[![Image]() Meet Jobicy Copilot — free AI autofill for job applications + remote job alerts ›](#)   [All remote jobs](https://jobicy.com/jobs.md)Open role[![Vercel logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/a6aded72-221.png)](https://jobicy.com/company/vercel.md)Remote opportunity at[Vercel](https://jobicy.com/company/vercel.md)

# Security Engineer, Cloud

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/vercel.md)Share9 Sep 2026Published33Listing views3Application actions9 Oct 2026Apply before  Opportunity details

## About this role.

AI SummaryVercel is seeking a senior Cloud Security Engineer to build and improve controls protecting its cloud-native platform. The role centers on infrastructure hardening, infrastructure-as-code, policy enforcement, service isolation, and secure CI/CD design. It partners closely with platform and infrastructure teams on threat modeling, risk mitigation, monitoring, detection, and incident response. The position requires 8+ years of infrastructure or platform security experience and deep AWS/GCP, IAM, Kubernetes, Terraform, and CDK knowledge. It is hybrid or fully remote for candidates within the United States.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

4/5RelaxedFast-paced

### Autonomy Level

5/5GuidedFull ownership

### Communication Load

4/5IndependentCollaborative

AI insightThis is a senior, hands-on platform security role responsible for designing scalable controls in a high-growth cloud environment. It requires broad technical depth, sound security judgment, and the ability to influence engineering architecture and operational practices.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianHighly competitive$260,000US market range$190k–$290k0$319k

AI insightThe disclosed San Francisco base-pay range is USD 208,000 to USD 312,000 yearly, with a midpoint of USD 260,000. This is a senior cloud security engineering position; the estimated US market base-salary range is USD 190,000 to USD 290,000 yearly, varying by location, cloud-security depth, and scope of platform ownership. Equity and benefits are mentioned but are not included in the salary figures.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Cloud Security](https://jobicy.com/jobs?search_keywords=Cloud%20Security.md)[AWS](https://jobicy.com/jobs?search_keywords=AWS.md)[GCP](https://jobicy.com/jobs?search_keywords=GCP.md)[Infrastructure as Code](https://jobicy.com/jobs?search_keywords=Infrastructure%20as%20Code.md)[Terraform](https://jobicy.com/jobs?search_keywords=Terraform.md)[Kubernetes](https://jobicy.com/jobs?search_keywords=Kubernetes.md)[CI/CD Security](https://jobicy.com/jobs?search_keywords=CICD%20Security.md)[Identity and Access Management](https://jobicy.com/jobs?search_keywords=Identity%20and%20Access%20Management.md)[Threat Modeling](https://jobicy.com/jobs?search_keywords=Threat%20Modeling.md)[Incident Response](https://jobicy.com/jobs?search_keywords=Incident%20Response.md)

Sample interview questionsHow would you approach securing a cloud-native platform that is growing quickly?I would begin by identifying high-value assets, trust boundaries, and current control gaps through architecture reviews and threat modeling. I would prioritize scalable guardrails such as least-privilege IAM, policy-as-code, hardened deployment templates, centralized logging, and automated detection so security improves without creating unnecessary engineering friction.

Describe how you have used infrastructure as code to improve security.

I have used infrastructure-as-code workflows to make approved configurations repeatable and reviewable. This includes embedding secure defaults in Terraform modules, running policy checks in pull requests, preventing risky changes from reaching production, and continuously identifying drift from approved configurations.

What are key security considerations for Kubernetes environments?

Key areas include workload identity, RBAC least privilege, network segmentation, image provenance and scanning, admission controls, secrets management, runtime detection, and audit logging. I would also establish secure baseline configurations and make the compliant path the easiest path for application teams.

How do you balance strong security controls with developer velocity?

I focus on controls that are automated, transparent, and integrated into existing engineering workflows. I use risk-based prioritization, provide paved-road tooling and clear remediation guidance, and partner early with teams so controls solve real risks without adding avoidable manual approvals.

How would you improve platform-level detection and incident response?

I would map critical telemetry sources to likely threat scenarios, ensure logs are centralized and actionable, and create detections with clear ownership and response playbooks. I would then test the process through tabletop exercises and post-incident reviews, using lessons learned to improve both preventative controls and detection coverage.

### About Vercel:

Vercel is the agentic infrastructure company. We free people and agents to ship what’s next.

For more than a decade, Vercel has shaped how the web is built. As the team behind Next.js, v0, and AI SDK, we create products that help builders move from idea to production with speed, security, and exceptional developer experience.

Now, software is entering a new era, and the next generation of products will not just be used by people. They will be built, extended, and operated by agents.

