Jobs Companies Echo Global Logistics Principal Cloud Security Engineer

Sobre este puesto de Principal Cloud Security Engineer en Echo Global Logistics

Echo Global Logistics · Presencial · Chicago, IL
Echo is seeking a Principal Cloud Security Engineer to build secure-by-default AWS platform patterns across a growing multi-account environment. This is a senior hands-on engineering role for someone who approaches security as a software and platform problem: building reusable Terraform modules, policy-as-code, deployment guardrails, and paved-road patterns that engineering teams can adopt at scale.

The ideal candidate is equally comfortable with cloud infrastructure, modern application architectures, and developer workflows, and can work credibly across Security, Platform Engineering, Architecture, and software teams. Candidates with roots in software engineering, platform engineering, or SRE who moved deeply into security are especially attractive.  The role is expected to raise the security floor through code rather than manual review alone, ensure that critical telemetry and control integrity are built into the environment from the start, and help shape cloud guardrails, logging integrity, and Terraform-first security patterns.

What you will do

  • Design and implement secure-by-default AWS account, organization, and baseline guardrail patterns across multi-account environments.
  • Build and maintain reusable Terraform modules, policy-as-code, and infrastructure delivery patterns that prevent high-risk actions, reduce drift, and improve traceability.
  • Partner with Platform and Architecture to establish security account, centralized logging, onboarding, identity, and baseline control patterns.
  • Implement and tune Service Control Policies and related preventive controls for high-risk cloud actions.
  • Establish logging integrity protections and detection coverage for tampering with CloudTrail, logging pipelines, and core monitoring controls.
  • Define cloud telemetry standards so security-relevant AWS, EKS, Lambda, and CI/CD workflow events are usable by XSIAM and MDR workflows.
  • Create approved Terraform modules, paved-road patterns, and secure reference architectures for engineering teams.
  • Provide security design input for hybrid and network-connected cloud architectures without becoming the day-to-day firewall backlog owner.
  • Embed security controls into CI/CD and infrastructure delivery workflows so policy validation happens in code paths, not after deployment.
  • Collaborate with Security Operations to improve cloud detection content, alert quality, response workflows, and support automated validation and drift detection for cloud security controls.

What success looks like

In the first 90 days, this role is expected to help establish the AWS security baseline, publish an initial guardrail library, define Terraform module standards, and identify the highest-risk cloud patterns that need to be converted into secure defaults. Over 12 months, success means the organization has adopted reusable cloud security building blocks, high-risk AWS actions are constrained through policy and account design, telemetry is reliable and actionable, and engineering teams can ship through approved paths with materially less manual security friction.

What you bring

  • 8+ years software engineering, platform engineering, SRE, infrastructure engineering, or cloud security, with substantial recent experience building and securing AWS environments through code.
  • Strong hands-on experience in AWS security engineering in multi-account environments
  • Deep experience with infrastructure-as-code, especially Terraform, including reusable modules and tested patterns.
  • Strong software engineering or platform engineering background; ability to write production-quality code in at least one modern language such as C#, Go, Python, Java, or TypeScript
  • Experience with policy-as-code, preventive guardrails, configuration governance, or cloud-native policy enforcement
  • Hands-on experience securing Kubernetes/EKS and serverless patterns in AWS
  • Experience building detective and preventive controls for cloud logging, monitoring, and control plane integrity.
  • Experience partnering with platform and engineering teams in a product-oriented environment through design reviews, pull requests, and developer enablement.
  • Ability to translate risk into practical, durable technical controls and communicate architecture decisions clearly in writing.

Preferred qualifications

  • Experience integrating cloud telemetry into a SIEM, XDR, or modern SOC platform
  • Familiarity with hybrid connectivity and cloud network controls; experience with Palo Alto or Prisma is helpful but not required.
  • Experience with CI/CD security patterns, reusable modules, and secure platform enablement.
  • Experience securing AI/GenAI services, internal copilots, or agentic workflows in cloud environments.

