Greenbox Capital logo

Senior Cloud Platform Security Engineer

Hiring from
United States
Work type
Remote
Posted
Is this job info correct?
Show job description

Why this Role Matters:

At Greenbox Capital, we help small businesses thrive by giving them fast, accessible funding. As a Senior Cloud Platform Security Engineer, you’ll play a critical role in building and protecting the cloud infrastructure that powers our applications, data platforms, and AI capabilities.


You’ll serve as the primary technical owner for our Azure platform, cloud security controls, and infrastructure operations. Your work will help ensure our technology environment is secure, reliable, scalable, compliant, and ready to support Greenbox’s continued growth.


This role reports to the VP, Technology and is a hands-on senior individual contributor with no direct reports. You’ll partner closely with Technology leadership, Engineering, Data & AI, Compliance, business stakeholders, and external providers.


What Success Looks Like:

Here’s how your time might break down (actual time can shift depending on business needs):

  • Platform Reliability & Recovery – Maintain ≥99.9% availability for critical platform services within your operational control, support agreed Sev-1/2 response expectations, and validate disaster recovery at least twice annually.
  • Security & Compliance Posture – Maintain strong privileged-access controls, remediate critical findings within established SLAs, and ensure technical evidence is available for SOC 2, NIST, and other compliance needs.
  • Infrastructure as Code & Configuration Management – Drive toward ≥95% of production infrastructure managed through infrastructure as code while reducing configuration drift.
  • Observability & Incident Readiness – Ensure critical services have effective monitoring, actionable alerts, escalation paths, and documented runbooks.
  • Cloud Cost & Operational Efficiency – Maintain ≥98% resource tagging compliance, improve cost visibility, and identify meaningful optimization opportunities.
  • Automation – Reduce repetitive infrastructure work through automated provisioning, remediation, evidence collection, backup validation, and recovery.


How you’ll be measured:

Own and continuously improve Greenbox Capital’s Azure platform

  • Design, configure, operate, and maintain Azure subscriptions, management groups, networking, compute, storage, platform services, and shared infrastructure.
  • Establish standards for environment separation, naming, tagging, approved services, secure configuration, and change management.

Strengthen cloud identity, network, and security controls

  • Design and maintain Microsoft Entra ID, MFA, Conditional Access, PIM, RBAC, managed identities, access reviews, and emergency-access procedures.
  • Apply least-privilege and separation-of-duties principles across cloud, SaaS, administrative, and non-human identities.
  • Own network segmentation, private connectivity, firewalls, DNS security, secure ingress/egress, and secrets management.

Improve security operations and incident readiness

  • Operate cloud-security posture management, vulnerability remediation, configuration monitoring, logging, detection, and threat-response capabilities.
  • Build meaningful alerts and dashboards and coordinate containment, recovery, evidence preservation, and corrective action during security events.

Build reliable infrastructure through automation

  • Develop and maintain infrastructure using Terraform, Bicep, or comparable infrastructure-as-code practices.
  • Establish reusable modules, peer review, automated testing, deployment controls, and configuration-drift management.

Support compliance, technology risk, and audit readiness

  • Translate requirements such as the GLBA Safeguards Rule, SOC 2, NIST Cybersecurity Framework, customer commitments, and internal policies into practical technical controls.
  • Maintain evidence, support audits and customer security reviews, and help address identified control gaps.

Enable secure Data & AI operations

  • Partner with Data & AI leadership to implement technical controls supporting Greenbox’s data and AI governance requirements.
  • Support data discovery, classification, lineage, retention, DLP, access governance, and approved AI-service controls.
  • Help secure AI and agent-based workloads, including data boundaries, privileged actions, logging, monitoring, human approval, and incident-response requirements.

Drive cloud cost and operational efficiency

  • Own cloud budgets, alerts, tagging standards, forecasting inputs, and recurring optimization recommendations.
  • Evaluate Azure-native and third-party capabilities based on effectiveness, effort, maintenance, licensing cost, and architectural fit.


