Full Job Description
The Sr. Engineer, Cloud Security CNAPP is responsible for securing and managing cloud security platforms across multi-cloud environments by identifying risks, implementing automated security controls, and ensuring the protection of cloud infrastructure, applications, containers, and identities. It partners closely with DevOps and Platform Engineering teams to embed security into cloud deployment processes, investigate security findings, drive remediation efforts, and improve the organization's overall cloud security posture.
This position reports to the Director, Global Cloud Security and is part of the Information and Cyber Security organization located in Canada and will be fully remote.
In this role, you will have the opportunity to:
- Engineer, deploy, and maintain Cloud-Native Application Protection Platform (CNAPP) capabilities across AWS, Azure, GCP, OCI, and Alibaba environments, including CSPM, CWPP, CIEM, Kubernetes Security, Container Security, IaC Security, and Cloud Detection & Response solutions.
- Identify, assess, and drive remediation of cloud misconfigurations, excessive permissions, vulnerabilities, and other security risks while providing technical guidance on secure cloud architecture and cloud-native security best practices.
- Design, develop, and implement automated security controls, policies, workflows, integrations, and infrastructure-as-code solutions to strengthen cloud security and operational efficiency.
- Partner with DevOps, Platform Engineering, and other stakeholders to embed security controls and best practices into CI/CD pipelines, cloud deployment processes, and cloud-native platforms.
- Create and maintain operational dashboards, reporting, and security metrics to measure cloud security posture, risk reduction, remediation effectiveness, and support the investigation and resolution of cloud security findings.
The essential requirements of the job include:
- 5+ years of experience in Cloud Security, Security Engineering, DevSecOps, Infrastructure Engineering, Cybersecurity, or related disciplines, with demonstrated expertise securing enterprise cloud environments.
- Hands-on experience with leading CNAPP platforms such as Wiz, Prisma Cloud, Microsoft Defender for Cloud, Cortex Cloud, CrowdStrike Falcon Cloud Security, Upwind, or comparable cloud security solutions.
- Strong technical knowledge of public cloud platforms and cloud-native technologies, including AWS, Azure, and/or GCP; networking, IAM, compute, storage, managed services; Kubernetes, containers, serverless technologies, and cloud-native architectures.
- Experience implementing security and automation through infrastructure-as-code and DevSecOps practices, including Terraform, CloudFormation, ARM/Bicep, or similar tools, and integrating security controls into CI/CD platforms such as GitHub, Azure DevOps, GitLab, or Jenkins.
- Proficiency in scripting and automation, leveraging languages such as Python, PowerShell, Bash, or similar technologies to develop automated security controls, workflows, and operational capabilities.
Preferred skills and experience:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience), with experience supporting cloud security programs within large enterprise environments.
- Industry-recognized cloud and security certifications preferred, including CISSP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer, CKA, CKS, or similar credentials.
- Knowledge of cloud security, compliance, and operational security practices, including experience with security operations, threat detection, vulnerability management, incident response, and compliance frameworks such as NIST, CIS Controls, ISO 27001, PCI-DSS, and SOC 2.
Danaher offers a broad array of comprehensive, competitive benefit programs that add value to our lives. Whether it's a health care program or paid time off, our programs contribute to life beyond the job. Check out our benefits at Danaher Benefits Info.
At Danaher, we believe in designing a better, more sustainable workforce. We recognize the benefits of flexible, remote working arrangements for eligible roles and are committed to providing enriching careers, no matter the work arrangement. This position is eligible for a remote work arrangement in which you can work remotely from your home. Additional information about this remote work arrangement will be provided by your interview team. Explore the flexibility and challenge that working for Danaher can provide.