Apply Now
Location: Milpitas, California (CA)
Contract Type: C2C
Posted: 3 hours ago
Closed Date: 08/06/2026
Skills: Senior Cloud Security Engineer, DevSecOps CI/CD pipelines
Visa Type: USC
  • Position: Senior Cloud Security Engineer
  • Location: Milpitas, CA – 100% onsite (relocation candidates is fine too)


  • Duration: 12+ month contract
  • Domain: Robotics
  • Interview: 1 -2 video conference interview
  • US citizens only

 

Job Summary

The Cloud Architect will be responsible for designing, implementing, securing, and governing cloud based solutions across multiple cloud platforms, including AWS, Microsoft Azure, and GCP), cloud security architecture, identity and access management (IAM), networking, and secure-by-design architecture principles, in addition to IaaS and PaaS best practices.

Job Responsibilities

  • Design and architect scalable, highly available, resilient, and secure cloud solutions leveraging IaaS and PaaS services across AWS, Azure, and Google Cloud Platform (GCP).
  • Lead cloud migration initiatives, including re hosting, re platforming, refactoring, and re architecting legacy and on premises workloads with a strong emphasis on security posture improvement and risk reduction.
  • Drive application and infrastructure modernization programs to improve scalability, performance, security, and operational efficiency.
  • Partner with engineering, platform, and security teams to define cloud native reference architectures, security guardrails, and modernization roadmaps.
  • Optimize cloud infrastructure for performance, availability, reliability, security hardening, and cost efficiency.
  • Establish and manage cloud security architectures and governance frameworks, aligned with industry standards and internal security policies.
  • Design and enforce identity first security, including IAM strategies, least privilege access controls, role based access, identity federation, and secrets management.
  • Design and implement secure cloud networking architectures, including VPN, Direct Connect, ExpressRoute, and Cloud Interconnect.
  • Configure and enforce network segmentation, micro segmentation, zero trust architectures, and advanced network security controls.
  • Secure containers, Kubernetes, serverless, and microservices environments, including image scanning, runtime protection, and policy enforcement.
  • Implement Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, and Azure ARM/Bicep templates with built in security, policy, and compliance controls.
  • Design and evolve DevSecOps CI/CD pipelines, integrating security scanning, policy enforcement, and automated compliance validation.
  • Define and implement cloud security observability, including logging, monitoring, alerting, and incident response integration.