Sr. Engineer, Cloud Security CNAPP
Bring more to life.
At Danaher, our work saves lives. And each of us plays a part. Fueled by our culture of continuous improvement, we turn ideas into impact – innovating at the speed of life.
Our 60,000+ associates work across the globe at more than 15 unique businesses within life sciences, diagnostics, and biotechnology.
Are you ready to accelerate your potential and make a real difference? At Danaher, you can build an incredible career at a leading science and technology company, where we’re committed to hiring and developing from within. You’ll thrive in a culture of belonging where you and your unique viewpoint matter.
Learn about the Danaher Business System which makes everything possible.
The Sr. Engineer, Cloud Security CNAPP is responsible for securing and managing cloud security platforms across multi-cloud environments by identifying risks, implementing automated security controls, and ensuring the protection of cloud infrastructure, applications, containers, and identities. It partners closely with DevOps and Platform Engineering teams to embed security into cloud deployment processes, investigate security findings, drive remediation efforts, and improve the organization's overall cloud security posture.
This position reports to the Director, Global Cloud Security and is part of the Information and Cyber Security organization located in Canada and will be fully remote.
In this role, you will have the opportunity to:
- Engineer, deploy, and maintain Cloud-Native Application Protection Platform (CNAPP) capabilities across AWS, Azure, GCP, OCI, and Alibaba environments, including CSPM, CWPP, CIEM, Kubernetes Security, Container Security, IaC Security, and Cloud Detection & Response solutions.
- Identify, assess, and drive remediation of cloud misconfigurations, excessive permissions, vulnerabilities, and other security risks while providing technical guidance on secure cloud architecture and cloud-native security best practices.
- Design, develop, and implement automated security controls, policies, workflows, integrations, and infrastructure-as-code solutions to strengthen cloud security and operational efficiency.
- Partner with DevOps, Platform Engineering, and other stakeholders to embed security controls and best practices into CI/CD pipelines, cloud deployment processes, and cloud-native platforms.
- Create and maintain operational dashboards, reporting, and security metrics to measure cloud security posture, risk reduction, remediation effectiveness, and support the investigation and resolution of cloud security findings.
The essential requirements of the job include:
- 5+ years of experience in Cloud Security, Security Engineering, DevSecOps, Infrastructure Engineering, Cybersecurity, or related disciplines, with demonstrated expertise securing enterprise cloud environments.
- Hands-on experience with leading CNAPP platforms such as Wiz, Prisma Cloud, Microsoft Defender for Cloud, Cortex Cloud, CrowdStrike Falcon Cloud Security, Upwind, or comparable cloud security solutions.
- Strong technical knowledge of public cloud platforms and cloud-native technologies, including AWS, Azure, and/or GCP; networking, IAM, compute, storage, managed services; Kubernetes, containers, serverless technologies, and cloud-native architectures.
- Experience implementing security and automation through infrastructure-as-code and DevSecOps practices, including Terraform, CloudFormation, ARM/Bicep, or similar tools, and integrating security controls into CI/CD platforms such as GitHub, Azure DevOps, GitLab, or Jenkins.
- Proficiency in scripting and automation, leveraging languages such as Python, PowerShell, Bash, or similar technologies to develop automated security controls, workflows, and operational capabilities.
Preferred skills and experience:
-
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience), with experience supporting cloud security programs within large enterprise environments.
-
Industry-recognized cloud and security certifications preferred, including CISSP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer, CKA, CKS, or similar credentials.
-
Knowledge of cloud security, compliance, and operational security practices, including experience with security operations, threat detection, vulnerability management, incident response, and compliance frameworks such as NIST, CIS Controls, ISO 27001, PCI-DSS, and SOC 2.
Danaher offers a broad array of comprehensive, competitive benefit programs that add value to our lives. Whether it’s a health care program or paid time off, our programs contribute to life beyond the job. Check out our benefits at Danaher Benefits Info.
At Danaher, we believe in designing a better, more sustainable workforce. We recognize the benefits of flexible, remote working arrangements for eligible roles and are committed to providing enriching careers, no matter the work arrangement. This position is eligible for a remote work arrangement in which you can work remotely from your home. Additional information about this remote work arrangement will be provided by your interview team. Explore the flexibility and challenge that working for Danaher can provide.
Join our winning team today. Together, we’ll accelerate the real-life impact of tomorrow’s science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.
For more information, visit www.danaher.com.
Danaher Corporation and all Danaher Companies are committed to equal opportunity regardless of race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity, or other characteristics protected by law.
Required Skills
Required Languages
🇬🇧 English