Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cloud Security Engineer image - Rise Careers
Job details

Cloud Security Engineer

Our Mission:
ButterflyMX is on a mission to empower people to open and manage doors & gates from a smartphone. Our products are installed in more than 15,000+ multifamily, commercial, gated communities, and student-housing properties worldwide, including properties developed, owned, and managed by the most trusted names in real estate. Our features are designed for developers, owners, property managers, and tenants and our products lower operating costs and improve tenant satisfaction.

Our Solution:
Developers and owners no longer need to run building wiring or install in-unit hardware. Property managers can grant building access, revoke permissions, and review entry logs from an online dashboard. Residents can open doors from their smartphones, issue visitor access, and see who is trying to enter the building.

Our Culture & Values:
Fantastic people are the key to our success. As a distributed, primarily remote workforce, we’re looking for more intelligent, passionate, collaborative, and down-to-earth individuals to join our growing team. We’re driven by a shared commitment to excellence and innovation, grounded in our core values: We delight our customers, We take ownership, We are a community of collaborators, We speak up, We think big and do small, and We are tenacious.

Are you ready for an exciting, unique & game-changing opportunity? Join us as a Cloud Security Engineer at ButterflyMX, where you will assume a pivotal role in delivering substantial value to the organization by prioritizing the protection of clients', tenants’ & employees' information assets, ensuring the comprehensive security of systems & data. You will mature, build, scale & operationalize our information security program in your role as Cloud Security Engineer. Your expertise will be instrumental in safeguarding our innovative solutions & protecting our valuable assets &, most importantly, our customers & tenants. 

As our Cloud Security Engineer at ButterflyMX, you'll be a leader wearing multiple “security hats” to ensure the resilience, safety, confidentiality, availability & integrity of our cloud, IoT, mobile, web-based solutions & data throughout the environment. This role will report directly into our VP of Information Security & Privacy.

  • Design, implement, mature & maintain our robust security controls & processes across our technology stack to protect sensitive data & systems
  • Lead cloud security engineering & associated vulnerability remediation efforts to improve the security posture & resiliency of ButterflyMX – prioritizing issues, implementing mitigations, & designing strategic preventative controls 
  • Extend our detection & response capabilities – building scalable solutions to identify malicious activity, triage alerts, & investigate & remediate incidents
  • Drive security incident response efforts, including containment, investigation, recovery, post-incident analysis, lessons learned & ensuring remediation
  • Ensure security controls are implemented to enable compliance with industry standards, regulations, frameworks,& best practices (e.g., SOC2, ISO, NIST, CIS, GDPR, CCPA)
  • Evaluation, analysis & implementation of new security technologies & solutions to enhance the organization’s security posture
  • Stay up-to-date with the latest security threats, technologies, & trends to proactively protect our systems
  • Develop & conduct regular security awareness training & security education programs for employees
  • Serve as a point of contact for customers & partners regarding security-related inquiries.
  • Foster a culture of security awareness & accountability throughout the organization.
  • 5+ years of security engineering experience building, managing & scaling security operations at a fast-paced, agile/dynamic, cloud native, technology-driven startup 
  • You enjoy working as a security engineer in organizations that develop software as a service &/or operate managed infrastructure & technology services for their own customers
  • This role will wear multiple hats, including Security Engineer, SOC Analyst, GRC Analyst, & Privacy Analyst while the team is building out. You should be flexible, a go-getter & a self-starter to be successful in this role.
  • Experience securing a tech stack/solution that includes SaaS, Mobile, & IoT
  • Experience working with cross-functional teams to identify & mitigate security, compliance & data privacy risks
  • Proficiency with deploying, operationalizing & managing security solutions in a remote first organization, with a cloud tech stack built for providing SaaS. 
    • AWS Security SME - experiential knowledge of securing EC2, S3, Lambda, EKS
    • AWS Security Stack Experience - WAF, Inspector, Security Hub, GuardDuty, etc..
    • Security Overlay Solutions: EDR, SIEM, CNAPP/CSPM, DSPM, DLP, IDS/IPS..
    • Google Workspace, Apple, Windows, MDM, Secure Email Gateway
  • Extensive experience & expertise across multiple security domains including cloud security, data security, network security, application security, incident management, threat/vulnerability/patch/configuration management, identity & access management..
  • Strong understanding of security best practices, frameworks, standards, & compliance requirements, & particularly how these apply to a startup environment through enterprise environments. Experience maturing security controls as an organization matures.
    • Experience maintaining SOC 2 Type II compliance & associated security controls within an organization
    • Demonstrated technical expertise in implementing data privacy controls & safeguards to include facilitating the deployment of technical measures to ensure compliance with data privacy regulations such as GDPR & CCPA
  • Experience automating security controls. Proven technical proficiency using Terraform & other infrastructure as code tools, with a strong track record of managing vulnerabilities in ephemeral cloud infrastructure environments. 
  • Incident response management: Experience in developing & implementing incident response plans, conducting investigations, & managing security incidents effectively
  • Demonstrated ability to educate an engineering audience about technical application security vulnerabilities, i.e., OWASP Top Ten, OWASP API Security Top 10
  • Adept in a data-driven approach for decision-making & a risk-based mindset to prioritize & address security concerns effectively.
  • Customer focused & Solution oriented, Enthusiastic, Empathetic, Adaptable/Flexible, Bias for Action, Forward thinking, Optimistic, Trusted Advisor
    • Everyone is a customer & everyone is on the security team 
  • A strong inclination to dive into the details, actively engaging in hands-on work.
  • Continuous improvement mindset. Pursues ongoing professional development, stays updated with emerging threats & technologies..
  • Industry certifications such as AWS Security Certified, CISSP, CCSP, CSSLP, GXPEN, OSCP, SANS Certifications, Burp Suite Certified, Security+, CEH, CIPP, CIPT
  • Comprehensive Medical (ButterflyMX covers 90% of the cost), Dental, and Vision plans (ButterflyMX covers 100% of the cost) starting day 1
  • 401(k) plan with a match
  • 13 paid holidays, 25 PTO days
  • Paid Family Leave
  • Employee Assistance Program
  • Quarterly self-care stipends
  • Access to optional benefits including pre-tax flexible healthcare spending accounts (FSA and HSA), Dependent Care FSA, and Commuter Benefits, as well as optional Supplemental Life, AD&D, Hospital Indemnity, Disability, Legal, Accident, Critical Illness, Pet, and Personal Liability Insurance
  • And more!