You’re a Strong Fit if You:

  • Demonstrate strong judgment and can make thoughtful, risk-based technical decisions independently.
  • Are naturally curious and enjoy digging into complex systems, identifying root causes, and continuously improving how technology operates.
  • Can balance security, reliability, compliance, cost, and business needs without losing sight of practical execution.
  • Communicate clearly with technical teams, business stakeholders, executives, auditors, vendors, and external partners.
  • Are organized and comfortable managing multiple priorities in a fast-moving growth environment.
  • Adapt well to working across functions and with distributed teams.
  • Bring a growth mindset and actively look for opportunities to automate, simplify, and improve existing processes.


What You’ve Done Before:

  • Seven or more years of hands-on cloud infrastructure or security engineering experience, including ownership of production Azure environments and demonstrated senior-level responsibility.
  • Strong experience across Azure subscriptions and management groups, networking, Microsoft Entra ID, RBAC, Azure Policy, monitoring, backup and recovery, security controls, and cost management.
  • Demonstrated infrastructure-as-code experience using Terraform, Bicep, ARM templates, or comparable tooling, including source control and automated deployment practices.
  • Practical experience with cloud security operations, vulnerability remediation, logging and detection, incident response, access governance, and disaster-recovery testing.
  • Working knowledge of Microsoft Purview or comparable data-governance capabilities, including classification, lineage, retention, DLP, and access controls.
  • Experience translating control requirements into technical designs, operating procedures, evidence, and measurable results.
  • Strong documentation experience, including runbooks, architecture diagrams, standards, risk statements, and executive-level updates.
  • Ability to coordinate effectively with internal teams, auditors, managed-service providers, and technology vendors.
  • Experience in financial services or another regulated environment using SOC 2, NIST Cybersecurity Framework, or similar frameworks is preferred.
  • Experience securing AI, machine-learning, large-language-model, or agent-based workloads in production is preferred.
  • Relevant Microsoft certifications such as Azure Security Engineer Associate, Cybersecurity Architect Expert, Security Operations Analyst Associate, or Azure Solutions Architect Expert are preferred.


Tools and Expertise You’ll Bring:

  • Microsoft Azure
  • Microsoft Entra ID, RBAC, Conditional Access, MFA, and Privileged Identity Management
  • Terraform, Bicep, ARM templates, or comparable infrastructure-as-code technologies
  • Azure Monitor and Log Analytics
  • Microsoft Defender for Cloud
  • Microsoft Sentinel or comparable SIEM platforms
  • Microsoft Purview or comparable data-governance tools
  • Azure DevOps pipelines
  • Azure Policy and cloud configuration-management practices
  • Backup, disaster-recovery, and environment-restoration technologies
  • Cloud networking, segmentation, firewalls, DNS security, and zero-trust architectures
  • Secrets, certificate, and key management, including Azure Key Vault
  • Cloud cost management and FinOps practices
  • Databricks platform security, Microsoft 365 security, and SaaS identity integrations where applicable


What to Expect from Our Interview Process

We believe in a respectful, efficient, and transparent hiring experience. Here’s what you can expect:

Step 1: Initial Phone Screen (30 minutes)
A brief conversation with a recruiter to learn more about your background, interests, and alignment with the role.

Step 2: Hiring Manager Interview (1 hour)
A deeper discussion about the role, your relevant experience, and how you’d contribute to the team.

Step 3: Role-Specific Assessment or Panel Interview (1 hour)
Depending on the role, this may include a take-home assignment, technical interview, or live case study with team members.

Step 4: Final Interview or Leadership Chat (1 hour)
A final conversation with senior leadership or cross-functional team members to ensure alignment with our mission and values.

Step 5: Offer & Background Check
If it’s a mutual fit, we’ll move forward with background check and present a competitive offer. We aim to complete this process within 2–3 weeks from your first conversation with us.


Benefits:

💸 Competitive Pay - We know your worth and we pay accordingly.

🌴 Flexible PTO - Work hard, rest well. Take the time you need to recharge.

🏡 Remote - Fully remote within the U.S., working Eastern Time hours to keep everyone aligned.

🩺 Full Benefits Package - Health, dental, vision

🧠 Smart, Supportive Teammates - Collaborate with sharp minds who are kind, driven and uphold our core values: Commitment, Communication, Teamwork, Service and Integrity!

Similar jobs

Apply for this job