GRAIL
Staff Cloud Security Engineer - #4824
Menlo Park, CA · Staff+ · Full-time
Sponsorship not specifiedDetected 26 days ago
AWSCloud PlatformsKubernetesCI/CDDevOpsMachine LearningData ScienceCybersecurityPenetration TestingDetection EngineeringIncident ResponseFirewallClinical TrialsFDA RegulatoryNGSMedical DevicesLeadershipCollaborationCISSP
About the role
- GRAIL is headquartered in the bay area of California, with locations in Washington, D.C., North Carolina, and the United Kingdom.
- It is supported by leading global investors and pharmaceutical, technology, and healthcare companies.
- You will provide guidance to other engineers while influencing cloud architecture, DevSecOps practices, and secure development decisions across the product and infrastructure lifecycle.
Responsibilities
- Lead the design, implementation, and continuous improvement of cloud security architectures across AWS environments, ensuring product security, and secure-by-design principles throughout the infrastructure and application lifecycle.
- Partner with Platform, and Cloud Engineering team to design, implement, and manage AWS-native security services including IAM, KMS, GuardDuty, Security Hub, Inspector, Macie, WAF, Shield, CloudTrail, Config, and CloudWatch for proactive threat detection and risk management.
- Manage and enhance continuous cloud security posture management (CSPM), container security, and runtime protection capabilities across AWS environments.
- Partner with Engineering, Platform, Infrastructure, Compliance, and Product teams to align cloud security strategies with regulatory, privacy, and industry cybersecurity requirements.
- This Staff-level role is expected to model GRAIL's core values and LEAD leadership attributes by leading through influence, collaborating across boundaries, driving results with integrity, and continuously improving how product security enables patient impact.
Requirements
- 8+ years of experience in product security, cybersecurity, Cloud Security, application security, or related technical security roles.
- Experience embedding security into modern software development environments, including CI/CD and DevSecOps practices.
- Experience supporting security incident response and conducting root cause analysis in production environments.
- Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related field, or equivalent practical experience.
Nice to have
- Knowledge of relevant standards and frameworks such as IEC 62304, ISO 14971, ISO 80001-2, NIST, and FDA pre‑ and post‑market cybersecurity guidance.
- Experience securing AI/ML systems, including mitigating risks such as data poisoning, model manipulation, and unauthorized access.
- Demonstrated experience delivering cybersecurity programs, including tabletop exercises and cross‑functional incident simulations.
- Strong ability to translate technical security risks into business and patient-impact considerations for senior stakeholders.
- Experience working with globally distributed teams or international stakeholders.
- Physical Demands and Working Environment
- Occasional travel may be required based on business needs.
- This range reflects a good-faith estimate of the range that the Company reasonably expects to pay for the position upon hire
Compensation
- The expected, full-time, annual base pay scale for this position is $169kK-$224K This role may be eligible for other forms of compensation, including an annual bonus and/or incentives, subject to the terms of the applicable plans and Compan
This listing is sourced directly from GRAIL's careers page and normalized into a canonical job model.