Tripadvisor logo
Tripadvisor
Posted 26 days agoVerified live 6h ago

Cloud Security Engineer II

Brief overview

Remote
$135k–$155k/yrStated range
3+ yrsMinimum
75 H-1B approvalsDept. of Labor
15 green cardsCertified filings
AWS Security ServicesIdentity and Access Management (IAM)Infrastructure as Code (Terraform)PythonGoBashKubernetes/EKS SecurityCI/CD Pipeline SecurityCloud NetworkingOAuth2/OIDC/SAMLThreat ModelingCloud Security Incident Response

About the company

Tripadvisor logo
Tripadvisor

Travel and technology company that operates a global travel platform.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
75H-1B approved
100%approval rate
12new H-1B hires
15PERM certified
$137,889median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
202327
202419
202526
20263
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
20235
20243
20256
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
20236
20243
20256
Top sponsored roles
Senior Software EngineerSenior Analyst, SEMAssociate Partner AnalystAnalyst, Search MarketingSenior Analyst, Performance Marketing
Sponsored employees from
ChinaIndiaTurkeyEcuadorUnited Kingdom

Job description

Summary

Tripadvisor connects people to travel and experiences through content, guidance, and two-sided marketplaces. The company is seeking a Cloud Security Engineer II to design and automate security guardrails across its cloud environment, integrate security into CI/CD pipelines, and partner with DevOps and engineering teams to secure infrastructure by default.

Responsibilities

  • Cloud Infrastructure Guardrails: Design, deploy, and enforce scalable cloud security controls, IAM least-privilege policies, and encryption standards across multi-account AWS environments
  • DevSecOps Integration: Embed automated security tools (IaC scanning, SAST, secret detection) directly into CI/CD pipelines to catch vulnerabilities pre-deployment
  • Security Automation: Develop automated detection and remediation workflows using Python, Bash, or Go alongside IaC tools (Terraform, CloudFormation)
  • Container & Workload Security: Implement and maintain security practices for containerized workloads (Docker, Kubernetes/EKS) and serverless architectures
  • Posture Management & Triage: Manage CSPM/CNAPP platforms, investigate high-priority alerts, and reduce noise through automated risk scoring and alert tuning
  • Threat Modeling & Reviews: Conduct architectural security reviews and threat modeling for new cloud features, infrastructure changes, and third-party integrations
  • Incident Escalation: Act as a secondary point of contact for cloud security incidents, assisting with forensic collection, root-cause analysis, and post-mortem actions

Skills

  • * Experience: 3–5 years of dedicated hands-on experience in cloud security, DevSecOps, or infrastructure security engineering
  • * Cloud Expertise: Deep working knowledge of core AWS security services (IAM, GuardDuty, Security Hub, KMS, CloudTrail, Organizations)
  • * IaC & Code: Strong proficiency in Infrastructure as Code (Terraform preferred) and at least one scripting language (Python, Go, or Bash)
  • * Container & Pipeline Security: Practical experience securing Kubernetes/EKS and configuring CI/CD security scanners (e.g., GitHub Actions, GitLab CI)
  • * Networking & Identity: Solid understanding of cloud networking (VPCs, Transit Gateways, WAF, DNS) and identity management (OAuth2, OIDC, SAML)
  • * Compliance & Frameworks: Familiarity with mapping cloud controls to industry frameworks (CIS Benchmarks, NIST CSF, SOC 2)
  • * Experience in travel, experiences, or marketplace businesses
  • * Certifications (Preferred): AWS Certified Security – Specialty, Certified Kubernetes Security Specialist (CKS), CCSP, or equivalent

Qualifications

Must Haves

  • * Experience: 3–5 years of dedicated hands-on experience in cloud security, DevSecOps, or infrastructure security engineering
  • * Cloud Expertise: Deep working knowledge of core AWS security services (IAM, GuardDuty, Security Hub, KMS, CloudTrail, Organizations)
  • * IaC & Code: Strong proficiency in Infrastructure as Code (Terraform preferred) and at least one scripting language (Python, Go, or Bash)
  • * Container & Pipeline Security: Practical experience securing Kubernetes/EKS and configuring CI/CD security scanners (e.g., GitHub Actions, GitLab CI)
  • * Networking & Identity: Solid understanding of cloud networking (VPCs, Transit Gateways, WAF, DNS) and identity management (OAuth2, OIDC, SAML)
  • * Compliance & Frameworks: Familiarity with mapping cloud controls to industry frameworks (CIS Benchmarks, NIST CSF, SOC 2)
  • * Experience in travel, experiences, or marketplace businesses

Nice to Haves

  • * Certifications (Preferred): AWS Certified Security – Specialty, Certified Kubernetes Security Specialist (CKS), CCSP, or equivalent

Benefits

  • Annual bonuses
  • “Work your way” with flexibility to suit your lifestyle, including a remote-friendly approach to collaboration and the option to join on-site as often as you’d like or as required by your team.
  • Flexible schedule
  • Donation matching for qualifying charitable donations annually
  • Tuition assistance with annual support for qualified programs
  • An annual lifestyle benefit to spend on travel, wellness, or whatever suits you
  • Travel discounts and more
  • Employee assistance program with resources and programs to help through life’s challenges
  • Health benefits with great coverage and competitive premiums
  • Generous referral awards for referring successful candidates

More jobs like this