Cloud Support Engineer - Security

 Posted a month ago
     
 $104K - $199K per year
  
5-10 years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

Responsible for the day-to-day security posture of AWS and Azure cloud platforms, including designing secure architectures and implementing preventative controls. The role involves monitoring for threats, responding to incidents, and automating security guardrails via Infrastructure as Code.

NOTE TO APPLICANTS: Individual(s) must be legally authorized to work in the United States without the need for immigration support or sponsorship from Milliman now or in the future

POSITION SUMMARY:

The Cloud Support Engineer – Security is responsible for the day-to-day security posture of cloud platforms and services, with a focus on AWS and Azure and supporting platforms such as M365 and Databricks. This role partners with engineering and operations teams to design secure cloud architectures, implement preventative and detective controls, monitor for threats, respond to incidents, and continuously improve compliance and governance across cloud environments.

RESPONSIBILITIES:

  • Secure Architecture & Design Reviews: Provide security guidance for cloud architectures and changes (network segmentation, private connectivity, encryption patterns, key management), and review designs for risk and alignment to standards.
  • Identity & Access Management (IAM): Implement and maintain least-privilege access using AWS IAM/Organizations and Azure Entra ID/RBAC, including privileged access workflows, role design, service principals, and periodic access reviews.
  • Security Monitoring & Detection Engineering: Enable and tune cloud-native security signals (e.g., CloudTrail/Config/GuardDuty, Azure Activity Logs/Defender for Cloud/Sentinel) and ensure centralized logging, alerting, and actionable runbooks.
  • Vulnerability & Configuration Management: Drive patching and vulnerability remediation for cloud workloads and platform services; enforce secure configuration baselines and continuously assess drift using CSPM/configuration tools.
  • Security Automation & DevSecOps: Build guardrails and automate security controls with Infrastructure as Code (e.g., Terraform) and scripting (Python/Bash/PowerShell), including policy-as-code, CI/CD checks, and standardized hardened templates.
  • Compliance, Risk & Governance: Maintain cloud security standards, support audits (e.g., HITRUST), evidence collection, risk assessments, and exception management; translate control requirements into actionable technical controls.
  • Stakeholder Partnership: Collaborate with cloud/platform teams and application owners to prioritize security work, provide guidance, and deliver secure-by-default patterns without blocking delivery.

SKILLS & QUALIFICATIONS REQUIRED:

  • The ideal candidate must have Cloud Certification (Azure Or AWS).
  • The ideal candidate must have minimum 5 years of experience in cloud security, cloud engineering with a primary security focus, or security operations supporting public cloud environments.
  • The ideal candidate must have minimum 3 years of hands-on security experience in AWS and Azure, including implementing IAM, network security controls, logging/monitoring, and policy enforcement; relevant cloud certifications required (AWS and/or Azure).
  • The ideal candidate must have previous experience operating and improving security controls such as CSPM, vulnerability management, SIEM/SOAR, EDR, and incident response processes.
  • The ideal candidate must have hands-on scripting/automation experience (Python, Bash, and/or PowerShell) and Infrastructure as Code concepts to automate security checks and guardrails.
  • Must have excellent communication skills (verbal and written), with the ability to translate security risk into clear technical and business recommendations.

 SKILLS & QUALIFICATIONS PREFERRED: 

  • HITRUST and/or other regulated-environment experience (e.g., SOC 2, ISO 27001), including audit support and evidence collection.
  • Experience securing Databricks and data platforms (workspace access controls, secret scopes, logging, network controls).
  • Infrastructure as Code (IaC) experience, especially Terraform, including policy-as-code/guardrails (e.g., Sentinel/OPA) and standardized secure modules.
  • Container/Kubernetes security experience (image scanning, admission controls, runtime protections, and cluster hardening).

LOCATION:

This is a remote role. This job posting is expected to close on June 8th, 2026

COMPENSATION:

The overall salary range for this role is $104,900 - $199,065. For candidates residing in:

  • Alaska, California, Connecticut, Illinois, Maryland, Massachusetts, New Jersey, New York City, Newark, San Jose, San Francisco, Pennsylvania, Virginia, Washington, or the District of Columbia the salary range is $120,635 - $199,065.
  • All other locations the salary range is $104,900 - $173,100.

A combination of factors will be considered, including, but not limited to, education, relevant work experience, qualifications, skills, certifications, etc.

BENEFITS:

We offer a comprehensive benefits package designed to support employees’ health, financial security, and well-being. Benefits include:

  • Medical, Dental and Vision – Coverage for employees, dependents, and domestic partners
  • Employee Assistance Program (EAP) – Confidential support for personal and work-related challenges
  • 401(k) Plan – Includes a company matching program and profit-sharing contributions.
  • Discretionary Bonus Program – Recognizing employee contributions
  • Flexible Spending Accounts (FSA) – Pre-tax savings for dependent care, transportation, and eligible medical expenses
  • Paid Time Off (PTO) – Begins accruing on the first day of work. Full-time employees accrue 15 days per year, and employees working less than full-time accrue PTO on a prorated basis
  • Holidays – A minimum of 10 paid holidays per year
  • Family Building Benefits – Includes adoption and fertility assistance
  • Paid Parental Leave – Up to 12 weeks of paid leave for employees who meet eligibility criteria
  • Life Insurance & AD&D – 100% of premiums covered by Milliman
  • Short-Term and Long-Term Disability – Fully paid by Milliman

ABOUT MILLIMAN:

Independent for over 75 years, Milliman delivers market-leading services and solutions to clients worldwide. Today, we are helping companies take on some of the world’s most critical and complex issues, including retirement funding and healthcare financing, risk management and regulatory compliance, data analytics and business transformation.

Milliman invests in skills training and career development and gives all employees access to a variety of learning and mentoring opportunities. Our growing number of Milliman Employee Resource Groups (ERG’s) are employee-led communities that influence policy decisions, develop future leaders, and amplify the voices of their constituents. We encourage our employees to give back to their varied professions, including leadership in professional organizations. Please visit our web site (https://www.milliman.com/en/social-impact) to learn more about Milliman’s commitments to our people, inclusion, and sustainability.

Through a team of professionals ranging from actuaries to clinicians, technology specialists to plan administrators, we offer unparalleled expertise in employee benefits, investment consulting, healthcare, life insurance and financial services, and property and casualty insurance.

EQUAL OPPORTUNITY:

All qualified applicants will receive consideration for employment, without regard to race, color, religion, sex, sexual orientation, national origin, disability, or status as a protected veteran.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Support Engineer

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified