[All remote jobs](https://jobicy.com/jobs.md)Open role[![Clickhouse logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/6394b9a0-221.png)](https://jobicy.com/company/clickhouse.md)Remote opportunity at[Clickhouse](https://jobicy.com/company/clickhouse.md)

# Cloud Security Engineer

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/clickhouse.md)Share26 Aug 2026Published27Listing views0Application actions25 Sep 2026Apply before  Opportunity details

## About this role.

AI SummaryClickHouse is hiring an experienced Cloud Security Engineer to secure customer-facing infrastructure across AWS, GCP, and Azure. The role focuses on building scalable cloud security capabilities, including CSPM, infrastructure-as-code controls, secrets management, vulnerability remediation, and incident response. The engineer will partner closely with product and engineering teams to embed secure cloud practices into Kubernetes-based environments and DevOps workflows. This is a hands-on, automation-oriented role within a rapidly scaling, globally distributed cloud company.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

4/5EasyHard

### Pace & Pressure

4/5RelaxedFast-paced

### Autonomy Level

4/5GuidedFull ownership

### Communication Load

4/5IndependentCollaborative

AI insightThe position requires broad, practical expertise across multi-cloud environments, Kubernetes security, DevOps automation, and incident handling. The fast-growing environment and expectation to build scalable processes increase both technical complexity and ownership.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate$170,000US market range$140k–$210k0$231k

AI insightNo actual salary amount is disclosed in the provided posting, so these figures are estimates for the US market in USD. For an experienced Cloud Security Engineer responsible for multi-cloud, Kubernetes, and security automation in a high-growth cloud software company, an estimated annual base-salary median is $170,000, with a typical market range of $140,000 to $210,000 depending on seniority, location, and depth of cloud-security expertise.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[AWS](https://jobicy.com/jobs?search_keywords=AWS.md)[Google Cloud Platform](https://jobicy.com/jobs?search_keywords=Google%20Cloud%20Platform.md)[Microsoft Azure](https://jobicy.com/jobs?search_keywords=Microsoft%20Azure.md)[Kubernetes Security](https://jobicy.com/jobs?search_keywords=Kubernetes%20Security.md)[Infrastructure as Code](https://jobicy.com/jobs?search_keywords=Infrastructure%20as%20Code.md)[CSPM](https://jobicy.com/jobs?search_keywords=CSPM.md)[Secrets Management](https://jobicy.com/jobs?search_keywords=Secrets%20Management.md)[CI/CD Security](https://jobicy.com/jobs?search_keywords=CICD%20Security.md)[Security Automation](https://jobicy.com/jobs?search_keywords=Security%20Automation.md)

Sample interview questionsHow would you design a multi-cloud security baseline for AWS, GCP, and Azure?I would define a common control framework covering identity, network segmentation, encryption, logging, asset inventory, vulnerability management, and configuration compliance. I would implement provider-native guardrails alongside a CSPM platform, manage policies as code, and establish exception workflows with clear owners and expiration dates.

Describe your approach to securing a large Kubernetes-based production environment.

I would start with cluster and workload hardening: least-privilege RBAC, workload identity, network policies, admission controls, image scanning and signing, secrets controls, and audit logging. I would also integrate runtime detection, continuously assess configuration drift, and work with platform teams to provide secure deployment templates that developers can adopt easily.

How have you used infrastructure as code to improve cloud security?

I would embed security checks into pull requests and deployment pipelines using policy as code, static analysis, and approved reusable modules. This shifts remediation earlier in the lifecycle, prevents common misconfigurations such as public storage or overly broad IAM permissions, and creates an auditable record of infrastructure changes.

A CSPM tool identifies a critical publicly exposed cloud resource. What steps would you take?

I would first validate the finding and determine exposure, data sensitivity, ownership, and active exploitation indicators. I would coordinate immediate containment where appropriate, preserve evidence, remediate the root cause through infrastructure as code, assess similar resources for systemic risk, and document follow-up actions to prevent recurrence.

How do you balance strong security controls with engineering velocity?

I focus on paved roads rather than manual gates: secure defaults, self-service modules, automated checks, and clear remediation guidance. I use risk-based exceptions for justified cases, measure friction and control effectiveness, and partner with engineering teams early so controls solve real operational problems rather than becoming late-stage blockers.

### About ClickHouse

Recognized on the 2025 Forbes Cloud 100 list, ClickHouse is one of the most innovative and fast-growing private cloud companies. With more than 4,000 customers and ARR that has grown over 250 percent year over year, ClickHouse leads the market in real-time analytics, data warehousing, observability, and AI workloads.

The company’s sustained, accelerating momentum was recently validated by a $400M Series D financing round. Over the past three months, customers including Capital One, Lovable, Decagon, Polymarket, and Airwallex have adopted the platform or expanded existing deployments. These customers join an established base of AI innovators and global brands such as Meta, Cursor, Sony, and Tesla.

We’re on a mission to transform how companies use data. Come be a part of our journey!

The Security Team is responsible for providing key security capabilities covering application, cloud and enterprise security, incident response, detection and GRC. Our team is looking for experienced, hands-on security practitioners, who will drive the adoption of modern security processes and tooling, with focus on automation and backed up by data-driven decisions.

