The Cloud Security Lead will design and implement security controls for cloud infrastructure, improve detection, manage vulnerabilities, and ensure compliance while collaborating with engineering teams.
Cleo is seeking a Lead Cloud Security Engineer to design, implement, and continuously improve security controls across our cloud infrastructure and SaaS environments.
This role is responsible for strengthening Cleo's AWS security posture, embedding secure-by-default cloud guardrails, and partnering closely with Platform and Engineering teams to reduce infrastructure risk without slowing innovation.
The ideal candidate is hands-on, technically deep in AWS, and experienced in building scalable cloud security capabilities in a high-growth SaaS environment.
What You Will Be Doing
Cloud Security Architecture
Cloud Detection and Visibility
Infrastructure as Code Security
Vulnerability and Configuration Management
Data Protection and Encryption
Incident Response Support
Automation and Continuous Improvement
Metrics and Reporting
Your Qualifications
Required
Preferred
A few things we have to offer:
This role is responsible for strengthening Cleo's AWS security posture, embedding secure-by-default cloud guardrails, and partnering closely with Platform and Engineering teams to reduce infrastructure risk without slowing innovation.
The ideal candidate is hands-on, technically deep in AWS, and experienced in building scalable cloud security capabilities in a high-growth SaaS environment.
What You Will Be Doing
Cloud Security Architecture
- Design and implement secure cloud architecture patterns
- Establish guardrails for AWS accounts and services
- Strengthen multi-account strategy and segmentation
- Improve IAM design, permission boundaries, and least-privilege models
- Review major infrastructure changes for security impact
Cloud Detection and Visibility
- Implement and tune cloud-native detection capabilities
- Integrate AWS security services into centralized monitoring
- Identify misconfigurations and excessive permissions
- Improve signal-to-noise ratio in cloud alerts
Infrastructure as Code Security
- Embed security controls into Terraform or other IaC workflows
- Enforce policy-as-code guardrails
- Ensure IaC scanning is integrated into CI/CD pipelines
- Reduce configuration drift across environments
Vulnerability and Configuration Management
- Oversee cloud misconfiguration detection and remediation
- Track infrastructure vulnerability exposure
- Reduce critical vulnerability exposure window
- Partner with Platform teams to automate remediation
Data Protection and Encryption
- Ensure proper encryption standards across storage and databases
- Manage KMS usage and key lifecycle best practices
- Strengthen logging and monitoring coverage
Incident Response Support
- Lead cloud-focused investigations during security incidents
- Improve forensic readiness in AWS
- Harden logging and evidence retention practices
Automation and Continuous Improvement
- Automate guardrails and enforcement mechanisms
- Improve developer experience with secure cloud defaults
- Reduce manual cloud security reviews
- Optimizing tooling cost and effectiveness
Metrics and Reporting
- Define KPIs for cloud security posture
- Report on misconfiguration trends and exposure windows
- Provide executive-level reporting on infrastructure risk
- Support audit and compliance evidence collection
Your Qualifications
Required
- 7+ years of experience in cloud security, cloud engineering, or infrastructure security
- Deep expertise in AWS architecture and services
- Strong understanding of IAM design and least-privilege principles
- Experience with Infrastructure as Code and CI/CD integration
- Experience implementing cloud-native detection and monitoring
- Ability to translate infrastructure risk into business impact
Preferred
- Experience in mid-market or high-growth SaaS environments
- Experience supporting SOC 2 or similar audits
- Familiarity with policy-as-code frameworks
- Experience building multi-account AWS environments
- Relevant certifications such as AWS Security Specialty, CISSP, or equivalent
A few things we have to offer:
- $130,000 to $150,000 base salary + bonus opportunity
- Great Healthcare + Dental + Vision
- Flexible PTO
- Culture of support, encouraging Life-Work balance
- 401k match
- FSA and HSA options
- Employee Assistance Program
- Paid Parental Leave
- Representing a company with 4,000+ clients and a 99% retention rate
- Accelerated title and salary growth potential
- A fun and energetic work environment that makes you excited to go to work every day
Top Skills
AWS
Ci/Cd
Terraform
Similar Jobs at Cleo
Cloud • eCommerce • Information Technology • Professional Services • Software
The Customer Success Manager oversees customer lifecycle, develops relationships, and ensures accurate records while promoting customer loyalty and problem resolution.
Top Skills:
Crm SoftwareCustomer Success Strategies
Cloud • eCommerce • Information Technology • Professional Services • Software
Lead the implementation of EDI solutions, ensure compliance, collaborate with teams, resolve issues, and document processes. Train clients on EDI best practices and maintain quality assurance.
Top Skills:
Ansi X12As2C#EdiEdifactFtpsJavaOraclePythonSftpSQL
Cloud • eCommerce • Information Technology • Professional Services • Software
The Security Operations Lead will develop security detection strategies, oversee incident response, manage vulnerabilities, ensure cloud security, and mentor a team to enhance security operations.
Top Skills:
AWSEdrSIEM
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

