1,008,666open jobs
59,992companies
167,270added this week
Browse all
Salary
$130k – $169k per year
Location
In office (Los Angeles)
Seniority
Senior · 5+ years exp

Confirmed on the employer's own hiring board on Oct 1, 2026. First seen by Alion on May 28, 2026. Shein scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Shein is a global online fashion retailer built on an on-demand supply chain and heavy data-driven merchandising. Its systems turn design signals into small production runs within days. The company is headquartered in Singapore.

About SHEIN  

SHEIN is a global online fashion and lifestyle retailer, offering SHEIN branded apparel and products from a global network of vendors, all at affordable prices. Headquartered in Singapore, with more than 15,000 employees operating from offices around the world, SHEIN is committed to making the beauty of fashion accessible to all, promoting its industry-leading, on-demand production methodology, for a smarter, future-ready industry. 

Position Summary  

We're hiring a Senior Cloud Security Engineer to own and mature Cloud Security runtime protection across our container and Kubernetes environments across our global, multi-cloud footprint. This is an engineering role for someone with deep, practical experience in cloud-native security infrastructure, plus hands-on familiarity with deploying and operating security tooling in containerized environments. You'll work closely with infrastructure, platform, and security teams across regions to design and implement controls that are effective, durable, and usable in production. We're looking for someone who can go beyond configuration and checklists: a hands-on engineer who can architect systems, automate processes, troubleshoot failures, and make strong design decisions in complex multi-cloud environments.

We operate at meaningful scale: customers in 150+ countries, footprint across multi-cloud providers, and engineering teams shipping continuously. We've already made significant investments in our security foundations and are now focused on the next stage of maturity for Cloud container and workload security. In this role, your primary focus will be cloud security posture, container and Kubernetes security: runtime threat detection, admission control, image integrity, secrets management, and the policy-as-code frameworks needed to run these systems well at scale.

You'll also drive cross-border cloud security alignment, partnering with global-based infrastructure teams on shared architecture decisions across the multi-cloud tenants. This is a greenfield engineering role - you'll be the cloud security engineer on the global team. This is a strong fit for someone who wants to combine hands-on engineering, practical architecture judgment, and cross-functional influence in a role with real scope and ownership.

  Job Responsibilities  

  • Own and mature cloud security posture, container and Kubernetes security across our global cloud environments.

  • Define and improve standards, guardrails, and reference patterns for CSPM, container image security, runtime integrity enforcement, and admission control.

  • Tune and operate policy-as-code frameworks (Kyverno, OPA/Rego) to enforce security baselines across K8s clusters at scale.

  • Deploy and manage containerized security tooling - NTA sensors, NDR, and runtime threat detection - across global data centers.

  • Design and implement Kubernetes hardening: RBAC, network policies, pod security standards, and secrets management.

  • Partner with engineering and infrastructure teams early in the design process to help implement secure, practical container platform architectures.

  • Drive cross-border cloud security alignment with global-based teams on shared architecture decisions spanning Azure, AWS, GCP, etc.

  • Integrate security telemetry from OT network devices and containerized workloads into centralized SOC platforms.

  • Utilize AI to build automation and operational tooling to improve reliability, visibility, and container lifecycle security.

  • Contribute to security architecture reviews and design decisions for cloud security infrastructure, container platforms, and CI/CD pipelines.

  • Troubleshoot runtime security, container and K8s security production issues, perform root cause analysis, and drive durable remediation.

  • Develop incident response runbooks for container/K8s-specific attack patterns.

  Job Requirements  

  • 5+ years of security engineering experience, with 3+ years of meaningful hands-on work in cloud security, container/Kubernetes security or closely related cloud-native security domains.

  • Strong practical experience securing production K8s clusters (EKS, AKS, GKE, or self-managed), including: pod security standards, network policy design, RBAC architecture, admission control, and secrets management.

  • Endpoint XDR or equivalent Host-based Intrusion Detection System (HIDS) experience.

  • Built or operated container runtime security tooling (Falco, Sysdig, Aqua, Prisma Cloud Compute, or equivalent) in production environments.

  • Experience writing admission controllers, OPA/Gatekeeper policies, Kyverno policies, or equivalent policy-as-code for container environments.

  • Familiarity with open-source cloud-native security projects (Falco, OPA, Trivy, kube-bench, Cilium, or similar) - we value engineers who understand how tools work under the hood, not just how to configure them.

  • AWS/Azure cloud security experience and comfort working across multi-cloud environments.

  • Demonstrated ability to coordinate technical decisions across international, cross-time-zone teams, including teams where Mandarin is the primary working language - via direct bilingual fluency or a track record of effective cross-border technical partnership.

  • Self-directed execution - you identify gaps, propose solutions, and work collaboratively across departments to ship them.

  • Strong communication skills and the ability to collaborate effectively across teams, functions, and time zones.

Nice to Have  

  • Experience designing Cloud Security Posture Management, K8s security architecture from scratch for multi-region deployments.

  • Open-source maintainer, committer, or significant contributor to cloud-native security projects (CNCF ecosystem preferred).

  • Experience with CI/CD pipeline security integration: container image scanning, image signing, SBOM generation, and supply chain verification.

  • Palo Alto Cortex XDR or equivalent experience.

  • Experience deploying containerized security sensors, NTA, or NDR in production K8s - running security tooling IN containers, not just securing containers.

