864 aws security engineer jobs at 473 companies in California
4d
Save
Mark Applied
Hide
4d
AWS Engineer
United States or Pittsburgh or California or New York or New Jersey
$60k-$99k/yrRemoteFull Time
EXL ServiceNASDAQ: EXLS: Global data analytics, AI, and digital operations solutions.
4+ YOERequires 4–6 years of AWS pipeline, infrastructure-as-code, and ML platform experience; Python, Docker, AWS services, CI/CD, databases, monitoring, and scalable secure architecture. Bachelor's or master's degree preferred.
Scottsdale or San Francisco or Chicago or New York City
$132k-$198k/yrHybridFull Time
Early Warning Services: U.S. bank-owned fintech and consumer reporting agency providing identity, fraud-risk, and real-time payment solutions to financial institutions.
8+ YOE8+ years platform/infrastructure/security engineering experience; experience defining secure platform architectures, controls, and standards; AWS/cloud expertise; strong communication and technical leadership; Bachelor’s degree or equivalent.
Apex: Private American satellite manufacturer building configurable satellite buses at scale for commercial and government customers.
5+ YOEU.S. citizenship, bachelor's degree or 5+ equivalent years, and 5–9+ years of cloud security engineering experience with AWS GovCloud, Azure, Google Cloud, or multi-cloud environments.
AWS GovCloud, Azure, Google Cloud, Identity and Access Management (IAM), Role-Based Access Control (RBAC), Microsoft Defender for Cloud, Azure Sentinel, Elastic, Terraform, CloudFormation, Python, Nessus, Burp Suite, Microsoft PowerShell, Kubernetes, CI/CD, Infrastructure-as-Code (IaC)
Staff Security Engineer, Cloud and Product Security
Arizona or California or Colorado or District of Columbia or Florida or Georgia or Iowa or Illinois or Massachusetts or Maryland or Michigan or Minnesota or Montana or Nebraska or North Carolina or New Hampshire or New Jersey or Nevada or New York or Ohio or Oregon or Pennsylvania or Rhode Island or Tennessee or Texas or Utah or Washington
$198k-$220k/yrRemoteFull Time
Lob: Direct-mail automation platform for businesses, providing APIs, printing, routing, fulfillment, and delivery.
8+ YOE8+ years security engineering experience with cloud security, detection engineering, incident response, and application security; hands-on AWS, IAC, and detection tooling experience; ability to drive security work through engineering teams.
Chicago or California or Colorado or Florida or Georgia or Illinois or Indiana or Minnesota or Missouri or Montana or New Jersey or New York or North Carolina or Ohio or Oregon or Pennsylvania or South Carolina or Texas or Utah or Vermont or Virginia or Washington or Washington or Wisconsin
$210k-$260k/yrHybridFull Time
NinjaTrader: Privately held futures trading platform and brokerage serving retail and professional futures traders.
7+ YOE7+ years in application/product/security engineering; hands-on threat modeling, vulnerability management, secure design, CI/CD integration, automation using Python/Go; experience with cloud-native AWS/GCP environments.
Moveworks: Enterprise AI assistant platform that helps organizations automate employee support, search, and workflows.
8+ YOERequires U.S. citizenship, 8–10 years in security operations, systems engineering, or DevSecOps, Python expertise, LLM agent frameworks, MCP, AWS security, Kubernetes/EKS, and FedRAMP awareness.
Livingston or New York or Sunnyvale or Bellevue or San Francisco
$165k-$242k/yrOnsiteFull Time
CoreWeaveNasdaq: CRWV: Specialized cloud provider for large-scale AI and machine learning.
5+ YOE5+ years cloud security architecture/engineering, Bachelor’s in Computer Science or related, deep public cloud (AWS/Azure/GCP) expertise, Terraform and IaC automation, proficiency in Go or Python, CI/CD and security controls experience.
San Francisco or Palo Alto or Toronto or Los Angeles
OnsiteFull Time
HeyGen: Private AI video platform helping businesses create, translate, and personalize videos at scale.
Hands-on Python and AWS experience, cloud and application security, vulnerability management, IAM and secrets management, familiarity with SOC 2/ISO 27001, strong communication and threat modeling skills.
Python, AWS, Drata, Infisical, Bugcrowd, SOC 2, ISO 27001
Sift: Private AI fraud-prevention helping digital businesses detect payment fraud, account takeover, and abuse.
5+ YOE5+ years in security/infrastructure/application security; hands-on with AWS or GCP; proficiency in Python/Go/Java; experience with SAST/DAST and SIEM; knowledge of secure system design, incident response, and AI/LLM security risks.
Verkada: Physical security platform for enterprise buildings and facilities.
7+ YOEBachelor's in CS (or equivalent), 7+ years security engineering advisory experience, cloud (AWS/GCP) knowledge, threat modeling, architecture/design reviews, security SDLC, and production coding in Python or Go.
AWS, GCP, Python, Go, Security Development Lifecycle, Threat Modeling
ChimeNasdaq: CHYM: A U.S. financial technology offering low-cost banking, payments, lending, and investing products to everyday Americans.
2+ YOE2–6+ years in security or software engineering; strong coding skills (Python, Go, Ruby); cloud (AWS/GCP) and APIs; experience with automation and security testing; excellent communication and collaboration.
Reality LabsNASDAQ: META: ’s AR/VR and wearable-technology business unit builds immersive hardware, software, research, and content for consumers.
10+ YOE10+ years security experience, BS/MS in CS/Engineering or equivalent, experience leading cross-functional programs, expertise in threat modelling, vulnerability management, AWS, and infrastructure hardening.
Snorkel AI: The frontier AI data lab helping teams build the data and environments behind high-performing frontier and agentic AI.
Requires Python, Go, or similar programming; cloud-native and containerized systems experience; Terraform and AWS architecture; IAM and network security expertise. Experience with security automation, incident response, threat modeling, and compliance frameworks is valued.
Python, Go, Infrastructure as Code (IaC), Cloud Security Posture Management (CSPM), AWS, Kubernetes, Identity and Access Management (IAM), Network Access Control Lists (NACLs), Virtual Private Cloud (VPC), AWS Key Management Service (KMS), Terraform, CI/CD, Amazon Machine Images (AMIs), Secrets Manager, HashiCorp Vault, NIST CSF, ISO 27001, SOC 2, CIS benchmarks, Secure Development Lifecycle (SDLC), Static Application Security Testing (SAST), Software Composition Analysis (SCA), Software Bill of Materials (SBOM), Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), GCP, Azure, Zero-trust, Data Loss Prevention (DLP)
Code and Theory: Stagwell's digital-first creative agency combines strategy, design, engineering, and marketing to build digital products for businesses.
5+ YOE5+ years security engineering experience in SaaS/cloud environments; hands-on SOC 2/ISO control implementation, cloud security (GCP/AWS/Azure), SIEM/monitoring, CI/CD automation, and AI/agent security.
GCP, AWS, Azure, SOC 2 Type II, ISO 27001, ISO 42001, SIEM, SAST, DAST, Checkov, tfsec, OPA/Rego, CI/CD
Nectar Social: Private B2B SaaS providing AI-powered social community management, listening, influencer tracking, and revenue analytics for brands.
5+ YOE5+ years in security engineering or application/product security; strong application and cloud security fundamentals; hands-on compliance program experience (SOC 2/ISO 27001); programming skills for security tooling; experience with enterprise security reviews and AI workloads.