Role Overview
Paxos is hiring a Engineering Manager, Cloud Security. This is a full-time role in CA. Part of Paxos's Devops hiring. The posted range is $241k to $276k. Full responsibilities, required qualifications, and the apply link are listed in the description below.
Resume Keywords to Include
Make sure these keywords appear in your resume to improve ATS scoring
Sign up free to auto-tailor your resume with all these keywords and get a higher ATS score
Job Description
About Paxos
Today’s financial infrastructure is archaic, expensive, inefficient and risky — supporting a system that leaves out more people than it lets in. So we’re rebuilding it.
We’re on a mission to open the world’s financial system to everyone by enabling the instant movement of any asset, any time, in a trustworthy way. For over a decade, we’ve built blockchain infrastructure that tokenizes, custodies, trades and settles assets for the world’s leading financial institutions, like Mastercard, Visa, Robinhood, and PayPal.
About the team
The Cloud Security team is responsible for keeping Paxos’ cloud-native infrastructure secure, resilient, and compliant as we scale. We partner closely with Product Engineering, Platform, SRE, and Compliance to design and operate secure-by-default AWS and Kubernetes platforms that power mission-critical payments, stablecoin, and brokerage products. The team owns core security capabilities like identity and access management, network segmentation, secrets management, logging and monitoring, and incident response across our multi-account, multi-cluster environment.
About the role
As the Engineering Manager, Cloud Security at Paxos, you will lead a team of security engineers responsible for securing our AWS and Kubernetes infrastructure end-to-end. You’ll combine deep hands-on security engineering experience with strong people leadership to design Zero Trust architectures, harden critical services, and build automated guardrails that enable product teams to move fast safely. You will set the technical direction for cloud security, lead high-pressure incident response when needed, and grow a high-performing team that treats “security as an enabler,” not a bottleneck.
What you’ll do
- Lead, coach, and develop a team of cloud security engineers, including setting clear goals, providing ongoing feedback, and running performance reviews.
- Own the security posture of our AWS and Kubernetes platforms, including multi-account AWS Organizations (SCPs, IAM, VPCs) and multi-cluster Kubernetes environments.
- Drive the design and implementation of Zero Trust architectures, including identity-based perimeters, mTLS, network segmentation, and least-privilege access controls.
- Partner with Platform, SRE, and Product Engineering teams to embed security into infrastructure roadmaps, CI/CD pipelines, and service architectures.
- Establish and scale infrastructure as code and policy as code practices (e.g., Terraform/CDK, OPA/Kyverno) to build automated guardrails and reduce manual configuration.
- Act as Incident Commander for high-severity security incidents and vulnerabilities (e.g., Log4j-style events), coordinating technical response, stakeholder communication, and post-incident reviews.
- Own the security engineering roadmap for cloud and container security, balancing short-term risk reduction with long-term strategic investments.
- Collaborate with Compliance, Risk, and Legal to maintain and improve our security posture relative to frameworks like SOC2 and ISO, and to support customer and regulator inquiries.
- Partner with leadership on headcount planning, hiring, and organizational design to ensure the Cloud Security team scales with the business.
- Champion a culture of security across Paxos through education, documentation, and close collaboration, helping teams ship secure systems quickly and confidently.
About you
- 8+ years of engineering experience (software, infrastructure, or security), including time as an individual contributor security engineer working on cloud or application security.
- At least 2–3 years of experience as an engineering manager, leading and developing security or infrastructure teams.
- Proven experience securing production AWS environments at scale, including AWS Organizations, IAM, SCPs, VPC design, Transit Gateways, WAFs, and logging/monitoring.
- Hands-on experience securing multi-cluster Kubernetes environments (e.g., network policies, admission controllers, service mesh, secrets management, runtime hardening).
- Strong fluency with Infrastructure as Code (Terraform or CDK); you view infrastructure as software and are comfortable driving code reviews, testing, and automation for infra changes.
- Deep understanding of security architecture concepts, including Zero Trust, mTLS, identity-based perimeters, least privilege, and cloud hardening best practices.
- Demonstrated experience leading incident response as an Incident Commander for major vulnerabilities or breaches, including coordinating cross-functional teams under pressure.
- Proficiency in headcount planning, performance reviews, and mentorship, with a clear and thoughtful leadership philosophy you can articulate with examples.
- Excellent communication skills, with the ability to explain complex security risks and trade-offs to both deeply technical engineers and non-technical stakeholders.
Important Notice for Paxos Applicants
We’ve become aware of fraudulent accounts posting as Paxos recruiters on LinkedIn and other platforms. These scammers attempt to deceive applicants into paying for job opportunities or providing personal financial information.
To verify a legitimate Paxos recruiter:
- We only use @paxos.com email addresses
- We never ask for payment or financial details to apply, interview, or work here
- For technical roles, we do not perform a coding interview without prior screening by our engineering team
Thanks for your interest in Paxos!
Compensation Range: $241,000 - $275,925
Frequently Asked Questions
How do I apply for the Engineering Manager, Cloud Security position at Paxos?
Use the Apply button above to submit your application directly to Paxos. Most applications take less than 5 minutes if your resume and contact details are ready, and you'll be routed to the employer's official application system to finish.
Where is the Engineering Manager, Cloud Security position at Paxos located?
This position is based in CA. Paxos has not indicated remote or hybrid options for this role, so candidates should plan for on-site work.
How much does the Engineering Manager, Cloud Security role at Paxos pay?
Paxos has posted a compensation range of $241k to $276k for this position. Final offers typically vary based on candidate experience, location, and internal salary bands.
When was the Engineering Manager, Cloud Security role at Paxos posted?
This role was posted on April 2, 2026 (67 days ago). It's still listed as actively hiring; we re-confirm openings against the source system multiple times per day and remove closed roles.
AI-powered job search
Get every job scored to your resume
Upload your resume and get jobs ranked, your resume tailored, and employee contacts found automatically.
Get Started FreeNo credit card to start