Principal Cloud Security Engineer
Lastpass
What this role requires
19 requirements, read out of the advert rather than guessed from the job title:
- AWS
- AWS security services
- IAM
- Config
- KMS
- Secrets Manager
- CloudWatch
- CloudTrail
- GuardDuty
- infrastructure as code
- AWS CDK
- CloudFormation
- Terraform
- GitLab
- GitLab CI
- Kubernetes
- AWS EKS
- Docker
- AWS ECS
Also mentioned, not required: TCP/IP, TLS, VPN, English. Worth having, but their absence is not what gets a CV filtered out.
See how often each of these is required across open security roles in Europe.
Free, no card. Tells you which of them your CV evidences and which it only implies.
Job description
About LastPass LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, LastPass blends strong security with everyday simplicity. From discovering unapproved AI and applications to reducing login friction and securing credentials across the business, LastPass delivers on its mission to give everyone seamless access to everything they need to work, move fast, and stay protected as their environments evolve.
Curious about our products? Visit our website and try it free!
We welcome new ideas, support your growth, and recognize your value, if this aligns with what you are looking for in your next career move, Join Us!
LastPass is looking for a Principal Cloud Security Engineer:
As a Principal Cloud Security Engineer at LastPass, you will partner with DevOps and CI/CD engineers and our Architects team to ensure security best practices are embedded across our cloud infrastructure. We are looking for an experienced security engineering leader with an ability to scale security and make the right trade-off decisions that enable us to offer secure, innovative solutions to customers.
About the team:
Read the full description (43 more sections)Show less
The Cloud Security team at LastPass is a collaborative group of talented cloud security engineers working in close partnership with our engineering, platform, and trust & security teams. We are on a mission to safeguard the privacy and security of our company and users' data, embedded directly in the heart of our product development.
If you are passionate about complex problem solving and motivated by scale, then this is the role for you!
Who will you work with?
You will work closely with DevOps and CI/CD engineers, Cloud Architects, and cross-functional engineering teams across LastPass. You will also collaborate with our Trust & Security and Platform teams, acting as a key embedded security partner throughout the product and infrastructure development process to drive secure-by-design outcomes at every stage.
What are some of the exciting challenges you will be working on?
Act as a strategic security leader by defining and driving cloud security principles, standards, and reference architectures across the organization
Use your knowledge of security architecture to help engineers build and securely operate products and services from the ground up
Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements
Perform proactive research to identify new threats and attack vectors
Partner with engineering teams to embed shift-left security practices throughout the software development lifecycle
Implement and manage cloud and Kubernetes security posture management tooling to continuously monitor and reduce risk across containerized workloads
What does it take to work at LastPass?
Proven experience working with AWS and AWS security services in a secure production environment, including IAM, Config, KMS, Secrets Manager, CloudWatch, CloudTrail, and GuardDuty
Proven experience working closely with engineering teams and supporting them on their path to shifting security left
Background with infrastructure as code (AWS CDK, CloudFormation, or Terraform), version control and CI tools such as GitLab and GitLab CI
Hands-on experience with Kubernetes (AWS EKS), containers (Docker, AWS ECS), K8s admission controllers and Supply Chain Security
Solid understanding of internet and computer network protocols, including TCP/IP, TLS, and VPN
Good written and verbal communication skills in English
Collaborative team player with a hands-on, can-do approach to problem solving
It's great, but not required :
AWS Certified Security – Specialty certification or similar.
General familiarity with AI tools and large language models (e.g., Claude by Anthropic, AWS Bedrock)
Why LastPass?
The leader in secure access
High-growth, collaborative environment with inclusive teams
Remote-first culture
Competitive compensation
Flexible Paid Time Off policies , including but not limited to: Quarterly Self-Care Days (4 extra paid days off annually) and Volunteer Days
Parental leave
Comprehensive health coverage , including dependents
Home office setup support
LastPass Families free account for up to 5 members
Continuous learning and development opportunities , including an annual learning stipend to invest in your growth
Peer-to-peer recognition through Motivosity
Employee Assistance Program for well-being support
Remote work stipend to support your home office needs
Short-Term or Remote-Centric Work Arrangements for added flexibility
Unlock your potential with us - your skills, experience, and unique perspective matter more than just checking the boxes. Apply today, and let's build the future together!
We’re building an inclusive community that reflects the people of all races, genders, sexual orientations, national origins, backgrounds, and perspectives who share our world.
For all US based jobs please review our Applicant Privacy Notice
For all EU based jobs please review our Candidate Privacy Notice
Please review our CCPA Notice
Find more English Speaking Jobs in United Kingdom on Arbeitnow
You can apply in a minute. Will it get read?
Applications are screened by software before they reach a person. See the score yours gets and the three things costing you the most — then this role, and the rest of the feed, ranked against what your CV actually says. Free, no card, about thirty seconds.
- 1
Drop in your CV
One PDF, about thirty seconds. No card, no forms to fill in by hand.
- 2
See what the filter sees
We read it the way an applicant tracking system does and score it — plus the three things costing you the most.
- 3
Get every role ranked
Each listing scored against what your CV actually says, with the missing skills named, updated as new roles arrive.
What's actually stopping you?
- I apply and hear nothing backStart with the ATS scan — see what a filter does to your CV before a human sees it.Start here →
- I can't tell which roles I'd getStart with the match scores — every listing here ranked against what your CV actually says.Start here →
- Just browsing for nowKeep looking. Nothing to sign up for.
- Your CV file is deleted after parsing — we keep the extracted skills, and you can delete those in one click
- Free forever, no card
- Listings refreshed every 6 hours