  • Experience with CNAPP platforms (Wiz, Lacework, Orca) - understanding cloud posture tooling in practice.

  • AI/ML workload security considerations (model serving infrastructure, GPU cluster hardening).

  • CKS (Certified Kubernetes Security Specialist) or equivalent certification.

Benefits and Perks  

  • Bonus and RSU eligible
  • Healthcare (medical, dental, vision, prescription drugs) 
  • Health Savings Account with Employer Funding 
  • Flexible Spending Accounts (Healthcare and Dependent care) 
  • Company-Paid Basic Life/AD&D insurance 
  • Company-Paid Short-Term and Long-Term Disability 
  • Voluntary Benefit Offerings (Voluntary Life/AD&D, Hospital Indemnity, Critical Illness, and Accident) 
  • Employee Assistance Program 
  • Business Travel Accident Insurance 
  • 401(k) Savings Plan with discretionary company match and access to a financial advisor  
  • Vacation, paid holidays, floating holiday and sick days   
  • Employee discounts 
  • Free weekly catered lunch 
  • Dog-friendly office (available at select locations) 
  • Free gym access (available at select locations) 
  • Free swag giveaways 
  • Annual Holiday Party 
  • Invitations to pop-ups and other company events 
  • Complimentary daily office snacks and beverages

Pay Range

$130,000—$169,000 USD

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,008,666 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Los Angeles
$120k – $235k per year • In office • TS/SCI • 7+ years exp • Bachelor's Degree • Reston
AI/ML
Copilot
Anomaly Detection
DevOps
Azure
Incident Management
Cybersecurity
Threat Modeling
SIEM
Management
ITIL
ITSM
Apply
$87k – $157k per year • In office • TS/SCI • Full-Time • 4+ years exp • Bachelor's Degree • Suitland
Python
JavaScript
Ruby
PowerShell
C++
Perl
AI/ML
Red Teaming
DevOps
Splunk
Cybersecurity
Metasploit
Nmap
SQLmap
Microsoft Defender
Tanium
Palo Alto NGFW
SIEM
Apply
$131k – $237k per year • In office • Full-Time • 12+ years exp • Bachelor's Degree • Fort Meade
DevOps
GCP
VMWare
Azure
AWS
Management
Agile
Scrum
ITIL
Apply
$156k – $320k per year • Hybrid • Bachelor's Degree • San Francisco
DevOps
Terraform
CI/CD
AWS
Platform Engineering
Apply
≈ $94k – $185k per year (Estimated) • In office • Top Secret • 7+ years exp • Bachelor's Degree • Oklahoma City
Cybersecurity
Zero Trust
Apply
$120k – $193k per year • Equity • In office • Full-Time
Go
AI/ML
AI Agents
DevOps
Terraform
GCP
Docker Compose
Helm
GitHub Actions
OpenTelemetry
Crossplane
Prometheus
Azure
CI/CD
AWS
Docker
Kubernetes
Grafana
Apply
In office • Full-Time • Bridgetown
DevOps
OpenShift
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Configuration Management
Management
Agile
Apply
≈ $66k – $166k per year (Estimated) • In office • Sydney
Databases
Databricks
DevOps
GCP
Azure
AWS
Marketing
Salesforce
YouTube
LinkedIn
Instagram
Apply
≈ $52k – $147k per year (Estimated) • Remote (Argentina) • Full-Time • Buenos Aires • Mar del Plata • Salta • Rosario • Mendoza
Java
SQL
Java
Hibernate
Spring MVC
Spring Security
Spring Cloud
Databases
RabbitMQ
ActiveMQ
DevOps
GCP
OpenShift
VMWare
Azure
AWS
QA
Swagger
Apply
≈ $65k – $144k per year (Estimated) • In office • Full-Time • 6+ years exp • Australia
DevOps
AWS
Management
Microsoft Project
Apply
GRC Risk Manager 2 months ago
$108k – $180k per year • Equity • In office • Confidential • 7+ years exp • Bachelor's Degree • Los Angeles
Cybersecurity
ISO 27001
PCI DSS
GDPR
STRIDE
Threat Modeling
Apply
≈ $50k – $112k per year (Estimated) • In office • Contractor • 2+ years exp • Bachelor's Degree • Los Angeles
Design
Adobe Photoshop
Apply
$80k – $120k per year • In office • Part-Time • Los Angeles
Apply
Senior Buyer 13 days ago
$70k – $120k per year • In office • 3+ years exp • Los Angeles
Apply
Graphic Designer 7 days ago
≈ $82k – $193k per year (Estimated) • In office • Bachelor's Degree • Los Angeles
Design
Adobe Photoshop
Figma
Adobe After Effects
Management
Asana
Wrike
Jira
Google Workspace
Apply
$53k – $96k per year • In office • Full-Time • 1+ year exp • Bachelor's Degree • Lehi • Frisco • Los Angeles • Seattle • Chicago
Apply
$82k per year • In office • Contractor • 3+ years exp • Los Angeles
Apply
$52k per year • In office • 1+ year exp • High School Diploma • Los Angeles
Management
Agile
Apply
$100k – $119k per year • In office • 6+ years exp • Master's Degree • Los Angeles
Apply
$106k – $126k per year • In office • 6+ years exp • Master's Degree • Los Angeles
Management
Microsoft Office
Apply
See all jobs
This is one of many
1,008,666 more open roles from verified company boards, updated every day.