← WorkMundi · 1M+ jobs from around the world, liveSign inCreate free account

Cloud Security Engineer

Paymentus · Richmond Hill, Ontario, Canada

🌐 Remote📅 21/08/2026
🔔 Alert me about jobs like this
No password, no sign-up. Just the email — and you can leave the list anytime.
🔓 Apply — free →
Opens this job on WorkMundi. The account is free and takes under a minute.

See the other 46,375 jobs in Canada →

🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Summary/Objective The Cloud Security Engineer is responsible for helping secure the cloud-native infrastructure, platforms, services, and deployment patterns that support the Paymentus SaaS platform. This role reports to the Manager of Security Engineering and works closely with Engineering, Cloud Infrastructure, DevOps, Platform Engineering, Product, Compliance, Security Operations, and Application Security teams. This is a hands-on technical role focused on securing Paymentus infrastructure across public cloud, Kubernetes, containers, serverless technologies, CI/CD pipelines, infrastructure as code, cloud identity, network controls, secrets management, logging, monitoring, and cloud-native security tooling. The successful candidate must have deep practical knowledge of cloud security across AWS, GCP, and Azure , with strong experience securing modern SaaS platforms, web applications, RESTful APIs, microservices, and distributed systems. The role requires the ability to assess cloud architecture, identify insecure patterns, build scalable security controls, automate cloud security checks, and partner directly with engineering teams to remediate risk without unnecessarily slowing delivery. Education and Experience Bachelor’s Degree in Engineering, Computer Science, Software Engineering, Information Security, or a related technical field, or equivalent practical experience. 5+ years of experience in cloud security, infrastructure security, platform security, DevSecOps, security engineering, cloud engineering, site reliability engineering, or a closely related technical role. Hands-on experience securing workloads in one or more major public cloud platforms, with strong preference for practical experience across AWS, GCP, and Azure . Strong understanding of cloud-native architecture, SaaS platforms, microservices, distributed systems, RESTful APIs, authentication, authorization, encryption, logging, monitoring, and service-to-service communication. Deep knowledge of cloud identity and access management, including least privilege, role-based access, service accounts, workload identity, cross-account access, privileged access, federation, and access governance. Hands-on experience with Kubernetes security, including RBAC, cluster hardening, admission control, network policies, pod security controls, secrets management, workload isolation, and runtime security. Hands-on experience with container security, including image scanning, base image hardening, container registries, image signing or provenance, runtime controls, and containerized application deployment patterns. Experience securing serverless technologies, including function permissions, event-driven architectures, secrets handling, logging, monitoring, and abuse-prevention patterns. Experience with infrastructure as code and policy-as-code technologies such as Terraform, CloudFormation, or similar tools. Experience securing CI/CD pipelines, source control systems, build systems, artifact repositories, container registries, deployment workflows, and release automation. Experience with cloud security tools and practices such as CSPM, CNAPP, CWPP, CIEM, cloud vulnerability management, cloud asset inventory, cloud detection engineering, IaC scanning, container scanning, and secrets scanning. Strong knowledge of cloud networking and perimeter controls, including segmentation, routing, firewall rules, private endpoints, load balancers, TLS, DNS, ingress/egress controls, API gateways, and exposure management. Familiarity with CDN, WAF, bot mitigation, rate limiting, edge security, and origin protection using platforms such as Cloudflare and Fastly . Familiarity with application servers, web servers, and reverse proxy technologies such as Tomcat, JBoss, nginx , or similar platforms. Good understanding of modern application security guidelines, including OWASP Top 10 , OWASP API Security Top 10 , and OWASP Top 10 for Large Language Model Applications . Ability to analyze cloud security findings, determine exploitability, identify root cause, and recommend practical remediation steps. Ability to work independently, manage multiple priorities, and deliver high-quality results in a fast-paced engineering environment. Strong written and verbal communication skills, including the ability to explain cloud security risks clearly to technical and non-technical stakeholders. Strong collaboration skills and the ability to build trusted working relationships with engineering, product, DevOps, cloud infrastructure, compliance, and security teams. Preferred Qualifications Experience working in fintech, payments, banking, financial services, or another highly regulated SaaS environment. Experience with payment processing environments, cardholder data environments, tokenization, payment APIs, transaction platforms, or fraud-related infrastructure. Experience supporting PCI DSS, SOC 2, SOX technology controls, NIST CSF, ISO 27001, or similar security and compliance frameworks. Experience securing multi-cloud environments across AWS, GCP, and Azure . Experience with Kubernetes admission controllers, service mesh security, cloud workload identity, runtime detection, image signing, software bill of materials, and supply chain security. Experience building cloud security guardrails, secure landing zones, reusable infrastructure modules, secure service templates, policy-as-code, or developer self-service security capabilities. Experience with cloud-native logging and detection tools, including cloud audit logs, SIEM integrations, security data lakes, threat detection rules, and incident investigation workflows. Experience with red team findings, penetration testing support, attack-path analysis, cloud incident response, or cloud threat hunting. Relevant certifications such as AWS Security Specialty, Google Professional Cloud Security Engineer, Azure Security Engineer, CCSP, CISSP, CKS, CKAD, CKA, Kubernetes Security Specialist, or equivalent practical experience. Work Environment This job operates in a professional office and technology environment. This role routinely uses standard office and engineering equipment, including laptop computers, collaboration tools, cloud platforms, security platforms, source code repositories, ticketing systems, and communication systems. The role requires frequent collaboration with geographically distributed teams and may involve participation in security incident response, urgent vulnerability remediation, production risk reviews, and executive briefings. Physical Demands While performing the duties of this job, the employee is regularly required to talk, hear, type, read, and view computer screens for extended periods. Specific vision abilities required by this job include close vision and the ability to adjust focus. The employee may occasionally be required to stand, walk, reach with hands and arms, lift files or equipment, open filing cabinets, bend, or stand on a stool as necessary. The employee may occasionally be required to lift up to 25 lbs. Position Type/Expected Hours of Work This is a full-time position. Days and hours of work are generally Monday through Friday during normal business hours. Occasional evening, weekend, or on-call work may be required based on business needs, security incidents, critical vulnerabilities, production releases, audit deadlines, or customer commitments. Travel Minimal travel is expected. Occasional travel may be required for company meetings, team events, customer security discussions, conferences, audits, or vendor engagements. Other Duties This job description is not designed to cover or contain a comprehensive listing of all activities, duties, or responsibilities required of the employee. Duties, responsibilities, and activities may change at any time with or without notice. EEO Statement Paymentus is an equal opportunity employer. We enthusiastically accept our responsibility to make
Read the rest of the job →
For people searching Engineer

