Braintrust is looking for a hands-on Cloud Security Engineer to own the security posture of their multi-cloud infrastructure and customer hosted data planes. The role involves working across AWS, Azure, and GCP, hardening their Kubernetes and Terraform stack, and keeping the platform secure without slowing engineering down.
Requirements
- 5+ years in cloud security, infrastructure security, or security engineering with a heavy hands-on bent — you ship code and configuration, not just policy
- Deep AWS expertise (IAM, VPC, KMS, GuardDuty, CloudTrail) and working fluency in at least one of Azure or GCP
- Strong Terraform skills and a track record of making security guardrails the default in IaC pipelines
- Production Kubernetes security experience: you've run admission controllers, debugged a cluster compromise, or written a network policy that mattered
- Proficient in modern backend technologies and comfortable writing real code in Python, TypeScript, or Go
- Production incident response experience; you've owned a real incident end-to-end and made the next one less painful
- Familiarity with one or more compliance regimes (SOC 2, ISO 27001, HIPAA, FedRAMP) and the discipline to make them work without becoming busywork
- Active user of agentic coding tools, with a clear point of view on how AI is changing security engineering — both offense and defense
Benefits
- Medical, dental, and vision insurance
- Daily lunch, snacks, and beverages
- Flexible time off
- Competitive salary and equity
- AI Stipend