Polymarket

Cloud Security Engineer

8.0/10

Polymarket

Not specified
Remote
mid
13 days ago
cryptodevsecurityweb3AWSIAMSCPGuardDutySecurity HubCloudTrailConfigKMS

AI Summary

The vacancy is strong in task clarity and requirements but lacks specific salary information.

Check Match โ€” Just drop your CV

See your fit for Cloud Security Engineer in seconds.

Description

About Polymarket

Polymarket is the world's largest prediction market platform. We enable individuals to express views on real-world events by trading on outcomes across politics, economics, sports, culture, and current affairs. Built as a peer-to-peer marketplace with no centralized "house," Polymarket aggregates diverse opinions into transparent, market-based probabilities that reflect collective expectations about the future. We're growing fast โ€” both in terms of volume ($21B traded in 2025) and adoption as an alternative news source. Our ambition is to become a ubiquitous beacon of truth in global media and we need your help adding fuel to the fire.

What You'll Do

  • โ€ขOwn and continuously improve Polymarket's AWS security posture across accounts, regions, and services โ€” including IAM policies, SCPs, VPC segmentation, and account-level security baselines
  • โ€ขReview and contribute to IaC modules that encode security defaults; integrate automated security checks into the deployment pipeline including policy-as-code validation and misconfiguration scanning
  • โ€ขOwn cloud-side security telemetry: CloudTrail, GuardDuty, Security Hub, Config Rules, VPC Flow Logs, and S3 access logging
  • โ€ขDevelop and tune detection logic for cloud-specific threats; partner with the SOC team on alert fidelity, incident response runbooks, and AWS-level investigations
  • โ€ขGovern secrets management using AWS Secrets Manager and SSM Parameter Store; manage KMS key policies, rotation, and envelope encryption patterns
  • โ€ขDrive remediation of findings from AWS Inspector, Security Hub, and third-party CSPM tooling; maintain benchmarks aligned to CIS AWS Foundations
  • โ€ขSupport audit and compliance activities (SOC 2, PCI-DSS, or similar) and conduct regular access reviews to identify and remediate privilege creep

Benefits

  • โ€ขCompetitive salary & equity
  • โ€ขUnlimited PTO
  • โ€ขFull Health, Vision, & Dental coverage
  • โ€ข401k match
  • โ€ขHardware setup: new MacBook Pro, big display, & accessories

Requirements

What We're Looking For

  • โ€ข4+ years of experience in cloud security, cloud engineering, or a security-focused infrastructure role
  • โ€ขDeep, hands-on expertise with AWS security services: IAM, SCP, GuardDuty, Security Hub, CloudTrail, Config, KMS, WAF, Inspector, and VPC
  • โ€ขHands-on experience writing infrastructure as code (Pulumi, Terraform, CDK, or equivalent) with a security-first mindset
  • โ€ขStrong understanding of AWS networking and how misconfigurations translate to real attack surface
  • โ€ขProficiency in at least one scripting or programming language (Python, TypeScript, or Go) for automation and tooling
  • โ€ขAbility to evaluate architectural decisions for security risk and communicate findings clearly to engineering peers
  • โ€ข(Plus) Familiarity with Pulumi, specifically TypeScript-based stacks
  • โ€ข(Plus) Familiarity with Web3, blockchain infrastructure, or crypto-sector threat models
  • โ€ข(Plus) Experience securing containerized workloads on ECS or EKS, including image scanning and runtime security
  • โ€ข(Plus) AWS certifications: Security Specialty, Solutions Architect โ€” Professional, or equivalent
  • โ€ข(Plus) Exposure to SOC 2 Type II or PCI-DSS cloud control requirements
Loading similar jobs...