drjobs Staff Cloud Security Engineer (Breakthrough)

Staff Cloud Security Engineer (Breakthrough)

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Green Bay - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

POSITION SUMMARY

About Breakthrough

At Breakthrough we empower our clients with data technology and market knowledge to reduce costs create efficient networks and decarbonize transportation. As a strategic partner to our clients we challenge legacy practices in the $700 billion transportation industry delivering sustainable fuel and freight products that foster fair partnerships and environmental responsibility.

As a digital product company our culture thrives on curiosity autonomy and purpose-driven innovation. Here youre not just executing tasks; youre collaborating with a team dedicated to transforming transportation and making a tangible impact on the global economy and the planet.

The Role

As a Staff Cloud Security Engineer youll play a pivotal role in developing and enhancing digital products that enable shippers to optimize the way freight moves around the globe.

The Staff Cloud Security Engineer is a key position to strengthen the security of our GCP-native SaaS platform FELIX. This is a senior hands-on role responsible for building and automating the security capabilities that protect our infrastructure APIs and client data. You will lead the technical security function within Breakthroughs product organization while collaborating with our CTO and Corporate InfoSec team to shape and align strategy. This role will drive cloud security threat detection infrastructure-as-code (IaC) policy enforcement and DevSecOps enablement with a focus on automation scalability and practical risk reduction. Its ideal for someone who enjoys solving problems with code thrives in a high-ownership environment and values balancing product development agility with sound security fundamentals.

Were seeking individuals who excel in collaborative environments are driven by the why behind their work and the core problems theyre trying to solve and are eager to develop innovative solutions while influencing the evolution of our systems teams and culture.

At Breakthrough were figuring out things for the first time; things that no
one else has ever done before - Engineering leader Breakthrough

JOB RESPONSIBILITIES

What Youll Do

Technical Leadership

  • Provide technical guidance and security expertise across engineering teams.

  • Lead the implementation of security best practices and advocate for secure design development and deployment processes.

  • Collaborate with Engineering Directors Principal Engineers and Corporate InfoSec to align security strategy with product and platform goals.

  • Serve as the primary security point of contact within the Engineering organization.

Development & Automation

  • Design and implement security tooling and automation to support DevSecOps practices.

  • Write scripts and lightweight tools (e.g. in Python Bash) to automate detection remediation and compliance workflows.

  • Contribute to infrastructure and CI/CD security by embedding secure guardrails in Terraform Bitbucket pipelines and deployment pipelines.

Architectural Design

  • Lead threat modeling and secure architecture reviews across our GCP-native SaaS platform.

  • Partner with Cloud Engineering to integrate security into infrastructure provisioning and platform components.

  • Translate compliance and security frameworks (e.g. SOC 2 NIST 800-53 FedRAMP CIS Controls) into actionable scalable policies and controls in infrastructure and code.

  • Evaluate and recommend security technologies with input from CTO and Corporate InfoSec including GCP-native tools CrowdStrike and modern SIEM/SOAR platforms.

Technical Excellence

  • Drive the evaluation and adoption of cloud-native and modern security tools (e.g. Google SCC Chronicle Panther CrowdStrike).

  • Build and tune threat detection capabilities to identify and respond to cloud misuse API abuse and potential data exfiltration.

  • Maintain incident response playbooks and lead security incident investigations in collaboration with Corporate InfoSec.

Innovation and Research

  • Stay current with cloud security trends threat actor TTPs (tactics techniques and procedures) and evolving best practices.

  • Proactively identify opportunities to reduce risk and increase automation across the SDLC and cloud environment.

Collaboration

  • Partner with engineering teams to foster a culture of secure coding and continuous improvement in security posture.

  • Collaborate with Breakthroughs GRC Lead and Sr. Director of Technology Operations on audits and client due diligence.

  • Participate in periodic reviews with Corporate InfoSec to ensure alignment and maintain a strong security posture.

  • Mentor engineers in secure development practices and support team learning on threat modeling authentication and data protection.

This Role Might Be a Great Fit If

  • Youreenthusiastic about tackling complex challenges and can distill them into actionable solutions.

  • Understanding theunderlying purposeof your work motivates you beyond merely delivering features.

  • You thrive in collaborative settings engaging with engineers productowners and designers to achieve common goals.

