Principal Cloud Security Engineer

Xapo Bank · Anywhere

Company

Xapo Bank

Location

Anywhere

Type

Full Time

Job Description

Position overview

We are looking for a seasoned and proactive Principal Cloud Security Engineer to join our security team. In this role you will be responsible for securing our cloud-native infrastructure and services across AWS GCP and other environments that power our global digital banking and crypto platform.

As a Cloud Security Engineer you will play a critical role in designing implementing and maintaining security controls that safeguard the confidentiality integrity and availability of our systems. You’ll collaborate with engineering Platform and product teams to ensure our cloud operations are resilient compliant and security-first by design.

We're looking for someone who brings strong technical expertise a builder’s mindset and the ability to work independently on complex problems. If you thrive in a fast-paced globally distributed environment and enjoy working at the intersection of infrastructure and security this is the role for you.

Responsibilities

  • Architect implement and maintain cloud security controls across AWS and GCP to protect our infrastructure applications and data.

  • Take full ownership of security projects driving them from initial concept through development testing and deployment.

  • Review write and deploy  infrastructure-as-code (IaC) security solutions using Terraform.

  • Continuously assess cloud environments using Cloud Security Posture Management (CSPM) platforms like Wiz.

  • Support monitoring detection and response for cloud threats by integrating with tools such as AWS GuardDuty Security Hub and GCP Security Command Center.

  • Participate actively in incident response and forensic analysis for cloud-related security events.

  • Collaborate with cross-functional teams to perform threat modeling and secure architecture reviews for new services and infrastructure changes.

  • Help reinforce a security-first culture by sharing best practices and participating in awareness initiatives.

Skills needed

  • 5+ years of experience in cloud security engineering DevSecOps or related infrastructure security roles. with demonstrable expertise in securing cloud environments (especially AWS and/or GCP).

  • Strong hands-on experience with securing AWS and/or GCP environments (IAM VPCs workload protection encryption etc.).

  • Proficiency in Terraform with a focus on building and enforcing secure cloud infrastructure.

  • Solid experience with cloud-native security tools and CSPM solutions like Wiz Prisma Cloud or Orca Security.

  • Familiarity with security frameworks and standards (e.g. NIST CIS ISO) and their practical application in cloud environments.

  • Familiarity with container security concepts.

  • Solid grasp of DevSecOps principles with proven experience integrating security into CI/CD pipelines and operational processes.

  • Excellent problem-solving abilities with a proactive mindset and the capability to adapt to new challenges in dynamic environments.

  • Relevant certifications are a plus such as: AWS Certified Solutions Architect AWS Certified Security – Specialty Google Professional Cloud Security Engineer Other recognized cloud security certifications.

Other requirements

  • A dedicated workspace.

  • A reliable internet connection with the fastest speed possible in your area.

  • Alignment with Our Values and the Xapo Values-Driven Leadership principles.

Apply Now

Date Posted

03/03/2026

Views

0

Back to Job Listings Add To Job List Company Profile View Company Reviews
Neutral
Subjectivity Score: 0

Similar Jobs

Senior Security Operations Engineer - Canonical

Views in the last 30 days - 0

This job posting highlights a SeniorStaff Security Engineer role at Canonical with opportunities for leadership open source contributions and comprehe...

View Details

Graduate Software Engineer - Open Source and Linux, Canonical Ubuntu - Canonical

Views in the last 30 days - 0

Canonical promotes itself as a leading opensource provider offering global remote engineering roles with challenging projects competitive opportunitie...

View Details

Full Stack Engineer III (with WordPress expertise) - Outliant

Views in the last 30 days - 0

Ignite Visibility is an innovative digital marketing agency offering senior engineering roles with competitive benefits and growth opportunities The c...

View Details

Senior Backend Engineer - MetaMask (OffChain) - Consensys

Views in the last 30 days - 0

Consensys a leading blockchain company focuses on innovation and accessibility in web3 They offer roles in a dynamic environment emphasizing collabora...

View Details

Cloud Field Engineering Manager - Canonical

Views in the last 30 days - 0

Canonical is a global tech company that publishes Ubuntu and provides open source solutions for cloud AI IoT and data centers They are expanding into ...

View Details

Graduate Software Engineer - Open Source and Linux, Canonical Ubuntu - Canonical

Views in the last 30 days - 0

Canonical promotes itself as a leading opensource provider offering global remote software engineering roles with competitive compensation career grow...

View Details