What you will do:

* Secure cloud infrastructure supporting the ClickHouse products and services (AWS, GCP and Azure)
* Collaborate with product and engineering teams to facilitate safe and secure use of public cloud infrastructure and resources
* Develop and implement security systems (e.g. CSPM, infrastructure as code, secrets management) to secure and harden ClickHouse cloud infrastructure
* Identify and respond to identified security issues, vulnerabilities, and incidents
* Identify security gaps and vulnerabilities in ClickHouse assets
* Develop processes, tooling and automation to scale security processes and mitigate risks to the business

What you bring along:

* Strong knowledge of and experience with multiple cloud service providers (AWS, GCP, Azure)
* Experience securing large-scale customer-facing cloud infrastructures based on Kubernetes
* Expertise in common cloud-based DevOps practices (e.g. CI/CD, infrastructure as code, secrets management)
* Development and automation experience

Bonus Points:

* BS, MS, or PhD in Computer Science or related field
* Previous contributions to open source projects
* Security or cloud related certifications (AWS, GCP, Azure)

#LI-JL1

### Compensation

For roles based in the United States, the typical starting salary range for this position is listed above. In certain locations, such as the San Francisco Bay Area and the New York City Metro Area, a premium market range may apply, as listed.

These salary ranges reflect what we reasonably and in good faith believe to be the minimum and maximum pay for this role at the time of posting. The actual compensation may be higher or lower than the amounts listed, and the ranges may be subject to future adjustments.

An individual’s placement within the range will depend on various factors, including (but not limited to) education, qualifications, certifications, experience, skills, location, performance, and the needs of the business or organization.

If you have any questions or comments about compensation as a candidate, please get in touch with us at [paytransparency@clickhouse.com](mailto:paytransparency@clickhouse.com).

### Perks

* Flexible work environment – ClickHouse is a globally distributed company and remote-friendly. We currently operate in over 20 countries.
* Healthcare – Employer contributions towards your healthcare.
* Equity in the company – Every new team member who joins our company receives stock options.
* Time off – Flexible time off in the US, generous entitlement in other countries.
* A $500 Home office setup if you’re a remote employee.
* Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites.

Culture – We All Shape It

As part of a rapidly scaling start up, you will be instrumental in shaping our culture.

Are you interested in finding out more about our culture? Learn more about our values [here](https://clickhouse.com/company/careers). Check out our[blog posts](https://clickhouse.com/blog) or follow us on [LinkedIn](https://www.linkedin.com/company/clickhouseinc/life/0c1ee7f4-2129-488d-b413-e7f6270659fd/?viewAsMember=true) to find out more about what’s happening at ClickHouse.

Equal Opportunity & Privacy

ClickHouse provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any type based on factors such as race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

Please see [here](https://clickhouse.com/legal/applicant-privacy-notice) for our Privacy Statement.

Show more

[Apply now >](https://jobicy.com/jobs/151716-cloud-security-engineer.md)

>  Annual salary information is not provided for this position. Explore salary ranges for similar roles in our [Salary Directory ›](https://jobicy.com/salaries.md)

*

![Upload CV](data:image/svg+xml;base64,PHN2ZyB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciIHdpZHRoPSI2NSIgaGVpZ2h0PSI2NSIgZmlsbD0ibm9uZSIgeG1sbnM6dj0iaHR0cHM6Ly92ZWN0YS5pby9uYW5vIj48ZyBjbGlwLXBhdGg9InVybCgjQSkiPjxwYXRoIGQ9Ik0wIDBINjVWNjVIMFYwWiIgZmlsbD0iIzAyOWFlYiIvPjxnIGZpbGw9IiNmZmYiIHN0cm9rZT0iI2ZmZiIgc3Ryb2tlLXdpZHRoPSIyIj48cGF0aCBkPSJNMzMuMDQ5IDE1LjQ1NGExLjQzIDEuNDMgMCAwIDAtMi4wOTcgMGwtNy41NzkgOC4xNDdhMS4zOCAxLjM4IDAgMCAwIC4wOSAxLjk3MyAxLjQ0IDEuNDQgMCAwIDAgMi4wMDgtLjA4OGw1LjEwOS01LjQ5MnYyMC42MWExLjQxIDEuNDEgMCAwIDAgMS40MjEgMS4zOTdjLjc4NSAwIDEuNDIxLS42MjUgMS40MjEtMS4zOTd2LTIwLjYxbDUuMTA5IDUuNDkyYTEuNDQgMS40NCAwIDAgMCAyLjAwOC4wODggMS4zOCAxLjM4IDAgMCAwIC4wOS0xLjk3M2wtNy41NzktOC4xNDZ6TTE2Ljc2OSAzOC40YzAtLjc3My0uNjItMS40LTEuMzg1LTEuNFMxNCAzNy42MjcgMTQgMzguNHYuMTAybC4yMTUgNi4yMjljLjIyMyAxLjY4LjcwMSAzLjA5NSAxLjgxMyA0LjIxOHMyLjUxIDEuNjA3IDQuMTcyIDEuODMzYzEuNi4yMTggMy42MzYuMjE4IDYuMTYuMjE4aDExLjI4bDYuMTYtLjIxOGMxLjY2Mi0uMjI2IDMuMDYxLS43MDkgNC4xNzItMS44MzNzMS41ODktMi41MzggMS44MTMtNC4yMThDNTAgNDMuMTEzIDUwIDQxLjA1NSA1MCAzOC41MDNWMzguNGMwLS43NzMtLjYyLTEuNC0xLjM4NS0xLjRzLTEuMzg1LjYyNy0xLjM4NSAxLjRsLS4xOSA1Ljk1OGMtLjE4MiAxLjM3LS41MTUgMi4wOTUtMS4wMjYgMi42MTJzLTEuMjI4Ljg1My0yLjU4MyAxLjAzOGMtMS4zOTUuMTktMy4yNDMuMTkzLTUuODkzLjE5M0gyNi40NjJjLTIuNjUgMC00LjQ5OC0uMDAzLTUuODkzLS4xOTMtMS4zNTUtLjE4NC0yLjA3Mi0uNTIxLTIuNTgzLTEuMDM4cy0uODQ0LTEuMjQyLTEuMDI2LTIuNjEyYy0uMTg3LTEuNDEtLjE5MS0zLjI3OS0uMTkxLTUuOTU4eiIvPjwvZz48L2c+PGRlZnM+PGNsaXBQYXRoIGlkPSJBIj48cGF0aCBmaWxsPSIjZmZmIiBkPSJNMCAwaDY1djY1SDB6Ii8+PC9jbGlwUGF0aD48L2RlZnM+PC9zdmc+)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![FastSpring logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2024/04/76c6c41f-221.jpeg)
FastSpring  Aug 26

