Demo

Cloud Security Engineer

Columbia University and Careers
York, NY Full Time
POSTED ON 12/19/2025
AVAILABLE BEFORE 2/19/2026
  • Job Type: Officer of Administration
  • Bargaining Unit:
  • Regular/Temporary: Regular
  • End Date if Temporary:
  • Hours Per Week: 35
  • Standard Work Schedule:
  • Building:
  • Salary Range: $140,0000 - $149,672
The salary of the finalist selected for this role will be set based on a variety of factors, including but not limited to departmental budgets, qualifications, experience, education, licenses, specialty, and training. The above hiring range represents the University's good faith and reasonable estimate of the range of possible compensation at the time of posting.

Position Summary

The Cloud Security Engineer will report to the Chief Information Security Officer.

This security engineer will conduct reviews of complex information systems, platforms, and processes in accordance with established regulations and organizational standards. This candidate will be the lead Information Security principal responsible for ensuring that cloud infrastructure and applications are deployed with the highest level of security safeguarding CUIMC’s vital cloud and mixed infrastructure environment.

They will also assist with IT security operational tasks, incident response, deployment of managed systems, and drive process improvements through the effective use of deployed systems, especially between Security Operations and Information Security Risk Assessment, Networking, IT Help Desk, IT Stakeholders, and other business process owners.

Responsibilities

  • ESSENTIAL FUNCTIONS

    • Coordinating and leading Cloud security analysis, investigations, and application deployments. 60%
    • Process improvement through the effective use of deployed systems MCAS, AWS Config, SEIM’s, DLP. 20%
    • Support and engage Information Security Operations engineers on projects and security initiatives. 10%
    • Additional duties as assigned. 10%
  • Document and define baseline configurations necessary to ensure that cloud applications are instantiated with appropriate security standards in place.
  • Propose adequate authentication protocols, processes and components to support secure cloud application access.
  • Support security design and architecture by identifying and communicating complex cloud application design principles to relevant stakeholders.
  • Perform in-depth reviews to identify security gaps and validate overall security posture of third-party cloud applications.
  • Evaluate and propose add-on components essential to address cloud security requirements for institutional and regulatory compliance.
  • Identify security requirements for adequate logging and SecOps monitoring of cloud tools to support event alerting and metrics delivery for security improvements.
  • Create/develop in-house security tools to support automated compliance checking of cloud app security environments.
  • Lead and support as necessary investigations of cloud related security incidents.
  • Deploy and manage secure Cloud working environments for ISO operations.
  • Perform other related duties and responsibilities as assigned/requested.

Minimum Qualifications

  • Bachelors Degree or equivalent in education and experience, plus four years of experience.

Preferred Qualifications

  • Strong foundational knowledge of GCP, AWS, and Azure security principles and components, including SaaS, PaaS, IaaS infrastructures.
  • Strong knowledge and operational understanding of cloud security components such as CASB, cloud configuration templates, cloud resource monitoring, cloud access and authorization (SAML, OATH etc.).
  • Considerable exposure to cloud security frameworks, including cloud container security and application containerization.
  • Proficiency in programming and/or scripting, with particular emphasis on cloud-based languages (Python, .NET, Node.JS, Golang, Ruby, etc.).
  • Demonstrated experience with the capabilities and APIs of multiple major cloud providers (AWS, Google, Azure)
  • Ability to evaluate cloud security risks and recommend appropriate security controls.
  • Demonstrated experience in securing enterprise systems with a mix of cloud and on-prem environments.
  • Strong Knowledge of both network and system-level vectors of cloud-based attacks.
  • Proficiency in determining the root cause of security issues and a solid understanding of exploits and vulnerabilities.
  • Familiarity with web application security vulnerabilities, such as XSS, SQLi, CSRFs.
  • Good understanding of Microsoft enterprise environments and integration to secure applications and cloud systems.
  • Extensive experience in applying appropriate security principles in a dynamic environment that prevents unauthorized access to the network or parts of the network.
  • Knowledge of cryptography as it relates to application and network security.
  • Ability to prepare both executive and detailed reports on risk findings and status. Ability to develop remediation plans and guide departments with remediation strategy. Strong service commitment, and verbal, writing, and reporting skills.
  • High level of integrity, and sound judgment concerning security and privacy.
  • Good written and verbal communication skills.
  • Ability to understand and work with healthcare professionals, educators, researchers, students, and administrative staff.
  • Ability to work independently with minimal supervision as well as be creative and innovative at conducting a high volume of risk analyses while reporting accurate and relevant risks to the appropriate constituents.
  • Strong background information security practices with significant experience in a complex, multiplatform, higher education or healthcare IT environment.

Other Requirements

  • Professional Cloud Security and Design training (CCSP, CCSK, PCSE).
  • Experience working in a HIPAA/HITECH/OMNIBUS-regulated environment. Functional knowledge of the HITRUST CSF based on practical working experiences and a functional knowledge of security standards such as HIPAA/HITECH, PCI-DSS, ISO 27001/2, NIST
  • Experience working in an academic medical center or hospital environment a plus.
  • Project planning or team lead experience.
  • GIAC Cloud certification (GCLD, GWEB, GPCS, GCSA, GCPN), any cloud platform certification (AWS, GCP, Google).

Equal Opportunity Employer / Disability / Veteran

Columbia University is committed to the hiring of qualified local residents.

Salary : $149,672 - $1,400,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cloud Security Engineer?

Sign up to receive alerts about other jobs on the Cloud Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Columbia University and Careers

  • Columbia University and Careers York, NY
  • Job Type: Officer of Administration Bargaining Unit: Regular/Temporary: Regular End Date if Temporary: Hours Per Week: 35 Standard Work Schedule: Building:... more
  • 3 Days Ago

  • Columbia University and Careers Manhattanville, NY
  • Job Type: Support Staff - Non-Union Regular/Temporary: Regular Hours Per Week: 35 Building: Jerome L. Greene Science Center Salary Range: $42,600 - $45,000... more
  • 3 Days Ago

  • Columbia University and Careers York, NY
  • Job Type: Short Term Casual Bargaining Unit: Regular/Temporary: Temporary End Date if Temporary: Hours Per Week: 10 Standard Work Schedule: Building: Salar... more
  • 3 Days Ago

  • Columbia University and Careers Manhattanville, NY
  • Job Type: Officer of Administration Regular/Temporary: Regular Hours Per Week: 35 Salary Range: $66,300 - $73,000 The salary of the finalist selected for t... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Cloud Security Engineer jobs in the York, NY area that may be a better fit.

  • Meta York, NY
  • We are seeking a Security Engineer who specializes in designing and implementing new systems and tools to enhance the security of Meta’s products and infra... more
  • 28 Days Ago

  • S&P Consultants York, NY
  • Job Details About the Role: Grade Level (for internal use): 11 S&P Global Corporate Segment: S&P Global Energy The Role: Cloud & Application Security Engin... more
  • 2 Months Ago

AI Assistant is available now!

Feel free to start your new journey!