ULTA Salon, Cosmetics & Fragrance, Inc

Cloud Security Engineer

Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years of experience in cloud security, cybersecurity, cloud engineering, or DevSecOps.
  • Hands-on experience with Google Cloud Platform (GCP) security services and concepts.
  • Familiarity with monitoring, vulnerability management, and incident response processes in cloud environments.
  • Understanding of security fundamentals such as IAM, encryption, and vulnerability management.
  • Strong analytical and troubleshooting skills, effective in working with both technical and non-technical stakeholders.

Responsibilities

  • Implement and maintain cloud security controls across GCP and Azure.
  • Assist in designing and improving cloud security guardrails and policies.
  • Support IAM initiatives and manage privileges in line with zero-trust principles.
  • Secure cloud services and workloads through best practices and configuration reviews.
  • Monitor and tune security alerts from cloud-native and third-party tools.
  • Investigate suspicious activities and support incident response for cloud resources.
  • Support cloud security assessments against established frameworks and participate in audit activities.

Benefits

  • Paid time off for full-time positions.
  • Health, dental, and vision coverage available for full-time positions.
  • Life and disability benefits for both full and part-time employees.
  • Opportunity to earn additional compensation through a company bonus plan.
Full Job Description
THE IMPACT YOU CAN HAVE:
  • Ulta Beauty is seeking a Cloud Security Engineer with hands-on, technical experience in securing our cloud platforms and modern application environments. This role will focus on implementing and improving cloud security controls, monitoring and responding to security findings, supporting compliance initiatives, and partnering with engineering and project teams to integrate security into cloud and application workflows.
  • Ulta's environment is primarily based within Google Cloud Platform (GCP), with a smaller Azure footprint supporting a subset of applications.
  • The ideal candidate is a hands-on engineer who can solve technical security challenges across Cloud Infrastructure, IAM, data and workload protection, and DevOps (CI/CD) processes.
  • Success in this role requires strong collaboration and communication skills, as you will work closely with infrastructure, platform, and application teams to improve security while enabling business objectives.
YOU'LL ACCOMPLISH THESE GOALS BY:
Cloud Security Implementation
  • Implement and maintain cloud security controls across GCP and Azure environments, including projects, subscriptions, and organizational structures.
  • Assist in the design, deployment, and continuous improvement of cloud security guardrails, baseline configurations, and policy enforcement mechanisms.
  • Support Identity and Access Management (IAM) initiatives and operational activities, including least-privilege access, privileged account/identity management, service account governance, and identity federation in the cloud, always following zero-trust principles.
  • Secure cloud services, workloads, and data platforms through configuration reviews, hardening activities, and security best practices; including but not limited to VPC Service Controls, NSGs, Cloud Storage, GKE, BigQuery, Cloud SQL, Pub/Sub, Cloud Functions, and Cloud Run.
  • Support container and workload security initiatives, including hardened container image adoption, image scanning for CVEs, and secure deployment practices (DevSecOps).
  • Support defining and implementing encryption, key management, and data protection practices and controls across cloud environments.
  • Contribute to security automation efforts using Infrastructure as Code (IaC), scripting, and cloud-native tooling to improve operational efficiency and reduce manual processes.
  • Integrate and maintain cloud-native and third-party security tools to improve visibility, posture management, and threat detection to improve overall security posture.
  • Support the implementation of security controls within CI/CD pipelines, including vulnerability scanning, secrets detection, and policy validation (DevSecOps).
  • Assist development teams with secure cloud architecture patterns and application deployment practices.
Monitoring & Incident Response
  • Monitor and tune cloud security alerts, vulnerabilities, and findings from cloud-native (GCP SCC, MS Defender for Cloud) and third-party security tools (Prisma Cloud, Wiz).
  • Investigate suspicious activity, misconfigurations, exposed secrets, and potential security incidents within cloud environments.
  • Support incident response activities involving cloud resources, identities, workloads, applications, and data.
  • Perform root cause analysis and recommend remediation actions following security events.
  • Validate remediation efforts and help improve monitoring coverage based on lessons learned from incidents and investigations
Compliance & Risk Management
  • Support cloud security assessments and control reviews against established security frameworks and organizational standards (CIS, NIST 800-53, PCI-DSS).
  • Assist with vulnerability management activities, including identification, prioritization, remediation tracking, and validation.
  • Participate in cloud security posture reviews and continuous improvement initiatives using CNAPP and CSPM technologies.
  • Support audit requests, evidence collection, and documentation activities related to cloud security controls
  • Execute security assessments on cloud workloads, data storage, network segmentation, and CI/CD processes.
Collaboration & Support
  • Partner with infrastructure, platform, application development, and security teams to promote secure cloud adoption and DevSecOps best practices.
  • Provide guidance on secure cloud architecture, infrastructure-as-code, identity management, and cloud-native services.
  • Assist development teams in identifying and remediating cloud and application security issues throughout the SDLC.
  • Contribute to the development of cloud security standards, procedures, technical documentation, and operational runbooks.
ESSENTIALS FOR SUCCESS:
  • 3+ years of experience in cloud security, cybersecurity, cloud engineering, DevSecOps, or a related technical field.
  • Hands-on experience with Google Cloud Platform (GCP) security services and concepts.
  • Experience securing cloud workloads, identities, applications, and data services.
  • Familiarity with cloud security monitoring, vulnerability management, and incident response processes.
  • Understanding of security fundamentals including IAM, encryption, logging, threat detection, vulnerability management, and secure application deployment practices.
  • Familiarity with application security concepts such as secrets management, dependency scanning, vulnerability remediation, or secure coding principles.
  • Strong analytical, troubleshooting, and communication skills, as well as working effectively with technical and non-technical stakeholders.