### [Sr. Security Engineer](https://jobicy.com/jobs/151709-sr-security-engineer.md)

About FastSpring: FastSpring is how AI, SaaS, gaming, software, and digital product companies sell online in more places around the world. We handle all payment needs from checkout to taxes…

*
![Binance logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/bc822f38-221.jpg)
Binance  Aug 26

### [Open Source Intelligence Specialist](https://jobicy.com/jobs/151652-open-source-intelligence-specialist.md)

Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million people in 100+ countries for…

*
![League logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/09/1252bb2582abaece8d30e08e4a386bd2.png)
League  Aug 25

### [Principal Security Engineer](https://jobicy.com/jobs/151600-principal-security-engineer.md)

About League League is one of the fastest-growing technology companies in Canada and the leading healthcare experience platform. Getting healthcare is often the easy part — finishing it is where…

*
![Docplanner logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/84f2fa86-221.png)
Docplanner  Aug 24

### [Senior Platform Security Engineer (100% Remote within Poland)](https://jobicy.com/jobs/151521-senior-platform-security-engineer-100-remote-within-poland.md)

Welcome to the good side of tech 👋 You might have heard about us, but with a different name: Znany Lekarz. It all started 12 years ago when we asked…

*
![Docplanner logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/08/84f2fa86-221.png)
Docplanner  Aug 24

### [Senior Platform Security Engineer (100% Remote within Spain)](https://jobicy.com/jobs/151520-senior-platform-security-engineer-100-remote-within-spain.md)

Welcome to the good side of tech 👋 You might have heard about us, but with a different name: Doctoralia. It all started 12 years ago when we asked ourselves:…

*
![Qventus logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2022/01/0ad7e933ffa7b62281cc4b26710abfab.jpeg)
Qventus  Aug 24

### [Senior Security Engineer](https://jobicy.com/jobs/151504-senior-security-engineer-2.md)

On this journey for over 12 years, Qventus is leading the transformation of healthcare. We enable hospitals to focus on what matters most: patient care. Our innovative solutions harness the…

*
![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)
CertiK  Aug 24

### [Blockchain Security Engineer – (Solidity / Rust / Golang)](https://jobicy.com/jobs/151470-blockchain-security-engineer-solidity-rust-golang.md)

About the Company CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over…

*
![Sporty Group logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8e6c246a-221.png)
Sporty Group  Aug 24

### [Security Platform Engineer](https://jobicy.com/jobs/151442-security-platform-engineer.md)

About the roleStrengthen Sporty’s security monitoring and detection capability by managing, tuning, and continuously improving EDR and SIEM platforms. Ensure security alerts are accurate, actionable, and provide reliable visibility across…

*
![Lakeshore Learning Materials, LLC logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/d8ba23f6-221.jpg)
Lakeshore Learning Materials, LLC  Aug 23

### [Manager of IT Security](https://jobicy.com/jobs/149591-manager-of-it-security.md)

Company DescriptionAt Lakeshore, we create innovative learning materials and world-class guest experiences for teachers, parents and children. Since 1954, we’ve grown into a global community—with a thriving e-commerce business, multiple…

*
![Tenable logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/01879e02-221.jpg)
Tenable  Aug 22

### [Senior Director, Ecosystem & Solution Architectures – Technical Alliances](https://jobicy.com/jobs/151413-senior-director-ecosystem-solution-architectures-technical-alliances.md)

Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent…