Software Engineer
College Board – Technology – Cloud Security
Location: This is a fully remote role. Candidates who live near CB offices have the option of being fully remote or hybrid (Tuesday and Wednesday in office).
Type: This is a full-time position
About the Team
The College Board ’s Cloud and Platform Security Engineering (CPSE) team designs, builds, and secures the cloud foundation that powers our most critical applications and services. We partner closely with product engineering, platform, risk, compliance, and application teams to design, automate, and operationalize scalable security controls, building reusable tooling and guardrails that make secure application deployments the default across AWS environments. Rather than operating as a reactive review function, we implement preventive and detective controls that reduce systemic risk while enabling teams to move quickly. Our work spans multi-account cloud architecture, identity and access management, network segmentation, automation, detection engineering, and compliance alignment. We focus on scalable, repeatable solutions that strengthen security posture across the enterprise.
About the Opportunity
As a Senior Full Stack Engineer within CPSE, you will collaborate closely with other engineers on the team using ensemble or mob programming methodologies to build and operate product security solutions in support of College Board ’s mission. You will use a variety of technologies to build, operate, and maintain software and automation solutions in an ever-growing cloud environment. The team’s solutions will support the secure delivery of all College Board digital products, and ensure security of College Board infrastructure.
You will work across cloud environments to expand automated guardrails, improve external exposure management, and reduce high-risk misconfigurations through enforceable, enterprise-wide controls. This role emphasizes secure-by-default architecture, infrastructure automation, and measurable risk reduction, ensuring security controls are consistently applied as the organization scales.
In partnership with Cloud Engineering, Product Security, and Cyber Operations, you will enhance vulnerability management workflows, increase automation across intake and response processes, and strengthen detection and triage capabilities. You will help drive improved remediation velocity, clearer security posture visibility, and more efficient security operations through engineering-led solutions.
You will also contribute to the resilience and reliability of critical security platforms, ensuring continuity of monitoring and posture management capabilities while supporting modernization efforts. Success in this role means delivering durable, scalable security outcomes: stronger preventive coverage, reduced exposure windows, improved operational efficiency, and measurable improvements in enterprise security posture.
In this role, you will:
Strengthen Cloud Guardrails and Preventive Controls (50%)
- Design, implement, and operationalize automated preventive and detective guardrails across enterprise cloud environments.
- Build and enforce enterprise-wide controls that prevent or automatically remediate high-risk misconfigurations.
- Improve protection coverage for internet-facing systems by validating asset inventories and expanding enforcement mechanisms.
- Continuously evaluate control effectiveness through telemetry, compliance validation, and risk trend analysis.
- Partner with cloud platform teams to embed secure-by-default infrastructure patterns into reusable modules and deployment workflows.
Advance Vulnerability Management (UVM) and Security Automation (30%)
- Enhance and operationalize Unified Vulnerability Management (UVM) workflows to improve prioritization, remediation velocity, and cross-team accountability.
- Increase automation across vulnerability intake, enrichment, ticketing, and response workflows to reduce manual triage burden.
- Design and de
Get remote developer jobs like this by email
One weekly digest. No spam, unsubscribe anytime.