Cloud Security Lead
Foster City, CA • FullTime
Posted 5h ago
About the job
Replit is seeking a Cloud Security Lead to join their team and shape the cloud and infrastructure security program for their innovative developer platform. This role will focus on securing cloud environments, particularly GCP, along with AWS and Azure, and containerized systems. The lead will be responsible for improving security posture through architecture, posture management, and secure development practices, partnering closely with various engineering and platform teams. This is a hands-on leadership position for someone passionate about solving complex security challenges at scale and influencing product and engineering decisions.
Responsibilities
- Lead configuration hardening across GCP, AWS, and Azure.
- Own and optimize CSPM platforms, establishing baselines, guardrails, and remediation workflows.
- Secure critical SaaS platforms, ensuring proper configurations and access controls.
- Lead infrastructure vulnerability management across multi-cloud systems and containers.
- Enhance security for containerized and Kubernetes workloads, including runtime protections and network policies.
- Assess and configure secure logging across cloud and SaaS providers.
- Partner with engineering teams to embed security into development workflows and CI/CD pipelines.
- Collaborate with Security Monitoring, Compliance/GRC, Architecture, DevOps, Platform Engineering, and ML Infrastructure teams.
- Communicate security advisories and best practices to customers.
- Support incident investigations as a cloud security subject-matter expert.
Requirements
- 7+ years of experience in cloud engineering, with 3+ years in a senior or lead role.
- Hands-on experience with CSPM tools (e.g., Wiz, Lacework, Prisma).
- Deep expertise in GCP security (IAM, VPC, KMS, GKE, Cloud Logging).
- Experience securing and governing SaaS platforms and identity integrations.
- Operational experience with infrastructure vulnerability management.
- Working knowledge of AWS and/or Azure security services.
- Experience with container and Kubernetes security (GKE, EKS, or AKS).
- Strong IaC security experience with Terraform, Pulumi, or similar.
- Familiarity with compliance standards (SOC 2, ISO 27001, PCI DSS).
- Experience supporting engineering teams in building secure-first, cloud-native or PaaS environments.
- Background securing AI/ML pipelines, model-serving infrastructure, or developer platform services.
- Experience in high-growth technology or cloud-native product companies.
- Experience with securing AI/agentic systems and sensitive data pipelines.
- Automation/scripting with Python.
- Relevant certifications (e.g., GCP Professional Cloud Security Engineer, AWS/Azure security certs).
Benefits
- Competitive Salary & Equity
- 401(k) Program with a 4% match (US Only)
- Health, Dental, Vision and Life Insurance
- Short Term and Long Term Disability
- Paid Parental, Medical, Caregiver Leave
- Flexible Time Off (FTO) + Holidays
- Commuter Benefits (In-Office & US Only)
- Monthly Wellness Stipend
- Autonomous Work Environment
- In Office Set-Up Reimbursement (In-Office Only)
- Quarterly Team Gatherings
- In Office Amenities (In-Office Only)