About the job
At Braze, we pride ourselves on our exceptional team, a group that is approachable, kind, and deeply passionate about what we do.
We aim to fuel that passion by upholding high standards, fostering collaboration, and promoting a harmonious work-life balance as we navigate rapid global growth, all while committed to advancing equity and opportunity both within and outside our organization.
To thrive in this environment, you'll need to set ambitious goals for yourself and those around you. There are countless ways to contribute: embracing autonomy, taking accountability, and welcoming diverse perspectives are vital to our ongoing success.
Our curiosity to learn and our enthusiasm for sharing varied interests enrich our culture, creating a unique vibrancy.
If you're eager to tackle exciting challenges and have a proactive mindset in the face of change, you'll be empowered to make a significant impact here, supported by a talented and passionate team. If Braze sounds like a place where you can excel, we look forward to meeting you!
WHAT YOU'LL DO
Braze is looking for a Senior Cloud Security Engineer to join our Security Engineering team. As a modern, cloud-first SaaS company, we operate entirely on cloud-native infrastructure with large-scale, distributed systems across AWS, GCP, and self-managed Kubernetes environments. We're seeking an engineer with extensive cloud security expertise to collaborate with our DevOps, Infrastructure, and Product Engineering teams to enhance our cloud security posture, safeguard our platforms, and shape the future of Cloud Security at Braze.
In this role, you will engage in a variety of initiatives, including:
- Collaborating closely with Infrastructure, SRE, and Product Engineering to design secure cloud architectures and develop effective, scalable security controls for both new and existing services.
- Implementing and refining end-to-end cloud security controls across AWS, GCP, Kubernetes, CI/CD pipelines, and self-managed systems.
- Leading and enhancing our existing vulnerability management workflow for cloud assets, which includes scanning, triage, prioritization, and remediation using tools like Tenable and native CSP capabilities.
- Managing and optimizing security tools such as CrowdStrike (EDR/CSPM/IR), cloud-native security services, and SIEM detection rules with the support of our existing SIEM Management function.
- Conducting threat modeling for new cloud technologies and patterns adopted across engineering.
- Directly contributing to incident response, cloud forensics, and runtime security investigations.
