TRM logo

Cloud Security Engineer

TRM
Remote, USARemoteSoftware EngineeringSenior-LevelNot Specified - Not SpecifiedPosted: yesterday
Apply NowOpens TRM's site

About the role

Cloud Security Engineer

Location

United States

Employment Type

Full time

Location Type

Remote

Department

R&D

Engineering

Security

Overview

Application

Build a Safer World.

TRM Labs provides AI-powered intelligence solutions that help public and private sector agencies investigate and disrupt crime. TRM's platforms enable investigators to trace illicit activity, build cases, and construct operating pictures of threat networks. Leading agencies and businesses worldwide rely on TRM to make the world safer and more secure.

About the Team

The Security team is responsible for and committed to securing all things at TRM. From our customers to our code, and everything in between, the security team is involved in all aspects of the business. As a Senior Cloud Security Engineer, you will lead the charter for maturing TRM’s cloud infrastructure and security systems at scale. From designing the strategy to implementing best practices, your work will accelerate our mission of building a safer financial system for billions of people.

The impact you will have here:

Provide technical guidance and leadership as a cybersecurity expert on topics such as architecture, configuration management, and environment design

Leverage automation tools, configuration management, and infrastructure-as-code (IaC) solutions to standardize security across all environments

Guide relevant stakeholders such as engineering, product, and leadership and ensure alignment with security strategies

Identify and communicate cloud platform vulnerabilities and mitigation options to stakeholders that balance business agility with security

Serves as a Cloud Security Subject Matter Expert (SME) by maintaining knowledge of industry-recognized cloud security technologies and concepts; actively engages and assists lines of business to understand their needs and develop secure business solutions

Drive security improvements in the GCP environment and perform Identity and Access Management (IAM) in GCP to ensure that principles of least privilege and roles-based access control are maintained

Participate in audits of the cloud environment by working with external auditors and internal resources to ensure we are meeting expectations

What we’re looking for:

Relevant industry experience in managing cloud security programs, Identity Access Management (IAM), and cloud-native security solutions (e.g., firewalls)

Expert-level knowledge of cloud infrastructure components, preferably with GCP

Strong bias for action; ability to juggle multiple priorities and create a sense of urgency in a fast-paced, dynamic environment.

Ability to audit and provide audit support for security controls within the cloud environment

Experience with infrastructure vulnerability testing tools, Cloud Application Platforms (Heroku), and Infrastructure as code tools (Terraform)

About the Team:

The culture of our team is built on mutual respect, where everyone's opinion is valued and heard.

We prioritize flexibility and efficiency, always seeking smarter ways to work without compromising quality.

Transparency is at the heart of how we operate, both within the team and with the business, as we focus on clearly communicating and addressing cyber risks.

Our collaborative approach ensures that we not only mitigate these risks but also align our efforts with business goals to protect and drive success.

Team’s Time Zones:

Eastern Standard Time (EST - GMT-4)

Pacific Standard Time (PST - GMT-7)

Central European Summer Time (CET - GMT+2)

Learn about TRM Speed in this position:

Prioritize Rapid Threat Assessments: Efficiently perform security risk assessments and triage vulnerabilities based on immediate risk to the business, focusing on the most critical issues with minimal delays.

Integrate Security Early in Development: Embed security testing and reviews within our Product Shipping Framework and CI/CD pipelines to ensure that security is automated and runs parallel to the fast-paced development cycle, preventing bottlenecks.

Proactively Educate Developers: Conduct just-in-time security training for developers and engineers, offering real-time advice and code reviews to help them produce secure code without interrupting their workflow.

Optimize Tools for Speed: Leverage lightweight and efficient security tools that can be quickly integrated into development environments without slowing down deployments, ensuring continuous and secure product iterations.

Application Instructions

If you’re interested in joining TRM, we encourage you to apply directly. Every application is reviewed by our Talent team.

Before applying, review the job description carefully and highlight the experience and impact that best demonstrate the required qualifications. Please also provide thoughtful and accurate answers to the application questions, as these will be used to evaluate your qualifications for the role.

If you send your resume directly to someone at TRM, we can’t guarantee it will reach the appropriate hiring team. Applying directly is the best way to ensure you’re considered.

What to Expect From Our Interview Process

Our process is designed to understand how you think, solve problems, and deliver impact, while giving you the opportunity to evaluate TRM. Most interview processes include a case study, AI skills assessment, and Leadership Principles interview.

Recruiter Intro: Explore your experience, motivations, and alignment with the role.

Hiring Manager: Dive deeper into your relevant experience, skills, and impact.

First Round: Typically 1–2 interviews focused on the skills most critical to the role.

Final Round: Meet some of the people you'd be working with. This is usually a panel-style session where we go deeper on your craft, problem-solving, and alignment with TRM.

References: We’ll speak with former colleagues who can provide perspective on your work and impact.

Offer: If it’s a mutual fit, your recruiter will walk you through your offer and answer your questions.

Welcome to TRM: Once you sign, we’ll get you ready for your first day and onboarding.

Your recruiter will share your specific interview plan and preparation guidance along the way.

Learn more about interviewing at TRM

Minimum requirements

  • Experience managing cloud security programs, IAM, and cloud-native security solutions, preferably with GCP.
  • Expert-level knowledge of cloud infrastructure components and ability to audit security controls.
  • Proficiency with infrastructure vulnerability testing, Cloud Application Platforms (Heroku), and IaC tools (Terraform).

This listing was parsed by AI and may not be complete. Check the official posting on TRM's site for the most accurate information.

Ready to apply?
Applications are handled on TRM's own careers site.
Apply Now

More roles at TRM

Product Security Engineer
Remote, USA · Remote
View →
Account Director, Crypto
Remote, USA · Remote
View →
Senior Threat Intelligence Analyst, Hacks
Remote, USA · Remote
View →
Senior Cyber Threat Response Advisor
Remote, USA · Remote
View →