PREFERRED QUALIFICATIONS:
  • Relevant cloud or security certifications such as Google Professional Cloud Security Engineer, Azure Security Engineer Associate (AZ-500), Security+, or equivalent.
  • Familiarity with Palo Alto Prisma Cloud, Wiz, or similar platforms.
  • Experience with container security, Kubernetes security, and secure software supply chain practices.
  • Exposure to application security tools and processes such as SAST, DAST, dependency scanning, secrets detection, software composition analysis (SCA), or secure code review (e.g. SonarQube, Checkmarx, TruffleHog, Chainguard).
  • Familiarity with security frameworks such as CIS Benchmarks, NIST 800-53, PCI-DSS, or ISO 27001.
  • Experience with scripting or automation using Python, PowerShell, Bash, or similar languages.
  • Strong troubleshooting and analytical mindset with attention to detail.
  • Comfortable working in fast-moving cloud environments with minimal supervision.
  • Strong communication skills with both technical and non-technical teams.
  • Accountable and proactive - able to identify risks before failures occur.
#LI - ML1

#LI - hybrid

The pay range for this position is $88,200.00 - $130,000.00 / Year with the opportunity for eligible associates to earn additional compensation pursuant to the Company's bonus plan. Exact pay will be based on factors including, but not limited to relevant education, qualifications, certifications, experience, level, shift, geographic location, and business and organizational needs. Full-time positions are eligible for paid time off, health, dental, vision, life and disability benefits. Part-time positions are eligible for dental, vision, life, and disability benefits. For additional information concerning our benefits, visit our Benefits and Career Development page: https://learn.bswift.com/ulta

#LI - ML1

#LI - hybrid

About ULTA Salon, Cosmetics & Fragrance, Inc

ULTA Beauty is the beauty retailer in the United States and the premier beauty destination for cosmetics, fragrance, skin, hair care products and salon services. Since opening its first store 25 years ago, ULTA Beauty has grown to become the top national retailer providing All Things Beauty, All in One Place™. The Company offers more than 20,000 products from over 500 well-established and emerging beauty brands across all categories and price points, including ULTA Beauty's own private label. ULTA Beauty also offers a full-service salon in every store featuring hair, skin and brow services. ULTA Beauty is recognized for its commitment to personalized service, fun and inviting stores and its industry-leading Ultamate Rewards loyalty program.

ULTA Salon, Cosmetics & Fragrance, Inc. Careers

Join the vibrant team at ULTA Salon, Cosmetics & Fragrance, Inc., a leader in the beauty industry, where innovation meets diversity and professional growth. As a company renowned for its inclusive culture and commitment to employee development, there has never been a better time to explore job opportunities with us. Work You’ll Do At ULTA, we empower our team to bring beauty to life, providing unparalleled opportunities for career advancement and professional enrichment. Whether you are looking for a position in our retail stores, at our corporate headquarters, or within our distribution network, ULTA offers a dynamic work environment where your skills will be honed and your achievements recognized. Join our team and contribute to an industry-leading company known for its commitment to innovation, leadership, and diversity. ULTA is not just about beauty products; it's about elevating the beauty in everyone. Our team’s diversity is our strength, and we continuously strive to foster an inclusive environment through comprehensive diversity training programs. Internship and Employment Opportunities Start your career journey with an internship at ULTA, where you can gain hands-on experience in a thriving retail environment. Our internships provide a robust foundation in the beauty industry, offering insights into various aspects of business operations, from marketing to supply chain management. For those seeking full-time roles, ULTA is hiring across a range of departments. We look for passionate, creative, and solution-driven team players. Explore open positions that match your skills and interests on our Careers page. Benefits and Culture At ULTA, we believe in rewarding our employees for their hard work and commitment. Our benefits package is designed to support the well-being and financial security of our team members and their families. Benefits include health coverage, retirement plans, employee discounts, and more. Our company culture champions personal and professional growth, encouraging every team member to reach their full potential. Through leadership training and continuous learning opportunities, we prepare our employees to lead and innovate in the beauty industry. Networking and Professional Development Stay connected and advance your career through ULTA’s networking events, where you can meet industry leaders and like-minded professionals. Enhance your resume and interview skills through our career development workshops and receive personalized advice from our experienced hiring managers. Future-Proof Your Career With ULTA, the trajectory of your career is boundless. Embrace the opportunity to grow with a company that is as committed to your professional journey as it is to leadership in the beauty industry. Explore Discover how ULTA is transforming the beauty landscape and leading the way in retail innovation. Read more about our latest projects and the impact they have on our customers and industry. Join Our Team Search for job opportunities that align with your career aspirations. We are excited to see how your vision and expertise can contribute to our ongoing success. Stay Up to Date Keep ahead with career tips, insider perspectives, and industry-leading insights you can put to use today—all from the people who work here. Job Alert Emails Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. See what exciting and rewarding opportunities await at ULTA Salon, Cosmetics & Fragrance, Inc. Join us and be part of a company where innovation, leadership, and beauty move forward together.
Learn more about ULTA Salon, Cosmetics & Fragrance, Inc
Size
16,500 employees
Market Cap
$23.6 billion
Industry
Net Income
$175.8 million
Founded
1990
5 Year Trend
+12.2%
Revenue
$6.1 billion
NASDAQ

Similar Jobs

More Jobs at ULTA Salon, Cosmetics & Fragrance, Inc

More Information Technology Jobs

Find similar Cloud Security Engineer jobs: