Cloud Security Engineer Advanced
Mississauga - Canada
Job Summary
Overview:
At Zebra we are a community of innovators who come together to create new ways of working. United by curiosity and a culture of caring we develop smart solutions that anticipate our customers and partners needs and solve their challenges.
Being part of Zebra Nation means you are seen heard valued and respected. Drawing from our unique perspectives we collaborate to deliver on our purpose. Here you are part of a team pushing boundaries today to redefine the work of tomorrow for organizations their employees and those they serve.
Youll have opportunities to learn and lead in a forward-thinking environment defining your path to a fulfilling career while channeling your skills toward causes you care aboutlocally and globally.
Come make an impact every day at Zebra.
What Were Looking For:
Coordinates with Cloud Engineering and other internal teams to design and implement security controls defenses and countermeasures that protect company data applications and infrastructure across public cloud and internet-facing environments. Serves as a senior technical resource for cloud security with primary focus on secure cloud architecture standardized perimeter controls Zero Trust access patterns design recommendations risk articulation and secure-by-design guidance across multi-cloud deployments.Responsibilities
Partner with internal teams to incorporate security requirements into cloud architecture modernization application onboarding access enablement and vendor integration efforts.
Provide security architecture review and design recommendations for public cloud platforms internet-facing applications APIs workloads and data flows to improve control consistency and reduce unmanaged exposure.
Assess cloud designs against enterprise security standards regulatory expectations and industry frameworks; document architecture findings risk decisions exception rationale and recommended remediation options.
Adviseon standardized perimeter controls Zero Trust access patterns private access segmentation secure connectivity and identity-based access approaches for users workloads applications and third parties.
Review cloud configuration IAM network routing encryption logging monitoring and telemetry requirements; identify gaps and coordinate practical next steps with accountable technology owners.
Support adoption and consistent use of cloud-native and enterprise security capabilities including CNAPP CSPM CWPP CIEM KSPM WAF IDS/IPS secure web gateway SASE and ZTNA capabilities where applicable.
Articulate cloud security risk business impact control tradeoffs and remediation priorities to technical teams management stakeholders and security leadership.
Maintain reusable cloud security guidance decision records control recommendations status updates escalation points and next steps for cross-functional delivery teams.
Contribute to Security Architecture objectives by strengthening secure-by-design delivery improving cloud control maturity and enabling consistent architecture governance across cloud platforms.
Minimum Qualifications
Bachelors degree in Information Security Computer Science Engineering Information Systems or equivalent experience.
5 years of experience in information security cloud engineering cloud security architecture network security or infrastructure security.
Direct experience partnering with Cloud Engineering Network Identity Security Operations and application teams to assess risk and recommend secure design patterns.
Strong understanding of public cloud security concepts across AWS Azure GCP and other cloud platforms.
Experience evaluating cloud architecture designs identifying security gaps articulating risk and recommending practical controls that can be implemented by accountable engineering and operations teams.
Preferred Qualifications
Advanced degree preferred.
Cloud security architecture or engineering certifications such as CCSP CISSP AWS Security Specialty Azure Security Engineer Google Professional Cloud Security Engineer or equivalent preferred.
Knowledge of Zero Trust SASE ZTNA secure web gateway DNS security cloud firewall WAF IDS/IPS segmentation and private access patterns for users workloads APIs and internet-facing applications.
Familiarity with CNAPP CSPM CWPP CIEM KSPM cloud-native security services infrastructure-as-code scanning and policy-as-code approaches used to detect prioritize and reduce cloud exposure.
Working knowledge of secure SDLCDevSecOps CI/CD pipelines Terraform or similar infrastructure-as-code tooling container and Kubernetes security API security and secure configuration baselines.
Key Skills and Competencies
Knowledge of cloud identity and access management including least privilege privileged access workload identities service accounts federated access conditional access and non-human identity risk.
Ability to interpret cloud security findings misconfigurations exposure paths vulnerability data and telemetry; distinguish material risk from noise; and communicate prioritized remediation options.
Ability to apply enterprise security policies audit expectations and frameworks such as NIST CIS CSA CCM and OWASP to cloud architecture reviews standards guidance and exception recommendations.
Strong communication coordination analytical facilitation and project management skills.
Proven ability to influence teams without direct authority and drive clarity on ownership risk acceptance remediation plans and next steps.
Demonstrated ability to operate effectively in a fast-paced globally distributed environment with limited dedicated staffing competing priorities and shared internal responsibility.
Equal Opportunity Employer:
Zebra is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin disability and protected veteran status or any other basis prohibited by law. If you are an individual with a disability and need assistance in applying for a position please contact us at .
Know Your Rights:
Pay Range:
$112400.00 - $162400.00 Annual
Incentive Compensation:
In addition to base pay Zebra offers this role the opportunity to earn a performance-based annual cash incentive at a target equal to 12% of base pay in accordance with the terms of the applicable incentive plan.Total Rewards:
Zebra Total Rewards includes more than just pay and is structured to meet the needs of our changing global business and evolving talent. We are committed to providing our employees with a benefits program that is comprehensive and competitive including healthcare wellness inclusion networks and continued learning and development offerings. We offer community service days in addition to the traditional insurances compensation parental leave employee assistance program and paid time off offerings depending on the country where you work.
Salary offered will vary depending on your location job-related skills knowledge and experience.
Job Posting Statement:
To protect candidates from falling victim to online fraudulent activity involving fake job postings and employment offers please be aware our recruiters will always connect with you via @ email accounts. Applications are only accepted through our applicant tracking system and only accept personal identifying information through that system. Our Talent Acquisition team will not ask for you to provide personal identifying information via e-mail or outside of the system. If you are a victim of identity theft contact your local police department.
AI Technology Statement:
Zebra Technologies leverages AI technology to evaluate job applications using objective job-relevant criteria. This approach enhances efficiency and promotes fairness in the hiring process. However every decision regarding interviews and hiring is made by our dedicated team because we believe people make the best decisions about people. For more on how we use technology in hiring and how we process applicant data see our Zebra Privacy Policy.
Required Experience:
IC