GuideWell Logo

GuideWell

Cloud Security Engineer

Posted 6 Days Ago
Remote or Hybrid
Hiring Remotely in United States
109K-178K Annually
Senior level
Remote or Hybrid
Hiring Remotely in United States
109K-178K Annually
Senior level
Build and operate cloud security controls across AWS, Azure, GovCloud, and secondary platforms. Responsibilities include IAM, encryption, secrets management, preventive and detective controls, PHI protection, logging pipelines, Terraform and CI/CD automation, remediation, application and vendor design reviews, and audit evidence for HITRUST, HIPAA, SOC 2, FedRAMP, and internal assessments.
The summary above was generated by AI


The Cloud Security Engineer builds and operates the security controls embedded in GuideWell's cloud platforms as the company migrates infrastructure across commercial, GovCloud, and secondary cloud platforms. This role delivers preventive controls such as service control policies, IAM roles, and permission boundaries, and owns privileged access, key encryption architecture, secrets management, and the tuning of cloud security configuration services. The engineer builds the cloud logging pipeline feeding the security operations center, implements PHI data protection, and produces control evidence for HITRUST, HIPAA, SOC 2, and FedRAMP. This is a hands-on engineering role on the cloud platform team, working closely with the security organization that sets control standards.

 

What You Will Be Doing

 

  • Implement and maintain preventive controls: SCPs, IAM policy, permission boundaries, encryption, secrets 
  • Configure, tune, and operate detective controls; drive findings to remediation 
  • Build data protection controls for PHI, including lower-environment test data handling 
  • Automate evidence collection and support audit and assessment cycles 
  • Review application and vendor designs; respond to cloud security escalations 
  • Build the cloud logging pipeline that feeds the security operations center.
  • Deliver controls through Terraform and CI/CD.
  • Produce control evidence for HITRUST, HIPAA, SOC 2, FedRAMP, and internal audit.
  • Manage encryption and KMS key architecture across accounts.

What We Require

  • 6+ years related work experience in relevant information security, with 4+ years in cloud security engineering 

  • Related Bachelor's degree required 

  • Strong AWS/Azure IAM skills, including cross-account access and federation. 

  • Hands-on Terraform. 

  • Experience with cloud native security services in production. 

  • Experience in an environment governed by HIPAA, HITRUST, SOC 2, FedRAMP, or NIST 800-53.

 

What We Prefer

 

  • Healthcare payer experience. AWS/Azure Security Specialty, CCSP, or GIAC cloud security certification.

  •  GovCloud and FedRAMP Moderate or High. Security engineering across two or more major cloud platforms. 

  • SIEM integration and detection engineering. Privileged access management tooling. 
     

General Physical Demands

 

  • Exerting up to 10 pounds of force occasionally to move objects. 

  • Jobs are sedentary if traversing activities are required only occasionally. 

  • This position offers a hybrid work arrangement which combines flexibility with in office engagement. Team schedules are determined based on role requirements and business needs. Travel to and from our corporate offices may be required.

 

What We Offer
As a Florida Blue employee, you will be at the heart of GuideWell’s vision – to lead the nation in transforming health through compassionate, connected, and technology-enabled care that delivers personalized value and empowered living. 
To support your wellbeing, comprehensive benefits are offered. As an employee, you will have access to: 
 

  • Medical, dental, vision, life and global travel health insurance
  • Income protection benefits: life insurance, short- and long-term disability programs
  • Leave programs to support personal circumstances
  • Retirement Savings Plan including employer match
  • Paid time off, volunteer time off, 10 holidays and 2 well-being days
  • Additional voluntary benefits available; and a comprehensive wellness program

Employee benefits are designed to align with federal and state employment laws. Benefits may vary based on the state in which work is performed. Benefits for intern, part-time and seasonal employees may differ.
To support your financial wellbeing, we offer competitive pay as well as opportunities for incentive or commission compensation. We also conduct regular annual reviews with pay for performance considerations for base pay increases. 

Typical Annualized Offer/Hiring Range: $109,300 - $136,600
Annualized Salary Range: $109,300 - $177,600
Final pay will be determined with consideration of market competitiveness, internal equity, and the job-related knowledge, skills, training, and experience you bring.
We are an Equal Employment Opportunity employer committed to cultivating a work experience where everyone feels like they belong and can perform at their best in pursuit of our mission. All qualified applicants will receive consideration for employment.

Similar Jobs

6 Hours Ago
In-Office or Remote
Senior level
Senior level
Software
Designs and operates secure multi-cloud environments across GCP, Azure, and AWS. Responsibilities include cloud and network security architecture, SIEM alert monitoring and optimization, SaaS security, IAM, compliance assessments, incident response, firewall and access reviews, security documentation, and customer presentations. The role also supports security automation, risk remediation, and governance across frameworks including GDPR, SOC 2, ISO 27001, CMMC, and CSA STAR.
Top Skills: Amazon Web Services (Aws)Arm TemplatesBashCloudFormationDevsecopsDockerEntra IdGoogle Cloud Platform (Gcp)IamKubernetesAzurePowershellPythonSIEMTerraform
One Month Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
140K-165K Annually
Senior level
140K-165K Annually
Senior level
Fintech • Financial Services
Own AWS cloud security posture and vulnerability management using Wiz and AWS-native services. Build Infrastructure as Code guardrails, secure CI/CD pipelines, automate vulnerability workflows, and operate WAF protections. Partner with DevOps and engineering on IAM, network segmentation, containers, secrets, data exposure, telemetry, threat modeling, and application security. Drive projects independently while reducing organizational risk.
Top Skills: AWSAws Secrets ManagerCi/CdCloudflareContainer OrchestrationGithub Advanced SecurityGoIamInfisicalInfrastructure As CodeKeeperOwasp Top 10PythonRuby On RailsSpaceliftTerraformWafWiz
8 Days Ago
Remote or Hybrid
OH, USA
Senior level
Senior level
Financial Services
Lead cloud security architecture and threat hunting across enterprise cloud environments. Partner with engineering, product, and risk teams to embed secure-by-design controls, conduct threat models and risk assessments, review infrastructure-as-code, develop preventive and detective controls, and operationalize detections with cybersecurity teams. Analyze large datasets, improve alerting and incident-response playbooks, investigate cloud threats, and provide expertise on adversary tradecraft and emerging risks.
Top Skills: AWSAzureCloud Security Posture ManagementCloudFormationCrowdstrike FalconGCPInfrastructure-As-CodeKqlPrisma CloudSplunk SplSQLTerraformThreat ModelingWiz

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account