Cloud Security Developer

Coveo

Location: Canada   |   Full-Time

Secure what powers every Coveo experience!

Are you driven to design secure‑by‑default cloud environments at scale? As a Cloud Security Developer at Coveo, you’ll protect and evolve the foundations of our cloud infrastructure across Amazon Web Services (AWS) and beyond.

You’ll operate at the intersection of security and infrastructure, building automation, guardrails, and detection capabilities that enable teams to move fast, without compromising trust. If you’re excited about hardening systems that power artificial intelligence (AI)-driven products used worldwide, this is your playground.

As one of our Cloud Security Developers, you will:

  • Design and evolve secure cloud architectures across AWS, including network segmentation, encryption, identity and access management (IAM), and centralized logging.
  • Build and enforce secure‑by‑default infrastructure using infrastructure as code (Terraform, AWS CloudFormation), embedding security controls directly into delivery workflows.
  • Own and continuously improve access management models, implementing least‑privilege policies, temporary access patterns, and cross‑account strategies.
  • Develop and enhance cloud detection, monitoring, and alerting capabilities using tools such as Amazon GuardDuty, AWS CloudTrail, and AWS Security Hub.
  • Strengthen container and Kubernetes security, including workload isolation, image scanning, runtime protection, and network policies.
  • Partner with infrastructure and engineering teams to review designs, support compliance initiatives (SOC 2, ISO 27001, CIS Benchmarks), and actively contribute to incident response.

Here is what will qualify you for the role:

  • 5+ years of hands‑on experience securing AWS environments, including IAM, virtual private cloud (VPC), key management service (KMS), logging, and multi‑account strategies.
  • Proficiency in Python for automation, tooling, and security integrations.
  • Experience designing and securing cloud network architectures and implementing least‑privilege access at scale.
  • Practical experience with infrastructure as code (Terraform preferred) and production‑grade Kubernetes security.

What will make you stand out:

  • Experience with cloud security posture management (CSPM) platforms such as Prisma Cloud, Wiz, Lacework, or AWS‑native equivalents.
  • Background in cloud detection and response, including rule development, automated remediation playbooks, or forensic investigations.
  • Experience implementing zero‑trust architectures or advanced micro‑segmentation strategies.
  • Relevant certifications such as AWS Security Specialty, Certified Kubernetes Security Specialist (CKS), Certified Cloud Security Professional (CCSP), or AWS Solutions Architect.

Do you think you can bring this role to life?

Join the Coveolife!

Coveo is an Equal Employment Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability status, marital status, gender identity, or veteran status.

Coveo is committed to providing accessible employment practices. If you require accommodation due to a disability at any point during the recruitment process, please contact HR@Coveo.com to discuss your needs.

Company Details

Coveo

HQ: Montréal, Quebec, CA

Company Overview

Employees: ████████
Founded: ████
Last Round: ████████
Amount: ████████
Company Insights · Gold

Upgrade to Gold to unlock company insights

About

Coveo is a global leader in AI-powered search and recommendations, transforming how businesses engage with their customers. Founded in Quebec, Coveo provides enterprise-grade platforms that unify relevance across the stack through intelligent search and personalization. Our technology combines unified content, unified interactions, and machine learning to deliver relevant information and recommendations across every business interaction. We help companies boost conversion rates by making website ...
Post Date: March 25, 2026