Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cloud Security Engineer image - Rise Careers
Job details

Cloud Security Engineer

Who are we?

We believe Ethereum has the potential to solve some of humanity’s most crucial coordination issues. Since our initial inception as a research group, we have sought to scale both its technology and values.

At present, the most pressing bottleneck to the growth of Ethereum is its performance and scalability. We are building the most elegant solution to this problem. We do this in the open (under an MIT open source license) because we believe in open source innovation and its ability to accelerate growth.

OP Labs contributes to the Optimism protocol, an extension to Ethereum that scales both its technology and values. Optimism enables orders of magnitude of improved performance and scalability to Ethereum while doubling down on its commitment to public goods.

The Optimism Collective leads the blockchain protocol landscape, dedicated to fostering a scalable and sustainable ecosystem. Optimism’s ethos, in sync with Ethereum's vision, tackles pivotal coordination challenges of the digital age. Optimism’s goal is to harmonize private incentives with public good, shaping a resilient future for the Internet. Optimism’s scope spans diverse areas like Gaming, DeFi, NFTs, and Enterprise.

Position Overview:

We’re looking for a cloud security engineer to design, implement and maintain a secure cloud infrastructure for OP Labs. You will develop security controls to protect cloud infrastructure, applications and data while driving secure development practices within the broader engineering team.

Role Responsibilities:

  • Design and implement security controls for our GCP-based cloud environment

  • Automate security in CI/CD pipelines and Infrastructure-as-Code (IaC)

  • Collaborate with the Platforms team and wider engineering organization to drive a security-first culture and embed security best practices throughout the SDLC

  • Stay up-to-date with emerging threats and cloud security trends

What skills do you bring?

  • Hands-on technical experience with cloud platforms (e.g., GCP), Kubernetes, Infrastructure-as-Code tools (e.g., Terraform, Ansible) and scripting and automation (e.g., Go, Python)

  • Strong cloud security fundamentals, including secure cloud design, IAM, threat detection & incident response and application & API security

  • Excellent collaboration and communication skills, able to collaborate effectively with a diverse set of stakeholders to drive DevSecOps culture and best practices

  • Exhibit high agency and ownership, you’re someone who likes to get stuff done and drive impactful results

What will you like about us?

  • We take care of our employees. Competitive compensation, fully paid medical, dental, and vision, and a 4% 401K match—learn more about our benefits, culture, and all recruiting FAQ here.

  • We take pride in the accomplishments of our teammates and support each other in doing the best work of our careers.

  • Our team is a diverse group of people from varied backgrounds. We cherish our eclecticism and consider it a great strength.

  • We’re fully remote, deeply engaged, highly skilled, and like to have fun.

  • We think long-term. Our founders have been scaling Ethereum since 2015.

OP Labs Glassdoor Company Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
OP Labs DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of OP Labs
OP Labs CEO photo
Unknown name
Approve of CEO
What You Should Know About Cloud Security Engineer, OP Labs

At OP Labs, we're on a mission to address some of the most significant coordination challenges humanity faces today through Ethereum technology. In our continuous journey toward scalability and performance enhancement, we're looking for a talented Cloud Security Engineer to join our team. This role is not just about safeguarding our cloud infrastructure; it's about embedding security into the culture of our engineering team. As a Cloud Security Engineer, you will design and implement robust security controls for our GCP-based environment while automating security within CI/CD pipelines and Infrastructure-as-Code (IaC). You'll collaborate with our Platforms team to drive a security-first culture, and you'll stay ahead of the curve by keeping up with the latest cloud security trends. Your hands-on experience with cloud platforms, Kubernetes, and IaC tools like Terraform and Ansible will enable you to make impactful contributions to our goals. We value high agency and ownership, meaning we're looking for someone who won’t hesitate to take initiative and drive meaningful results. If you're passionate about creating a secure cloud infrastructure in a forward-thinking organization like OP Labs, where we pride ourselves on diversity, remote work, and a supportive culture, we would love to hear from you!

Frequently Asked Questions (FAQs) for Cloud Security Engineer Role at OP Labs
What are the main responsibilities of a Cloud Security Engineer at OP Labs?

