FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Engineer – Cloud Security, AWS
Xcel Energy. Build and mature the AWS cloud security program with clear ownership, processes, and workflows .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in AWS cloud security, including risk identification, preventative controls, and automation integration. Proficient in communicating technical risks to stakeholders and implementing security best practices across cloud environments.
Highest-signal resume keywords
AWS Cloud Security Program DevelopmentAWS Native Security Tools (Inspector, Security Hub)DevSecOps Principles and CI/CD Pipeline IntegrationRisk Identification and CommunicationAWS Certified Security – Specialty
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
AWS IAMCloud Security Risk AnalysisPreventative Security ControlsAPIs and Scripting for AutomationWorkload Security Posture ManagementNetwork Configuration SecurityLogging and Monitoring SetupCloud Configuration ManagementData Integration and Workflow ExecutionComplex Technical Problem-Solving
Soft Skills
Clear Communication of Technical RisksIndependent Program DevelopmentCollaboration with Cross-Functional Teams
Tools & Technologies
AWS GovCloudSAP Cloud SecurityCloud Platform IntegrationSecurity Data Sources
Certifications & Qualifications
AWS Certified Security – SpecialtyAWS Certified Solutions Architect – ProfessionalAWS Certified DevOps Engineer – Professional
Industry Keywords
Cloud SecurityDevSecOpsCloud ArchitectureSecurity PostureRisk Management
Tech Stack
Tools & technologiesAWSAzureCloud
About the role
Key responsibilities & impact- Build and mature the AWS cloud security program with clear ownership, processes, and workflows
- Identify, prioritize, and communicate cloud security risk across environments and stakeholders
- Implement preventative controls and guardrails to reduce risk before deployment
- Leverage automation and integration to reduce manual effort and improve consistency
- Support remediation by driving findings to appropriate owners and tracking outcomes
- Serve as the primary cloud security engineer for AWS commercial, GovCloud, development, and test accounts
- Use AWS native security capabilities such as Inspector and Security Hub to identify and analyze risk
- Maintain visibility across IAM, network configuration, logging, monitoring, and workload security posture
- Identify overly permissive access, unused accounts, misconfigurations, and exposure risks
- Develop and implement guardrails, policies, and controls to prevent insecure configurations and reduce attack surface
- Promote hardened images, containers, and standardized builds to reduce deployment risk
- Integrate cloud security findings into existing workflows and coordinate remediation with responsible teams
- Collaborate with Cloud Platform, SAP, Enterprise Architecture, Application Security, and other teams
- Support DevSecOps practices, including CI/CD pipeline integration, gates, and automation
- Support SAP cloud security needs and maintain awareness of SAP-specific AWS risks
- Use APIs, scripting, and integration to automate data collection, analysis, and workflow execution
- Analyze cloud risk in context and communicate actionable recommendations to stakeholders
- Support logging and monitoring setup and integration while deferring operational ownership to SOC/IR teams
- Report to the Manager, Vulnerability Management
- Initial focus on AWS commercial and GovCloud environments, with planned expansion to Azure
Requirements
What you’ll need- Minimum 5 years of experience in information security
- Strong hands-on experience with AWS cloud environments and security concepts
- Strong understanding of AWS IAM, networking, logging, monitoring, and workload security
- Experience using AWS native security tools such as Inspector, Security Hub, or equivalent
- Strong understanding of DevSecOps principles, CI/CD pipelines, and application security fundamentals
- Basic understanding of SAP environments in cloud-hosted architectures
- Experience identifying and communicating risk related to cloud configurations and architecture
- Strong analytical and complex technical problem-solving skills
- Ability to communicate technical risk clearly to non-technical stakeholders
- Experience with APIs, scripting, or automation for data integration and workflow execution
- Ability to operate independently and build a program with limited oversight
- AWS Certified Security – Specialty required
- Must be located within Xcel Energy territory and reasonably close to an Xcel Energy facility
- Must interview in person in Minneapolis, MN or Denver, CO
- Preferred: Experience across multiple cloud environments, including AWS multi-account and GovCloud architectures
- Preferred: Experience supporting Azure cloud environments
- Preferred: Experience implementing preventative security controls such as guardrails, policy enforcement, or pipeline gating
- Preferred: Experience improving data quality and visibility across multiple cloud and security data sources
- Preferred: Experience working with enterprise cloud platform, networking, or architecture teams
- AWS Certified Solutions Architect – Professional or AWS Certified DevOps Engineer – Professional preferred
Benefits
Comp & perks- Annual Incentive Program
- Medical/Pharmacy Plan
- Dental
- Vision
- Life Insurance
- Dependent Care Reimbursement Account
- Health Care Reimbursement Account
- Health Savings Account (HSA) (if enrolled in eligible health plan)
- Limited-Purpose FSA (if enrolled in eligible health plan and HSA)
- Transportation Reimbursement Account
- Short-term disability (STD)
- Long-term disability (LTD)
- Employee Assistance Program (EAP)
- Fitness Center Reimbursement (if enrolled in eligible health plan)
- Tuition reimbursement
- Transit programs
- Employee recognition program
- Pension
- 401(k) plan
- Paid time off (PTO)
- Holidays
- Volunteer Paid Time Off (VPTO)
- Parental Leave
- Hybrid work model with three days per week in the office