ButterflyMX is an equal opportunity employer and we value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. You must have the authorization to work in the US to become an employee. We strive to create an accessible and inclusive experience for all candidates and employees. If you need reasonable accommodations during the application or the recruiting process, please let our recruiting team know.

ButterflyMX Glassdoor Company Review
4.3 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
ButterflyMX DE&I Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of ButterflyMX
ButterflyMX CEO photo
Aaron Rudenstine
Approve of CEO

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cloud Security Engineer, ButterflyMX

Are you ready to jump into the exciting world of security technology at ButterflyMX as a Cloud Security Engineer? Here, we’re all about empowering people to seamlessly manage access to their communities right from their smartphones. With our innovative solutions installed in over 15,000 properties worldwide, your role will be incredibly impactful. You’ll be the guardian of our client and tenant information, ensuring that we maintain the highest levels of security and privacy for all our users. As a Cloud Security Engineer, you’ll not only design and implement robust security measures but also lead our cloud security engineering efforts to bolster our security posture. You'll get to work across various technology stacks, enhancing our detection and response capabilities, driving security incident responses, and keeping pace with the latest threats and trends in the security landscape. We’re looking for someone who thrives in a fast-paced, cloud-native environment, is flexible and adaptable, and feels excited about wearing multiple hats as we grow. Your extensive experience and creativity will help foster a culture of security awareness and accountability, allowing ButterflyMX to continue delighting our customers while keeping their data safe. Join us in transforming the way access is managed, and enjoy fantastic benefits including comprehensive medical plans, generous PTO, and a vibrant, collaborative team culture that values your input. Let's make security innovation happen together!

Frequently Asked Questions (FAQs) for Cloud Security Engineer Role at ButterflyMX
What are the responsibilities of a Cloud Security Engineer at ButterflyMX?

As a Cloud Security Engineer at ButterflyMX, your responsibilities encompass designing, implementing, and maintaining security controls to protect sensitive systems and data. You’ll lead vulnerability remediation efforts, ensuring our cloud-based solutions are secure. Furthermore, you’ll enhance our detection and response capabilities while driving incident response efforts to mitigate security incidents effectively. Your role will also involve providing security training for employees and serving as a point of contact for security inquiries. Ultimately, you will play a crucial part in maturing our information security program.

Join Rise to see the full answer
What qualifications do I need to be a Cloud Security Engineer at ButterflyMX?

To qualify as a Cloud Security Engineer at ButterflyMX, candidates should have a minimum of 5 years of security engineering experience. Proficiency in securing cloud infrastructures is essential, particularly with AWS services such as EC2, S3, and Lambda. Familiarity with compliance frameworks like SOC 2, ISO, and GDPR will be advantageous. Ideal candidates will also possess industry certifications such as AWS Security Certified or CISSP, and should demonstrate a proactive approach towards emerging security technologies and threats.

Join Rise to see the full answer
How does ButterflyMX support employees in their professional development as Cloud Security Engineers?

At ButterflyMX, we recognize the importance of continuous learning and professional growth. As a Cloud Security Engineer, you’ll be encouraged to pursue ongoing professional development opportunities, including access to training and certifications. We provide resources for staying updated on emerging threats and technologies, as well as regular security education programs for employees, creating an environment where growth is a priority.

Join Rise to see the full answer
What is the work culture like at ButterflyMX for a Cloud Security Engineer?

The work culture at ButterflyMX is designed to foster collaboration, innovation, and a strong sense of community. As a Cloud Security Engineer, you'll work in a primarily remote, yet connected environment that values input from everyone. We take ownership of our work, encourage transparency, and believe in continuous improvement. With a focus on customer satisfaction and security, employees are empowered to think big while contributing to the team in impactful ways.