Echo Global Logistics is a leading provider of technology-enabled transportation management services. As a third-party logistics provider, we simplify transportation management for our clients and carriers, handling crucial tasks so they can focus on what they do best. From coast to coast, dock to dock, and across all major transportation modes, Echo connects businesses that need to ship their products with carriers who transport goods quickly, securely, and cost-effectively.

Why this role matters

Echo’s security program is moving toward enforceable, code-driven guardrails and reusable platform patterns in cloud environments rather than relying on point-in-time review and manual process. This role is central to that shift and is expected to define secure implementation patterns that become the default path for engineering teams.

#LI-SG1

#Remote

Benefits

For more information about our benefit offerings, please visit our careers page at https://www.echo.com/company/careers.

Compensation

$129,352.00-188,077.00 per year

This role is eligible for a bonus that is based on a combination of personal and business performance.
¿Listo para postularte en Echo Global Logistics?
Postúlate en Echo Global Logistics

Cómo se compara este salario de Security Engineer

Este puesto paga $158,715/yren línea con el rango típico para los puestos de Security Engineer.

$102,750 la mediana de $153,550 $243,150

Rango típico $125,515–$176,925/yr, a partir de 26 ofertas comparables de Security Engineer en JobsRadar (salario anualizado en USD). Ver datos salariales de Security Engineer →

Sobre Echo Global Logistics

Echo Global Logistics is a leading provider of technology-enabled transportation management services. As a third-party logistics provider, we at Echo Global Logistics, we’re in the business of simplifying transportation management. We didn’t become a Fortune 1000 company by chance. We got here because of our team members, who are unwavering in their pursuit to solve complex problems, provide exceptional service, and make an impact every day. Come join Echo and accelerate your career! Your recruiter will keep you informed on what that will look like for the role you are being considered for. During the recruiting process, our recruiting team will continue connecting with qualified candidates

Ver todos los empleos en Echo Global Logistics →

Empleos similares

PwC
AWS Security Engineer - Senior Associate
PwC
⚡ Postúlate pronto TX-Dallas Presencial $95,000–$106,000
● Nuevo 👁 Visto ✓ Postulado hace 1d
CG
Senior Network Security Engineer
Cboe Global Markets
⚡ Postúlate pronto Overland Park OPX Presencial $119,000–$169,400
● Nuevo 👁 Visto ✓ Postulado hace 1d
PwC
AWS Security Engineer - Experience Associate
PwC
⚡ Postúlate pronto TX-Dallas Presencial $80,000–$90,000
● Nuevo 👁 Visto ✓ Postulado hace 1d
Northern Trust
Sr Associate Software Engineer, AI Security
Northern Trust
⚡ Postúlate pronto Chicago, IL Presencial $88,900–$151,100
● Nuevo 👁 Visto ✓ Postulado hace 2d
Northern Trust
Sr Lead Software Engineer, AI Security Platform
Northern Trust
⚡ Postúlate pronto Chicago, IL Presencial $114,500–$194,700
● Nuevo 👁 Visto ✓ Postulado hace 2d
U.S. Bank
Senior Systems Engineer (Network Security Engineer)
U.S. Bank
⚡ Postúlate pronto Saint Paul, MN Presencial $105,400–$124,000
● Nuevo 👁 Visto ✓ Postulado hace 2d
Northern Trust
Sr Principal Software Engineer, AI Security Platform
Northern Trust
⚡ Postúlate pronto Chicago, IL Presencial $164,600–$288,000
● Nuevo 👁 Visto ✓ Postulado hace 3d
Huntington Bank
Security Automation and Orchestration Engineer
Huntington Bank
⚡ Postúlate pronto Columbus, OH Presencial $70,000–$140,000
● Nuevo 👁 Visto ✓ Postulado hace 6d
People Culture Talent
Security Engineer
People Culture Talent
⚡ Postúlate pronto San Francisco, CA Presencial
● Nuevo 👁 Visto ✓ Postulado hace 2sem

Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

Más empleos en Echo Global Logistics

Ver todos los empleos en Echo Global Logistics →

Postúlate ahora
🤖

Un momento — para

JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Toma ventaja en tu búsqueda de empleo.

Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

Únete al canal — es gratis