144,883 engineer jobs are open right now

Here's how to pick the right one and stand out in your application.

144.883Jobs
31.687IN
81%EN

That number is real. WorkMundi's database shows 144,883 open engineer roles across the world. India has the most with 31,687 jobs, followed by the United States with 30,084. If you just finished reading one job ad and felt paralyzed by choice, you're not alone—but this scale is actually an advantage. It means you can afford to be selective.

Start by geography and language. The majority of engineer ads—117,837 of them—have the job posting text written in English. Use that as one filter, but remember: the ad text language tells you nothing about whether the role actually requires you to speak English day-to-day. Read the job description carefully. Then check which countries have the volume you're targeting. Singapore, Poland, and Australia round out the top five after India and the US.

Next, learn who's hiring. Accenture has posted 2,801 engineer roles. andurilindustries, speechify, and jobgether are also actively recruiting. If you're applying to one of these names, research their hiring patterns and interview style before you apply. That homework pays off.

When you interview, expect the question every engineer hears: 'Tell me about a time you had to debug a problem that wasn't in your job description.' Have a specific story ready—not a general one. Name the tools, the deadline pressure, and what you learned. Hiring managers listen for whether you see problem-solving as part of the role itself, not a favour.

👁 21 have read this
0 comments
Want to comment?

Leave your e-mail to comment, react and follow the posts for your role. It is free.

Similar jobs

Job on WorkMundi — the world's largest job board. See more jobs from every continent, updated live.

📢
🎁

Before you apply, rehearse this interview.

Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card.

I want my training →