Haystack
← Back to Jobs
Technology
PG

Senior Cloud Security Engineer

PTR GlobalAlpharetta, GA🇺🇸United StatesPosted Oct 2, 2026

Quick Overview

Salary
$60 - $70/hr
Seniority
Mid Senior
Work mode
Hybrid
Location
Alpharetta, GA, United States
Posted
Yesterday
AWSEncryptionAzureGoogle CloudTerraform

Job Description

Position: Engineering | Level 3 (USD)
Location: Alpharetta, Georgia
Duration: Contract
Job ID: 180273
Job Overview:
This Engineering | Level 3 role focuses on serving as a Senior Cloud Controls Engineer within a cyber, data, risk, and resilience environment. The position is responsible for designing, implementing, and operationalizing cloud security controls at enterprise scale across major cloud providers. The engineer will work closely with security, platform, and application teams to translate security and configuration requirements into policy-as-code, ensuring secure, compliant, and efficient cloud adoption. This role is highly technical, emphasizing infrastructure-as-code, CI/CD integration, and cloud security best practices, while also requiring strong collaboration, communication, and leadership capabilities.
Responsibilities:
  • Design and implement deploy-time security controls for cloud services across Azure, AWS, and Google Cloud Platform using tools such as OPA (Rego) and Regula.
  • Translate firm-wide configuration baseline requirements into enforceable policy-as-code controls integrated directly into Terraform workflows and CI/CD pipelines.
  • Contribute across the full control implementation lifecycle, including requirement interpretation, policy authoring, testing, optimization, and deployment within engineering pipelines.
  • Establish and maintain reusable policy libraries and modules to ensure consistency, scalability, and reusability of controls across services and environments.
  • Provide deep technical expertise in Terraform, infrastructure-as-code patterns, and pipeline orchestration to support secure and efficient deployments.
  • Define and implement testing strategies for policy validation, including unit testing, integration testing, and automated validation within pipelines.
  • Identify gaps where requirements cannot be enforced at deploy-time and propose compensating controls or alternative enforcement points.
  • Contribute to the evolution of a unified control framework that enables consistent control logic across deploy-time and runtime evaluation points.
  • Support the development and refinement of cloud security strategy, standards, and reference architectures.
  • Serve as a senior technical contributor for deploy-time control implementation, helping shape technical approaches and ensuring high-quality delivery.
  • Provide hands-on technical guidance and peer support in OPA/Rego, Regula, Terraform, and secure pipeline design.
  • Participate in code reviews, design discussions, and knowledge-sharing sessions to strengthen engineering quality and consistency across the team.
  • Partner with platform engineering, security architecture, and application teams to improve implementation clarity and reduce delivery friction.
  • Communicate complex technical concepts clearly to engineering teams, stakeholders, and senior leadership.
  • Contribute to engineering best practices for infrastructure-as-code, policy development, testing, and review processes.
  • Support risk identification, control management, and assurance activities that help the business operate securely and in a legally compliant manner.
  • Help align deploy-time controls with runtime detection, compliance models, and broader cyber risk management objectives.

Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
  • 7+ years of hands-on experience in cloud security engineering, with a strong focus on infrastructure-as-code and deployment pipelines.
  • Proven experience designing and implementing policy-as-code controls using OPA/Rego and/or Regula in production environments.
  • Deep hands-on expertise with Terraform, including module design, state management, secure configuration patterns, and best practices for large-scale environments.
  • Strong experience integrating security controls into CI/CD pipelines, including gating, enforcement mechanisms, and automated validation.
  • Demonstrated ability to translate security and configuration requirements into automated, testable, and enforceable deploy-time controls.
  • Solid understanding of cloud security architectures across AWS, Azure, and/or Google Cloud Platform, including IAM, networking, encryption, and data protection controls.
  • Experience implementing control validation and testing strategies, including policy unit testing, pipeline validation, and drift detection.
  • Familiarity with Cloud Security Posture Management (CSPM) platforms and the ability to align deploy-time controls with runtime detection and compliance models.
  • Strong understanding of modern cloud threat models, attack paths, and misconfiguration risks, and how to mitigate them through preventive controls.
  • Experience building and maintaining reusable policy libraries and shared control frameworks at enterprise scale.
  • Experience working as a senior engineer on complex technical initiatives, including task prioritization, delivery planning, and contribution to technical direction.
  • Demonstrated ability to mentor peers and share expertise, particularly in policy-as-code, Terraform, and secure pipeline practices.
  • Strong communication skills with the ability to explain complex technical concepts to both technical and non-technical stakeholders.
  • Ability to work effectively in a collaborative, cross-functional environment that values intellectual rigor, technical depth, and continuous improvement.

About PTR Global: PTR Global is a leading provider of information technology and workforce solutions. PTR Global has become one of the largest providers in its industry, with over 5000 professionals providing services across the U.S. and Canada. For more information visit ;br>
At PTR Global, we understand the importance of your privacy and security. We NEVER ASK job applicants to:
  • Pay any fee to be considered for, submitted to, or selected for any opportunity.
  • Purchase any product, service, or gift cards from us or for us as part of an application, interview, or selection process.
  • Provide sensitive financial information such as credit card numbers or banking information. Successfully placed or hired candidates would only be asked for banking details after accepting an offer from us during our official onboarding processes as part of payroll setup.

Pay Range: $60 - $69.72
The specific compensation for this position will be determined by several factors, including the scope, complexity, and location of the role, as well as the cost of labor in the market; the skills, education, training, credentials, and experience of the candidate; and other conditions of employment. Our full-time consultants have access to benefits, including medical, dental, vision, and 401K contributions, as well as PTO, sick leave, and other benefits mandated by applicable state or localities where you reside or work.
If you receive a suspicious message, email, or phone call claiming to be from PTR Global do not respond or click on any links. Instead, contact us directly at +1 . To report any concerns, please email us at
During the hiring process, we may use artificial intelligence (AI) tools to assist in evaluating information related to your application. These tools may help analyze job-related qualifications or assist recruiters in reviewing applications and interview responses. AI-generated information is one factor considered in our hiring process. Final employment decisions are made by qualified hiring personnel and are not based solely on AI-generated recommendations.
Email me resume @

Similar jobs