Cloud Security Engineer II
Quick Summary
Design, deploy, and enforce scalable cloud security controls, IAM least-privilege policies, and encryption standards across multi-account AWS environments.
The Tripadvisor Group connects people to experiences worth sharing, and aims to be the world’s most trusted source for travel and experiences. We leverage our brands, technology, and capabilities to connect our global audience with partners through rich content, travel guidance, and two-sided marketplaces for experiences, accommodations, restaurants, and other travel categories. The subsidiaries of Tripadvisor, Inc. (Nasdaq: TRIP), include a portfolio of travel brands and businesses, including Tripadvisor, Viator, and TheFork
We are seeking a Cloud Security Engineer II to build, automate, and scale security guardrails across our cloud environment (primary focus on AWS, with secondary exposure to Azure and GCP). In this mid-level role, you will move beyond basic alert monitoring to actively design security controls, embed security into CI/CD pipelines, and partner with DevOps and engineering teams to ensure secure-by-default infrastructure.
Responsibilities
~1 min read- →Cloud Infrastructure Guardrails: Design, deploy, and enforce scalable cloud security controls, IAM least-privilege policies, and encryption standards across multi-account AWS environments.
- →DevSecOps Integration: Embed automated security tools (IaC scanning, SAST, secret detection) directly into CI/CD pipelines to catch vulnerabilities pre-deployment.
- →Security Automation: Develop automated detection and remediation workflows using Python, Bash, or Go alongside IaC tools (Terraform, CloudFormation).
- →Container & Workload Security: Implement and maintain security practices for containerized workloads (Docker, Kubernetes/EKS) and serverless architectures.
- →Posture Management & Triage: Manage CSPM/CNAPP platforms, investigate high-priority alerts, and reduce noise through automated risk scoring and alert tuning.
- →Threat Modeling & Reviews: Conduct architectural security reviews and threat modeling for new cloud features, infrastructure changes, and third-party integrations.
- →Incident Escalation: Act as a secondary point of contact for cloud security incidents, assisting with forensic collection, root-cause analysis, and post-mortem actions.
- Experience: 3–5 years of dedicated hands-on experience in cloud security, DevSecOps, or infrastructure security engineering.
- Cloud Expertise: Deep working knowledge of core AWS security services (IAM, GuardDuty, Security Hub, KMS, CloudTrail, Organizations).
- IaC & Code: Strong proficiency in Infrastructure as Code (Terraform preferred) and at least one scripting language (Python, Go, or Bash).
- Container & Pipeline Security: Practical experience securing Kubernetes/EKS and configuring CI/CD security scanners (e.g., GitHub Actions, GitLab CI).
- Networking & Identity: Solid understanding of cloud networking (VPCs, Transit Gateways, WAF, DNS) and identity management (OAuth2, OIDC, SAML).
- Compliance & Frameworks: Familiarity with mapping cloud controls to industry frameworks (CIS Benchmarks, NIST CSF, SOC 2).
- Certifications (Preferred): AWS Certified Security – Specialty, Certified Kubernetes Security Specialist (CKS), CCSP, or equivalent.
- Experience in travel, experiences, or marketplace businesses.
What We Offer
~1 min readWe exist to create value for our customer, the traveler. We enable our suppliers and partners to unlock this value. Their collective behaviors and insights are what drives us.
We act fast, experiment, learn from failure, iterate, and improve the solutions of tomorrow across every aspect of our business. Our execution is agile, data-driven, prioritised, and built to scale. We assume no problem is someone else’s problem and finish what can be done today, knowing tomorrow will bring fresh challenges.
The best outcomes are driven by empathic, humble, and diverse subject matter experts working toward shared goals. We collaborate relentlessly, challenge assumptions, give actionable feedback, and set each other up for success through empowered teams with a clear charter. We transparently take ownership of our growth, individually and as a team. We celebrate the quality of our effort, our learnings, and our collective achievements.
The salary range for this role is $135,000 -$155,000. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the posted range. An employee’s pay position within the wage range will be based on several factors including, but limited to, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs. This compensation range may also be modified in the future.
We strive to create an accessible and inclusive experience for all candidates. If you need a reasonable accommodation during the application or the recruiting process, please make sure to reach out to your individual recruiter or our team at AccessibleRecruiting@tripadvisor.com.
If you have any additional questions about careers at Tripadvisor you can email us at recruitment@tripadvisor.com. We have all the answers!
Location & Eligibility
Listing Details
- Posted
- September 8, 2026
- First seen
- September 8, 2026
- Last seen
- September 8, 2026
Posting Health
- Days active
- 0
- Repost count
- 1
- Trust Level
- 61%
- Scored at
- September 8, 2026
Signal breakdown

Tripadvisor is the world's largest travel guidance platform, offering reviews, booking tools, and a wide variety of travel choices to millions of users globally.
View company profilePlease let Tripadvisor know you found this job on Jobera.
3 other jobs at Tripadvisor
View all →Explore open roles at Tripadvisor.
Similar Security Engineer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.