At a Glance
- Tasks: Implement and maintain security best practices across our cloud infrastructure.
- Company: Join LastPass, a leading password manager trusted by millions worldwide.
- Benefits: Remote-first culture, competitive pay, flexible time off, and health coverage.
- Other info: Enjoy continuous learning opportunities and a supportive work environment.
- Why this job: Make a real impact on security while collaborating with talented teams.
- Qualifications: Experience with AWS, security architecture, and collaborative problem-solving skills.
The predicted salary is between 70000 - 90000 € per year.
LastPass delivers Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials straight from the browser. Trusted by more than 100,000 businesses and millions of users worldwide, LastPass blends strong security with everyday simplicity. From discovering unapproved AI and applications to reducing login friction and securing credentials across the business, LastPass helps teams and individuals stay productive, minimise risk, and remain prepared as their environments evolve.
LastPass is looking for a Staff Cloud Security Engineer: In this role, you will collaborate closely with our DevOps, CI/CD engineers, and Architecture team to implement and maintain security best practices across our infrastructure.
About the Team: The Product Security team at LastPass is seeking a Staff Cloud Security Engineer to join us in safeguarding the privacy and security of our company and users’ data. We are a team of skilled application and cloud security engineers working in close partnership with our engineering, platform, and trust & security teams. If you are passionate about complex problem solving and motivated by scale, then this is the role for you!
What are some of the exciting challenges you will be working on?
- Leverage your expertise in security architecture to help engineers build and securely operate products and services from the ground up
- Assess, design, and implement security processes and controls to meet security, compliance, and audit requirements
- Conduct proactive research to identify emerging threats and attack vectors
- Collaborate within a highly agile product security team and across other cross-functional teams
What does it take to work at LastPass?
- Proven experience working with AWS
- Proven experience collaborating closely with engineering teams and supporting their journey toward “shifting security left”
- Hands-on experience with Infrastructure as Code (AWS CDK, CloudFormation, or Terraform)
- Working knowledge of AWS security services and features to maintain a secure production environment (e.g., AWS IAM, Config, KMS, Secrets Manager, CloudWatch, CloudTrail, GuardDuty)
- Experience with version control, build, and bug tracking systems (GitLab, GitLab CI, and Jira)
- Strong understanding of internet and computer networks (TCP/IP, TLS, VPN, etc.)
- Hands-on experience with Kubernetes and securing Kubernetes workloads on AWS EKS
- Experience securing containerized workloads (Docker)
- Collaborative team player with a hands-on, can-do attitude
- Fluency in English with excellent written and verbal communication skills
It's great, but not required:
- AWS Certified Security – Specialty certification or an equivalent credential
- Experience with GitOps, CSPM, KSPM, Kubernetes admission control, and supply chain security
Why LastPass?
- Market-leading password manager
- High-growth, collaborative environment with inclusive teams
- Remote-first culture
- Competitive compensation
- Flexible Paid Time Off policies, including but not limited to: Quarterly Self-Care Days (4 extra paid days off annually) and Volunteer Days
- Parental leave
- Comprehensive health coverage, including dependents
- Home office setup support
- LastPass Families free account for up to 5 members
- Continuous learning and development opportunities, including an annual learning stipend to invest in your growth
- Peer-to-peer recognition through Motivosity
- Employee Assistance Program for well-being support
- Remote work stipend to support your home office needs
- Short-Term or Remote-Centric Work Arrangements for added flexibility
Unlock your potential with us - your skills, experience, and unique perspective matter more than just checking the boxes. Apply today, and let's build the future together! We’re building an inclusive community that reflects the people of all races, genders, sexual orientations, national origins, backgrounds, and perspectives who share our world.
Staff Cloud Security Engineer employer: LastPass
LastPass is an exceptional employer that fosters a high-growth, collaborative environment where innovation thrives. With a remote-first culture, employees enjoy flexible paid time off, comprehensive health coverage, and continuous learning opportunities, all while being part of an inclusive community that values diverse perspectives. Join us to unlock your potential and contribute to safeguarding the privacy and security of millions worldwide.
StudySmarter Expert Advice🤫
We think this is how you could land Staff Cloud Security Engineer
✨Tip Number 1
Network like a pro! Reach out to folks in your industry on LinkedIn or at meetups. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repo showcasing your projects and contributions. This gives potential employers a taste of what you can do, especially in cloud security.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to cloud security. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are genuinely interested in joining us!
We think you need these skills to ace Staff Cloud Security Engineer
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter for the Staff Cloud Security Engineer role. Highlight your experience with AWS, security architecture, and collaboration with engineering teams. We want to see how your skills align with what we do at LastPass!
Showcase Your Skills:Don’t just list your qualifications; demonstrate them! Use specific examples from your past work that showcase your hands-on experience with Infrastructure as Code and securing cloud environments. This helps us understand how you can contribute to our team.
Be Clear and Concise:When writing your application, keep it clear and to the point. Avoid jargon unless it's relevant to the role. We appreciate straightforward communication, so make sure your passion for security shines through without unnecessary fluff!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, you’ll get to explore more about LastPass and what we stand for!
How to prepare for a job interview at LastPass
✨Know Your Cloud Security Basics
Make sure you brush up on your knowledge of AWS security services and features. Be ready to discuss how you've implemented security best practices in previous roles, especially with tools like IAM, KMS, and GuardDuty.
✨Showcase Your Collaboration Skills
Since this role involves working closely with DevOps and CI/CD teams, prepare examples of how you've successfully collaborated with engineering teams in the past. Highlight any experiences where you helped 'shift security left' in the development process.
✨Demonstrate Problem-Solving Abilities
Be prepared to tackle hypothetical scenarios related to emerging threats or attack vectors. Think through your approach to assessing and designing security processes, and be ready to share your thought process during the interview.
✨Familiarise Yourself with Infrastructure as Code
Since hands-on experience with Infrastructure as Code is crucial, make sure you can discuss your familiarity with tools like Terraform or AWS CDK. Share specific projects where you've used these tools to enhance security in cloud environments.