Join Rise to see the full answer
What benefits does ButterflyMX offer to its Cloud Security Engineers?

ButterflyMX offers an impressive benefits package for Cloud Security Engineers, including comprehensive medical, dental, and vision plans starting on day one. Employees enjoy generous PTO, 401(k) plans with matching, paid family leave, and access to self-care stipends. We also provide a range of optional benefits like FSAs, supplemental insurance, and a commitment to support your work-life balance. This commitment ensures you can thrive in both your career and personal life.

Join Rise to see the full answer
Common Interview Questions for Cloud Security Engineer
What strategies do you use to mitigate cloud security risks?

When discussing strategies to mitigate cloud security risks, emphasize your experience with implementing robust security controls, conducting vulnerability assessments, and continuous monitoring. Highlight the importance of proactive threat detection and incident response plans, as well as fostering a security-aware culture within the organization. Provide examples where your strategies positively impacted security outcomes.

Join Rise to see the full answer
Can you explain your experience with securing AWS environments?

In answering this, detail your hands-on experience with securing AWS environments, focusing on specific services like EC2, S3, and IAM roles. Describe your familiarity with AWS security tools, such as GuardDuty and Security Hub, and share instances where you implemented security policies and best practices to safeguard data in transit and at rest.

Join Rise to see the full answer
How do you stay updated with the latest security trends and threats?

Mention your proactive approach to continuous learning, such as subscribing to cybersecurity newsletters, attending industry conferences, and participating in relevant training. Emphasize the importance of being an active member of security communities, following threat intelligence feeds, and leveraging resources that keep you abreast of emerging threats and methodologies.

Join Rise to see the full answer
Describe a time you managed a security incident. What was your role?

In your response, highlight the incident, your role, and the steps you took for containment, investigation, and resolution. Explain how you communicated with stakeholders and conducted post-incident analysis to prevent future occurrences. Demonstrating your composed approach to handling incidents effectively can showcase your capabilities.

Join Rise to see the full answer
What tools have you used for vulnerability management?

Discuss the various tools you have utilized for vulnerability management, such as Nessus, Qualys, or custom scripts. Explain your process for identifying, prioritizing, and remediating vulnerabilities, highlighting specific incidents where you effectively improved security posture as a result.

Join Rise to see the full answer
What is your approach to educating employees about security best practices?

Describe a multifaceted approach to security education, emphasizing tailored training sessions, awareness programs, and regular updates on security issues. Discuss strategies that encourage engagement and understanding, such as interactive workshops, real-world examples, and ongoing support for employees to foster a culture of security throughout the organization.

Join Rise to see the full answer
How do you handle compliance with regulatory standards?

In your response, articulate your experience with compliance frameworks relevant to the role, such as GDPR, CCPA, and SOC 2. Explain your process for ensuring adherence to these regulations, including conducting audits, documentation, and risk assessments. Highlight your role in developing and maintaining internal controls necessary for compliance.

Join Rise to see the full answer
What do you see as key challenges in cloud security today?

Discuss current challenges in cloud security, such as evolving threats, insider risks, and the complexities of compliance across different regions. Share examples of how you have navigated these challenges in previous roles and your perspectives on emerging technologies that may offer solutions.

Join Rise to see the full answer
Describe your experience with incident response planning.

Talk about your methodology for developing effective incident response plans, including the importance of rehearsing these plans through simulations. Give examples of successful incidents where your planning improved response times and mitigated damage, reinforcing your proactive mindset.

Join Rise to see the full answer
Can you give an example of a successful project you've led in security engineering?

Share a specific project that highlights your leadership skills and technical expertise. Outline the project's goals, your role, the challenges faced, and the successful outcomes. Emphasize how your contributions improved the security landscape and benefited the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
ButterflyMX Remote No location specified
Posted 5 days ago

Join ButterflyMX as a Renewal Manager and lead the charge in enhancing customer contract renewals.

Photo of the Rise User
Posted 3 days ago

Join ButterflyMX as a Talent Acquisition Partner to recruit innovative technology professionals in a hybrid role.

Photo of the Rise User
Posted 6 days ago
CerroAlto Digital LLC Hybrid Chicago, Illinois, United States
Posted 6 days ago

We are seeking a Hadoop Admin Ops/SRE to manage and support our Big Data Technologies environment in Chicago.

Posted 8 days ago
Photo of the Rise User
Posted 3 days ago

Join Nelnet as a Process Automation Developer to innovate solutions that streamline operational tasks.

Photo of the Rise User

Join Visa's Cybersecurity team as an Associate Cybersecurity Engineer focusing on application security and secure coding practices.

Photo of the Rise User
Wynn Resorts Hybrid Las Vegas, Nevada, United States
Posted 2 days ago

Join Wynn Resorts as a VP of IT Infrastructure and lead the IT operations while ensuring high availability and performance.

To enable people to safely open and manage doors from a smartphone.

46 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 5, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!