  • Yourecommitted to advancing sustainability in transportation and reducing environmental impact through technological innovation.

This Role Might Not Be the Best Fit If

  • You prefer working in isolation or solely on predefined tasks without broader context.

  • Adaptability to shifting priorities in a dynamic environment is challenging for you.

  • Collaborating with non-engineering disciplines such as product and designdoesntalign with your working style.

  • You seek a rigid hierarchical structure to guide all decision-making processes.

  • Mentoring others and contributing to team growtharentareas of interest for you.

How We Work

  • Hybrid-Friendly:While many team members are based in Green Bay we embrace remote work and prioritize impact over location.

  • Cross-Functional Teams:Youllbe part of an agile teamcomprised ofproduct owners designers QA specialists and fellow engineers fosteringa holistic approachto product development.

  • Continuous Improvement:We regularly conduct retrospectives refine our processes and invest in addressing technical debt to enhance our workflows.

  • Empowered Engineers:Beyond task executionyoureencouraged to influence both what we build and how we build it ensuring alignment with our strategicobjectives.

QUALIFICATIONS

What You Bring

  • Bachelors degree in Computer Science or a related technical field involving coding (e.g. physics or mathematics) or equivalent technical experience.

  • 10 years of experience in security engineering cloud security DevSecOps or related technical domains ideally within a SaaS or product-focused organization.

  • In-depth experience designing and implementing scalable cloud-native security solutions with a strong understanding of Google Cloud Platform (GCP) services such as IAM VPC Security Command Center Workload Identity and GKE.

  • Strong proficiency in multiple programming or scripting languages specifically Python Go and Bash with an emphasis on automation and tool development.

  • Demonstrated experience with infrastructure as code (IaC) and policy as code including tools such as Terraform CI/CD pipelines and frameworks like OPA or Sentinel.

  • Hands-on experience with modern SIEM/SOAR platforms (e.g. Chronicle Panther) and the ability to develop high-fidelity detection logic.

  • Expertise in secure development practices application security threat modeling and advising on secure architecture.

  • Familiarity with compliance frameworks such as SOC 2 NIST 800-53 CIS Controls and translating them into technical controls and processes.

  • Experience with Agile software development methodologies including Kanban and Scrum.

  • Excellent problem-solving skills and the ability to navigate complex technical and security challenges.

  • Strong communication skills with the ability to articulate complex security concepts to both technical and non-technical stakeholders.

Preferred:

  • Relevant certifications such as Google Professional Cloud Security Engineer Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP).

  • Familiarity with DevOps and platform engineering practices and tools.

  • Prior experience working in a cross-functional product engineering team.

  • Demonstrated leadership experience in guiding teams or influencing security strategy across an organization.

TechWe Use

  • Backend:PythonPostgres

  • Frontend:NodeReact TypeScriptgraphQL

  • Cloud & Infrastructure:Google Cloud Platform (GCP) Terraform Docker

  • Data & Analytics:BigQuerydbt

  • Monitoring & Observability:GCP Monitoring

Whileexpertisein every technologyisnt familiarity with our stack is beneficial.Werekeen to work with individuals who bring relevant experience and a willingness to learn.

DIVISION:

Breakthrough

U.S. Venture requires that a team member have and maintain authorization to work in the country in which the role is based. In general U.S. Venture does not sponsor candidates for nonimmigrant visas or permanent residencyunless based on business need.

U.S. Venture will not accept unsolicited resumes from recruiters or employment agencies. In the absence of an executed recruitment Master Service Agreement there will be no obligation to any referral compensation or recruiter fee. In the event a recruiter or agency submits a resume or candidate without an agreement U.S. Venture shall reserve the right to pursue and hire those candidate(s) without any financial obligation to the recruiter or agency. Any unsolicited resumes including those submitted to hiring managers shall be deemed the property of U.S. Venture.

U.S. Venture Inc. is an equal opportunity employer that is committed to inclusion and diversity. We ensure equal opportunity for all applicants without regard to race color religion sex sexual orientation gender gender identity or expression marital status age national origin disability veteran status genetic information or other protected characteristic. If you need assistance or an accommodation due to a disability you may call Human Resources at .


Required Experience:

Staff IC

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.