10872 - Application Security Engineer II

Hyundai Autoever America

$96K — $138K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, IT, Computer Science, or related field, or equivalent experience.
  • 5+ years of experience in Cloud Security, Cloud Engineering, or Security Engineering.
  • Practical experience with AWS, Azure, and GCP in production environments.
  • Experience ensuring cloud logging is integrated into centralized log management and SIEM platforms.
  • Hands-on management of CSPM tools across multi-cloud environments.
  • Working knowledge of cloud IAM, cloud-native logging, and common security misconfigurations.

Responsibilities

  • Support and maintain Cloud Security Standard across all cloud providers.
  • Collaborate with teams to ensure standards are technically feasible and well-documented.
  • Review and update cloud security standards as services and risks evolve.
  • Enable and maintain cloud logging across AWS, Azure, and GCP.
  • Facilitate reliable ingestion of logs into centralized SIEM systems.
  • Monitor CSPM findings to identify misconfigurations and policy violations.
  • Collaborate with engineering teams to remediate CSPM findings.

Benefits

  • Fosters a high-performance, collaborative team culture.
  • Focus on proactive technology risk management and excellent customer service.
  • Opportunities for continuous improvement and professional development.
  • Encourages effective communication across functional teams.
  • Values adaptability to dynamic challenges.
Full Job Description
Engineering, Application Security Engineer II
Location - Irvine, CA

What You Will Be Doing
The Application Security Engineer II is responsible for supporting and maintaining the organization's Cloud Security Standard across all cloud service providers, ensuring consistent implementation, operational effectiveness, and lifecycle management. This role sits within the Security Architecture and Engineering organization and focuses on strengthening cloud security posture through standards governance, logging and monitoring integration, and hands-on management of Cloud Security Posture Management (CSPM) capabilities.

The role requires practical experience working across AWS, Azure, and GCP environments, with a strong emphasis on ensuring cloud-native and third-party logging is consistently integrated into centralized log management and SIEM platforms to support security monitoring, detection, and incident response. The key responsibilities of this role are as described below:

Cloud Security Standards & Governance
  • Supporting the Cloud Security Architect, maintain and support the Cloud Security Standard across all iterations and lifecycle phases, ensuring it remains current, actionable, and aligned with:
    • Cloud provider capabilities (AWS, Azure, GCP)
    • Organizational security requirements
    • Industry best practices and threat landscape changes
  • Partner with other teams to ensure standards are:
    • Technically feasible
    • Consistently implemented
    • Clearly documented and communicated
  • Support reviews and updates to the standard as cloud services, architectures, and risks evolve.


Cloud Logging, Monitoring & SIEM Integration
  • Ensure cloud logging is consistently enabled, configured, and maintained across AWS, Azure, and GCP environments.
  • Work with Security Operations and Platform teams to ensure logs are:
    • Reliably ingested into centralized log management and SIEM platforms
    • Structured and normalized to support detection, investigation, and audit needs
  • Validate coverage for critical log sources, including:
    • Identity and access activity
    • Network and perimeter events
    • Resource configuration and management activity
  • Support troubleshooting of log gaps, ingestion failures, and data quality issues.


Cloud Security Posture Management (CSPM)
  • Operate and maintain CSPM capabilities across AWS, Azure, and GCP environments.
  • Monitor CSPM findings to identify:
    • Misconfigurations
    • Policy violations
    • Security control gaps
  • Partner with engineering teams to drive remediation of CSPM findings, ensuring:
    • Clear ownership
    • Risk-based prioritization
    • Sustainable fixes
  • Support tuning of CSPM policies and rules to reduce noise and improve signal quality.
  • Collaborate with the Risk Operations team to ensure CSPM findings that are not automatically remediated are tracked as Risk Issues.


Security Operations & Risk Enablement
  • Collaborate with Cyber Defense, Incident Response, and the Integrated Risk Management team to ensure cloud security controls support operational and risk objectives.
  • Provide input into cloud-related risk assessments, audits, and security reviews.
  • Assist with security investigations and incident response activities involving cloud environments.

Basic Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer science or a related field or equivalent experience AND
  • 5+ years of experience in Cloud Security, Cloud Engineering, or Security Engineering.
  • Practical experience working with AWS, Azure, and GCP in production environments.
  • Demonstrated experience ensuring cloud logging feeds into centralized log management and SIEM platforms.
  • Hands-on experience managing Cloud Security Posture Management (CSPM) tools across multi-cloud environments.
  • Technical Expertise: Working knowledge of Cloud identity and access management, Cloud-native logging and monitoring services, and Common cloud security misconfigurations and threats. Strong troubleshooting and collaboration skills.

Preferred Qualifications:
  • Master's degree in Cybersecurity, Information Technology, Computer science or a related field or equivalent experience AND
  • 5+ years of experience in Cloud Security, Cloud Engineering, or Security Engineering.
  • Hands on experience with CSPM tools such as Prisma Cloud, Wiz, Lacework or similar. A working understanding of cloud security frameworks and benchmarks (e.g. CIS).
  • Experience supporting audits or compliance activities related to cloud security.
  • Industry-recognized credentials such as CISSP, CISM, or cloud specific certifications for AWS, Azure or GCP security are highly desirable.


Team Culture:
The team fosters a high-performance, collaborative environment centered around proactive technology risk management and excellent customer service. Members are expected to lead with accountability, communicate effectively across functions, and adapt to dynamic challenges. The culture values technical excellence, continuous improvement, and global coordination, ensuring technology risks are well managed.

Base Salary Range: $96,550 - $138,061

Similar Jobs

More Jobs at Hyundai Autoever America

More Information Technology Jobs

Find similar 10872 - Application Security Engineer II jobs: