Ford Pro · 7 hours ago
Application Security Cloud Engineer
Ford Pro is committed to building a world-class, secure cloud environment and is seeking a senior engineer to help design, build, and secure their new Zero Trust environment in Google Cloud Platform (GCP). This role involves partnering with various teams to embed security into applications and infrastructure, ensuring a proactive approach to security within a strategic program.
AutomotiveFleet ManagementSoftware
Responsibilities
Partner with Architecture, Developer Experience (DevX), and Site Reliability Engineering (SRE) teams to shape and implement our GCP Zero-Trust security architecture
Provide expert oversight and validation of security controls, acting as a critical second-line partner to ensure our cloud environment is fundamentally secure
Drive the operationalization of Google's Security Command Center Enterprise (SCCE), turning its powerful features into a proactive threat detection and compliance engine
Serve as the subject matter expert for securing containerized (Docker, Kubernetes) and serverless applications within GCP
Collaborate on best practices for the enforcement of security quality gates for Infrastructure as Code (IaC) and Policy as Code (PaC) implementations
Govern security controls within our CI/CD pipelines, overseeing and adjusting security gates to prevent vulnerabilities from reaching production
Mature and scale our application security tooling processes (Static and Dynamic Testing, Open-Source Software Scanning, secrets detection), translating raw findings into actionable risk intelligence for development teams
Develop and automate vulnerability management processes, using a risk-based approach to prioritize and drive remediation
Lead by influence, providing expert guidance on secure coding practices and modern security patterns to our engineering teams
Act as a key liaison for our bug bounty program, coordinating between vendors and internal teams to ensure swift resolution
Mentor and support our Security Advocate program, empowering them to elevate the security posture across the organization through awareness and training exercises
Collaborate effectively with cross-functional teams, including development, operations, compliance, and incident response
Qualification
Required
Bachelor's degree in computer science, information security, or a related technical field, or equivalent practical experience
5+ years of progressive experience in application security, cloud security, or a similar security engineering role
Demonstrable expertise in securing applications and infrastructure within Google Cloud Platform (GCP)
In-depth understanding of software development lifecycle (SDLC) principles and practices
Proven experience with vulnerability management, including scanning, analysis, prioritization, and remediation tracking
Strong knowledge of various security testing methodologies and tools
Proficiency in at least one scripting language (e.g., Python, Go, Bash) for automation and tool development
Experience with containerization (Docker, Kubernetes) and serverless technologies
Excellent communication, collaboration, and problem-solving skills
Preferred
Master's degree in a relevant technical field
Relevant industry certifications such as GCP Professional Cloud Security Engineer, CISSP, CCSP, CSSLP
Experience with Infrastructure as Code (IaC) security practices and tools (e.g., Terraform, Mondoo, Open Policy Agent)
Knowledge of common security frameworks and compliance standards (e.g., NIST, ISO 27001, SOC 2, GDPR)
Experience with security monitoring, logging, and alerting solutions in a cloud environment (e.g., GCP Security Command Center, Cloud Logging, Cloud Monitoring)
Benefits
Immediate medical, dental, vision and prescription drug coverage
Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
Vehicle discount program for employees and family members and management leases
Tuition assistance
Established and active employee resource groups
Paid time off for individual and team community service
A generous schedule of paid holidays, including the week between Christmas and New Year’s Day
Paid time off and the option to purchase additional vacation time.
Company
Ford Pro
Ford Pro is a productivity accelerator designed to drive the business forward, delivering solutions to commercial customers of all sizes.
Funding
Current Stage
Late StageRecent News
2025-10-04
2025-10-01
Company data provided by crunchbase