As a Cloud Security Engineer at OP Labs, your primary responsibilities include designing and implementing security controls for our GCP-based cloud infrastructure, automating security processes in CI/CD pipelines, and ensuring that security best practices are integrated throughout the software development lifecycle. You will also work closely with our engineering team to foster a security-first culture and stay updated on the latest threats and cloud security trends.

Join Rise to see the full answer
What skills are essential for the Cloud Security Engineer position at OP Labs?

Essential skills for the Cloud Security Engineer position at OP Labs include hands-on technical expertise with cloud platforms like GCP, familiarity with Kubernetes, and proficiency in Infrastructure-as-Code tools such as Terraform or Ansible. Candidates should also have strong fundamentals in cloud security, including secure cloud design, identity and access management, as well as incident response.

Join Rise to see the full answer
How does OP Labs support continuous development in cloud security practices?

At OP Labs, we support continuous development in cloud security practices by promoting collaboration among teams and constantly educating our engineers about emerging threats. Our Cloud Security Engineer will play a crucial role in driving secure development practices and ensuring that security is embedded throughout our CI/CD processes, which fosters a robust security culture in our organization.

Join Rise to see the full answer
What makes OP Labs a great place to work for a Cloud Security Engineer?

OP Labs offers a supportive and inclusive work environment that values diversity and mutual respect. We provide competitive compensation, comprehensive health benefits, and a culture that encourages the sharing of ideas and teamwork. Additionally, being fully remote allows our Cloud Security Engineers to have flexibility in their work-life balance, while still being engaged and productive.

Join Rise to see the full answer
What are the career growth opportunities for a Cloud Security Engineer at OP Labs?

At OP Labs, career growth opportunities for a Cloud Security Engineer are abundant due to our commitment to innovation and learning. You will have access to advanced training resources, real-world projects that expand your skill set, and the chance to collaborate with seasoned professionals in various domains. We value long-term thinking, and we support our engineers in achieving their career aspirations while making significant contributions to our mission.

Join Rise to see the full answer
Common Interview Questions for Cloud Security Engineer
How do you ensure security in a cloud environment?

To ensure security in a cloud environment, I implement a multi-layered security strategy that includes secure identity management, encryption for data both at rest and in transit, and continuous monitoring of security protocols. I also focus on automating security measures, ensuring that any vulnerabilities are addressed promptly. Additionally, I stay updated with current cloud security trends and align our strategies accordingly.

Join Rise to see the full answer
Can you describe a challenging security issue you faced and how you resolved it?

Certainly! In a previous role, we faced a significant threat of unauthorized access due to a misconfigured IAM policy. I quickly initiated a review of our access controls, identified the vulnerabilities, and implemented the necessary changes to tighten security. Moreover, I conducted a training session for our team to address common misconfigurations and ensure future compliance with our IAM policies.

Join Rise to see the full answer
What tools do you use for cloud security management?

I utilize various tools for cloud security management, including Terraform for Infrastructure-as-Code deployments, Kubernetes for orchestration, and CI/CD tools like Jenkins or GitLab CI for automating security checks. I also leverage monitoring solutions like AWS GuardDuty or Azure Security Center to detect threats proactively.

Join Rise to see the full answer
How do you keep yourself updated on the latest cloud security threats?

To stay updated on the latest cloud security threats, I regularly follow cybersecurity news sources, subscribe to industry newsletters, and participate in relevant webinars and conferences. Engaging with online communities and forums, such as those on Reddit or specialized LinkedIn groups, also helps me share insights and learn from peers.

Join Rise to see the full answer
What is your experience with automation in cloud security?

My experience with automation in cloud security spans the use of tools like Terraform for IaC, which allows me to enforce security configurations consistently across environments. Additionally, I have used Bash and Python scripts to automate security audits and compliance checks, thus enhancing the overall efficiency and efficacy of our security processes.

Join Rise to see the full answer
How would you handle a security incident?

In handling a security incident, I would follow a structured incident response plan, first ensuring the safety of critical data. I would identify the source of the breach, evaluate the impact, and communicate with relevant stakeholders. After containing the incident, I would conduct a thorough investigation to identify root causes and implement measures to prevent future incidents.

