remote

Salary
$130,000–$180,000
Posted
Jul 23, 2026
Location
Last confirmed open
Jul 25, 2026

What this job asks for AI summary

A client-facing advisory role focused on designing, implementing, and operating security solutions across multi-cloud environments (AWS, Azure, GCP). Day-to-day work spans threat detection, identity and access management, cloud infrastructure security, DevSecOps automation, and compliance readiness against frameworks such as SOC 2 and PCI-DSS. Suited to an experienced cloud security engineer comfortable moving between hands-on technical delivery and strategic client conversations, with some mentoring of junior staff.

Senior level · 5+ years · Full-time

Must have (3)
AWS, GCP or AzureKubernetes or Dockervulnerability management
Nice to have (18)
Azure SentinelAWS GuardDutyGoogle Cloud LoggingAzure Entra IDGCP IAMAWS Security HubTerraform or Deployment ManagerPythonBashPowerShellCI/CDLLMsGitHub CopilotSOC 2ISO 27001PCI-DSSHIPAACISSP, Aws Certified Security Specialty, Google Cloud Professional Cloud Security Engineer or Az 500

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What gives you an edge
GCP13%

Rare in this occupation — lead with these, and say what you built with them.

What won't set you apart
vulnerability management55%Kubernetes53%Docker53%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095).

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (8)

No work location is specified in the posting. Riveron is a US-based consulting firm with multiple offices; the role is likely hybrid/office-based at one of their locations, but no city or metro is stated — CBSA left blank.

The title 'Cybersecurity Engineering Lead' carries no standard seniority level word, so the title states no level. The 5+ years requirement and scope (client-facing lead, mentoring juniors, multi-cloud ownership) support a Senior classification.

SOC classification is Medium confidence. The role blends hands-on security engineering (cloud infrastructure hardening, DevSecOps, IaC automation — closer to 15-1252) with security analysis, GRC, threat detection, and incident response (closer to 15-1212). The advisory/GRC framing and threat-detection emphasis tipped the primary classification to 15-1212, with 15-1252 as a genuine runner-up.

The three major cloud platforms (AWS, GCP, Azure) are listed together as a single hard gate ('hands-on experience across at least two major cloud providers') in the What You Have section. They are emitted as separate skills since all three are named and used independently throughout the role.

Certifications (CISSP, AWS Certified Security – Specialty, Google Cloud Professional Cloud Security Engineer, AZ-500) are explicitly marked 'preferred' in the posting.

Specific cloud-native tools (Azure Sentinel, GuardDuty, Terraform, Python, etc.) appear in the 'What You'll Do' responsibilities section rather than a hard-requirements block, so they are marked preferred.

No compensation range is disclosed in the posting.

Ignored 3 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): zero-trust architecture, Microsoft Defender for Cloud, Google Cloud Security Command Center.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