We are building the platform for that future, trusted by companies like OpenAI, PayPal, Ramp, Supreme, and millions of developers worldwide. Whether you’re building our products, supporting our customers, growing our community, or shaping our story, you’ll help define what comes next.

### About the role:

We’re looking for a Security Engineer to join our Cloud Security Engineering team. In this role, you’ll help strengthen the security of our platform by building and improving the controls that protect our infrastructure. You’ll play a key role in making security a core part of how we build, deploy, and scale our systems, while helping the company grow securely and confidently.

You’ll report to the Security Operations Manager, and this is a hybrid or fully remote within the United States. If you’re based within commuting distance of our SF or NY offices, the role includes in-office anchor days on Monday, Tuesday, and Friday.

### What you will do:

* Design and implement scalable security controls across our cloud-native platform.
* Harden infrastructure components using infrastructure-as-code, policy enforcement, and service isolation.
* Build secure by default infrastructure and code CI/CD pipelines.
* Collaborate with platform and infrastructure teams to integrate security best practices into architecture and workflows.
* Stay ahead of cloud security trends and adopt cutting-edge technologies to enhance platform resilience.
* Conduct threat modeling, risk analysis, and mitigation planning for critical systems.
* Drive improvements in monitoring, detection, and incident response at the platform level.
* Build, deploy and maintain relevant tooling.

### About you:

* 8+ years of experience in infrastructure or platform security roles.
* Deep understanding of secure cloud infrastructure (AWS/GCP), identity and access management, and system hardening.
* Proficient with tools like Terraform, CDK, Kubernetes, and CI/CD security.
* Skilled at balancing engineering realities with principled security practices.
* Proven track record of shipping secure, resilient systems at scale.

### Bonus if you:

* Have built or scaled security automation pipelines.
* Contributed to open-source security projects or tools.
* Hold certifications such as GCP Security Engineer, AWS certifications, CISSP, or OSCP.
* Hold a bachelors or masters degree in Cybersecurity or similar disciplines.

### Benefits:

* Competitive compensation package, including equity.
* Inclusive Healthcare Package.
* Learn and Grow – we provide mentorship and send you to events that help you build your network and skills.
* Flexible Time Off.
* We will provide you the gear you need to do your role, and a WFH budget for you to outfit your space as needed.

The San Francisco, CA base pay range for this role is $208,000.00 – $312,000.00. This salary range is an estimate. Actual salary will be based on job related skills, experience and location. Pay ranges outside San Francisco may be adjusted based on employee location. The total compensation package also includes benefits and equity-based compensation. Your recruiter can share more about the specific pay range for your location during the hiring process.

Show more

[Apply now >](https://jobicy.com/jobs/152929-security-engineer-cloud.md)

*

![Upload CV](data:image/svg+xml;base64,PHN2ZyB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciIHdpZHRoPSI2NSIgaGVpZ2h0PSI2NSIgZmlsbD0ibm9uZSIgeG1sbnM6dj0iaHR0cHM6Ly92ZWN0YS5pby9uYW5vIj48ZyBjbGlwLXBhdGg9InVybCgjQSkiPjxwYXRoIGQ9Ik0wIDBINjVWNjVIMFYwWiIgZmlsbD0iIzAyOWFlYiIvPjxnIGZpbGw9IiNmZmYiIHN0cm9rZT0iI2ZmZiIgc3Ryb2tlLXdpZHRoPSIyIj48cGF0aCBkPSJNMzMuMDQ5IDE1LjQ1NGExLjQzIDEuNDMgMCAwIDAtMi4wOTcgMGwtNy41NzkgOC4xNDdhMS4zOCAxLjM4IDAgMCAwIC4wOSAxLjk3MyAxLjQ0IDEuNDQgMCAwIDAgMi4wMDgtLjA4OGw1LjEwOS01LjQ5MnYyMC42MWExLjQxIDEuNDEgMCAwIDAgMS40MjEgMS4zOTdjLjc4NSAwIDEuNDIxLS42MjUgMS40MjEtMS4zOTd2LTIwLjYxbDUuMTA5IDUuNDkyYTEuNDQgMS40NCAwIDAgMCAyLjAwOC4wODggMS4zOCAxLjM4IDAgMCAwIC4wOS0xLjk3M2wtNy41NzktOC4xNDZ6TTE2Ljc2OSAzOC40YzAtLjc3My0uNjItMS40LTEuMzg1LTEuNFMxNCAzNy42MjcgMTQgMzguNHYuMTAybC4yMTUgNi4yMjljLjIyMyAxLjY4LjcwMSAzLjA5NSAxLjgxMyA0LjIxOHMyLjUxIDEuNjA3IDQuMTcyIDEuODMzYzEuNi4yMTggMy42MzYuMjE4IDYuMTYuMjE4aDExLjI4bDYuMTYtLjIxOGMxLjY2Mi0uMjI2IDMuMDYxLS43MDkgNC4xNzItMS44MzNzMS41ODktMi41MzggMS44MTMtNC4yMThDNTAgNDMuMTEzIDUwIDQxLjA1NSA1MCAzOC41MDNWMzguNGMwLS43NzMtLjYyLTEuNC0xLjM4NS0xLjRzLTEuMzg1LjYyNy0xLjM4NSAxLjRsLS4xOSA1Ljk1OGMtLjE4MiAxLjM3LS41MTUgMi4wOTUtMS4wMjYgMi42MTJzLTEuMjI4Ljg1My0yLjU4MyAxLjAzOGMtMS4zOTUuMTktMy4yNDMuMTkzLTUuODkzLjE5M0gyNi40NjJjLTIuNjUgMC00LjQ5OC0uMDAzLTUuODkzLS4xOTMtMS4zNTUtLjE4NC0yLjA3Mi0uNTIxLTIuNTgzLTEuMDM4cy0uODQ0LTEuMjQyLTEuMDI2LTIuNjEyYy0uMTg3LTEuNDEtLjE5MS0zLjI3OS0uMTkxLTUuOTU4eiIvPjwvZz48L2c+PGRlZnM+PGNsaXBQYXRoIGlkPSJBIj48cGF0aCBmaWxsPSIjZmZmIiBkPSJNMCAwaDY1djY1SDB6Ii8+PC9jbGlwUGF0aD48L2RlZnM+PC9zdmc+)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![Tremendous logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/01/c2bd8be5-221.jpeg)
Tremendous  Sep 9