Join Rise to see the full answer
Can you explain the concept of Infrastructure-as-Code (IaC) and how it relates to security?

Infrastructure-as-Code (IaC) is a methodology that allows you to manage and provision infrastructure using code rather than manual configuration. It relates to security by enabling automated security checks, thus ensuring that security policies are consistently applied. IaC can also dramatically improve efficiency and reduce the potential for human error in configuration.

Join Rise to see the full answer
What experience do you have with security in CI/CD pipelines?

I have extensive experience integrating security into CI/CD pipelines by using tools that enforce security best practices at every stage of the development lifecycle. This includes static code analysis, dependency checks, and automated testing for vulnerabilities prior to deployment. This proactive approach helps identify and mitigate risks early in the development process.

Join Rise to see the full answer
How important is collaboration in a DevSecOps culture, and how do you encourage it?

Collaboration is essential in a DevSecOps culture as it fosters communication between development, security, and operations teams. To encourage collaboration, I advocate for regular cross-team meetings, introduce shared tools that facilitate transparency, and promote a culture of shared responsibility where all members feel accountable for security.

Join Rise to see the full answer
What do you find most rewarding about working in cloud security?

The most rewarding aspect of working in cloud security is the opportunity to protect organizations from evolving threats and safeguarding valuable data. Additionally, it is fulfilling to continuously learn and adapt to new technologies while contributing to the overall advancement of secure practices in the cloud industry.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 2 hours ago

Join Hunter Douglas as an IT Operations Lead to innovate and support digital applications that enhance manufacturing processes.

Photo of the Rise User
Candid Health Remote New York City
Posted 6 days ago

Candid Health seeks an IT Specialist to enhance operational efficiency within the healthcare technology landscape.

Join Toyota Financial Services as a Business Information Security Officer to drive strategic security initiatives and promote a security-conscious culture.

Photo of the Rise User
Amgen Remote Portugal - Lisbon
Posted yesterday

Join Amgen as a Scrum Master and lead Agile teams to deliver impactful digital solutions in healthcare innovation.

Posted 4 days ago

Join our team as a Cybersecurity Presales Engineer and leverage your expertise to promote top-tier cybersecurity solutions.

Photo of the Rise User
RBC Remote TORONTO, Ontario, Canada
Posted 6 days ago

As a Senior Major Incident Manager at RBC, you will lead the restoration of IT systems and manage major incidents to ensure smooth operations.

Photo of the Rise User
Posted 6 days ago

As a Network/System Administrator Level I at GDIT, you'll play a vital role in managing and supporting the network systems for government agencies.

Posted yesterday

Join a leading team as a Senior SQL Server Database Administrator, providing critical support and maintaining high levels of database performance and reliability.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 14, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Eastlake just viewed Summer Intern at Gooch & Housego
I
Someone from OH, Perrysburg just viewed CNC Manufacturing Technician at Innovance
Photo of the Rise User
82 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
78 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Lifecycle Marketing Manager at SoFi
Photo of the Rise User
Someone from OH, Cincinnati just viewed Lifecycle Marketing Manager at Caribou
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Marketing Manager at Ocorian
Photo of the Rise User
Someone from OH, Cincinnati just viewed Growth Marketing Manager at Credit Genie
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director of Product Marketing - AAA Campaigns at PrizePicks
Photo of the Rise User
Someone from OH, Cincinnati just viewed Digital Marketing Analyst, Digital Properties at Darden
Photo of the Rise User
Someone from OH, Cincinnati just viewed Growth Lead at io.net
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director of Demand Generation & Marketing at GreenPlaces
Photo of the Rise User
Someone from OH, Cincinnati just viewed Sr. Manager / Director of Demand Generation at Seesaw
Photo of the Rise User
Someone from OH, Euclid just viewed Work From Home Union Benefits Rep at Global Elite
Photo of the Rise User
Someone from OH, Cincinnati just viewed Runtime QA Tester II at Aechelon Technology
Photo of the Rise User
19 people applied to IT Support Intern at SoundCloud