### [Head of Security](https://jobicy.com/jobs/152862-head-of-security.md)

Tremendous is the global platform built for businesses to send payouts—gift cards and money—to anyone, anywhere, instantly. We’re trusted by 20,000+ organizations, from startups to giants like Atlassian, MIT, and…

*
![Nebius logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/06/d90c0566-221.webp)
Nebius  Sep 9

### [Detection Engineering & Response Lead](https://jobicy.com/jobs/148918-detection-engineering-response-lead.md)

About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from…

*
![Databricks logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/12/4e3f864ba9cf3c62d471e1c62414d098.jpg)
Databricks  Sep 7

### [Cyber Security GTM Leader](https://jobicy.com/jobs/152703-cyber-security-gtm-leader.md)

SLSQ327R408 As the Cybersecurity Go-to-market (GTM) Leader, you will drive the global GTM strategy and execution of the Cybersecurity business at Databricks. You will play a pivotal role in accelerating…

*
![Tenable logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/01879e02-221.jpg)
Tenable  Sep 6

### [Senior Security Consultant](https://jobicy.com/jobs/152673-senior-security-consultant.md)

Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent…

*
![Tenable logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/01879e02-221.jpg)
Tenable  Sep 6

### [Security Sales Engineer – SLED/Public Sector](https://jobicy.com/jobs/152668-security-sales-engineer-sled-public-sector.md)

Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent…

*
![Tenable logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/01879e02-221.jpg)
Tenable  Sep 6

### [Principal Solutions Architect (AWS Technical Alliances)](https://jobicy.com/jobs/152664-principal-solutions-architect-aws-technical-alliances.md)

Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent…

*
![Upside logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/06e64944-221.png)
Upside  Sep 6

### [Staff Application Security Engineer](https://jobicy.com/jobs/152657-staff-application-security-engineer.md)

Meet Upside: We created Upside to transform brick-and-mortar commerce. Our technology uses the sophistication of online retail—profit measurement, attribution, and incrementality—to provide users with more value on their everyday purchases…

*
![Smartsheet logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8b6103bd-221.jpg)
Smartsheet  Sep 6

### [Senior Security Engineer I, Customer Trust EMEA (Remote Eligible in the UK)](https://jobicy.com/jobs/150221-senior-security-engineer-i-customer-trust-emea-remote-eligible-in-the-uk.md)

For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. Now, in our most ambitious chapter yet, we are uniting human teams with AI…

*
![HackerOne logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8937d355-221.png)
HackerOne  Sep 4

### [Senior Director, Community](https://jobicy.com/jobs/152527-senior-director-community.md)

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to…

*
![HackerOne logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/8937d355-221.png)
HackerOne  Sep 4

### [Product Security Analyst](https://jobicy.com/jobs/152523-product-security-analyst.md)

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to…